孤鸿江湖 icon

2552775c579a91cc4795142b881582732c4efd3f_1266.apk

孤鸿江湖

62.88 MB

Analyzed: 2026-07-17 11:27 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
82/100
Threat scan flagged
Privacy Permissions & network
42/100
High-risk permissions HTTP URLs found
56/100
Caution
Overall trust

Facts

Threat scan 1/74 flagged, 0 suspicious
Permissions 36 requested
Network strings 50 URLs (4 HTTP, 46 HTTPS)
Target SDK 30
Certificate Valid until 2048-05-10 (22 years, suspicious)

Warnings

Threat scan flagged: 1/74 scanners marked this file as malicious.
Found 4 HTTP URL strings (unencrypted).
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.SYSTEM_ALERT_WINDOW
Requests 36 permissions (review carefully).
Package Name com.rexue.a1267
Version Code 100100102
Version Name 1.1.1
Application Name com.unity3d.rjengineb.GameApplication
Debuggable No
Allow Backup No
Min SDK Android 22 (Lollipop)
Target SDK Android 30 (Android 11)
Supported ABIs
arm64-v8a

Certificate & Signer

Valid From 2020-12-23 03:32:48
Valid To 2048-05-10 03:32:48
Serial Number 77862009
Thumbprint 2bf8b0f7ec08d9f5cba9811766582d75aa39a983
Issuer: C CN
Issuer: CN shengfeiyue
Issuer: DN C:CN, CN:shengfeiyue, L:hangzhou, O:xianqu, ST:hangzhou, OU:xianqu
Issuer: L hangzhou
Issuer: O xianqu
Issuer: OU xianqu
Issuer: ST hangzhou
Subject: C CN
Subject: CN shengfeiyue
Subject: DN C:CN, CN:shengfeiyue, L:hangzhou, O:xianqu, ST:hangzhou, OU:xianqu
Subject: L hangzhou
Subject: O xianqu
Subject: OU xianqu
Subject: ST hangzhou

Security Scan

1 /74
⚠️ Threats Detected
Detected by 1 vendor: AhnLab-V3 (PUP/Android.Malct.1286020)
Scanned by 74 security vendors
Last scan: 2026-07-17 11:27 UTC
Malicious
1
Suspicious
0
Harmless
0
Undetected
65
Timeout
0
Failure
1

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.799
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 malicious
PUP/Android.Malct.1286020
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260717-00
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.3.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet type-unsupported
No result reported
Engine 4.0.3.4
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.273
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.45298AVA:64.31595
Google undetected
No result reported
Engine 1784286063
Gridinsoft undetected
No result reported
Engine 1.0.250.174
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.63.60160
K7GW undetected
No result reported
Engine 14.63.60162
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.246
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26060.3008
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne undetected
No result reported
Engine 7.7.0.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.6.2.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-07-17.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.14.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1251
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38813
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5643
ZoneAlarm undetected
No result reported
Engine 6.26-117392280
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine c765f78:c765f78:c4a569e:c4a569e
tehtris type-unsupported
No result reported

File Signatures

SHA-256 d79685486deb62d4ff8f051e3dc3cf6cdd578100ff9ac2c4a3cb80efd0ec88ad
MD5 36902a99aa243e2c266b47592d40b5d1
SHA-1 e14e6b064e9a69e0d885ecdcd310994f7d714c33
SSDEEP 1572864:hronYqEmQqIbEtjj6F/9NjYju7LL0vQPVuqj3Knuz11LDO4h:hronYqEnKu/swHWGjKuf1h
TLSH T175E73343F748CDA3D0F322328976066676179E64479393A73C2DB27C19BBAC41B89BC5
VHASH 0cd98d199b56cf930d3155691ceb17c7
PERMHASH 2ee0e3af239cd12031b0da74063eafc63a2858e984204d87ad139d5d04d0250e

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v2.0 to extract, compression method=deflate File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID SPSS Extension (28.5%), Android Package (25.7%), Java Archive (12.8%), 1C:Enterprise bundled add-in (11.4%), Sweet Home 3D Design (generic) (10%) TrID file type guesses with probabilities.
dhash 0000001e0e070600 Perceptual hash used to compare visual similarity of files.
raw md5 62d7f401a87947f5ab753c9eed8698fd Raw MD5 hash of the file contents.
extensions xml (676), png (312), gif (4), webp (4), dex (2), arsc (1), jpg (1) File extensions found inside the APK and how many of each.
file types XML (676), PNG (312), unknown (5), GIF (4), DEX (2), JPG (1) Detected embedded file types and their counts.
highest datetime 2026-07-11 13:22:10 UTC Latest timestamp found among files inside the archive.
lowest datetime 2026-07-11 13:22:10 UTC Earliest timestamp found among files inside the archive.
num children 1690 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 21 MB Estimated total size of all files after extraction.

Sandbox

Sandbox Verdicts

Zenbox android
Malicious 64% confidence MALWARE TROJAN EVADER

Deep Manifest Analysis

Activity Intents (2)

com.unity3d.rjengineb.SplashActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
Categories
android.intent.category.LAUNCHER
com.xqhy.pay.PayActivity
Actions
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.DEFAULT android.intent.category.BROWSABLE

Native Libraries (31)

libAndroidHWCP libAndroidHWCP.so
libBugly_Native libBugly_Native.so
libCtaApiLib libCtaApiLib.so
libEncryptorP libEncryptorP.so
libNetHTProtect libNetHTProtect.so
lib_burst_generated lib_burst_generated.so
libacsdk-consumer libacsdk-consumer.so
libacsdk-framework libacsdk-framework.so
libacsdk-shared libacsdk-shared.so
libacsplayer libacsplayer.so
libentryexpro libentryexpro.so
libhtpcrash libhtpcrash.so
libhtpcrash_dumper libhtpcrash_dumper.so
libil2cpp libil2cpp.so
libluster libluster.so
libmain libmain.so
libnativebridge libnativebridge.so
libplugin_phone libplugin_phone.so
libsecsdk libsecsdk.so
libsls_producer libsls_producer.so
libterrain libterrain.so
libturingad libturingad.so
libumeng-spy libumeng-spy.so
libunity libunity.so
libvfs libvfs.so
libxcrash libxcrash.so
libxcrash_dumper libxcrash_dumper.so
libxcrash_dumper_sq libxcrash_dumper_sq.so
libxcrash_sq libxcrash_sq.so
libxlua libxlua.so
libzstd-jni-1.5.6-3 libzstd-jni-1.5.6-3.so

Requested Permissions (36)

read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
Read Privileged Phone State android.permission.READ_PRIVILEGED_PHONE_STATE
This app can appear on top of other apps This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. android.permission.SYSTEM_ALERT_WINDOW
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.android.launcher.permission.INSTALL_SHORTCUT
android.permission.INSTALL_SHORTCUT Custom app or vendor permission (not publicly documented). android.permission.INSTALL_SHORTCUT
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.android.launcher.permission.UNINSTALL_SHORTCUT
android.permission.UNINSTALL_SHORTCUT Custom app or vendor permission (not publicly documented). android.permission.UNINSTALL_SHORTCUT
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
access approximate location only in the foreground This app can get your approximate location from location services while the app is in use. Location services for your device must be turned on for the app to get location. android.permission.ACCESS_COARSE_LOCATION
access precise location only in the foreground This app can get your precise location from location services while the app is in use. Location services for your device must be turned on for the app to get location. This may increase battery usage. android.permission.ACCESS_FINE_LOCATION
connect and disconnect from Wi-Fi Allows the app to connect to and disconnect from Wi-Fi access points and to make changes to device configuration for Wi-Fi networks. android.permission.CHANGE_WIFI_STATE
take pictures and videos This app can take pictures and record videos using the camera while the app is in use. android.permission.CAMERA
record audio android.permission.RECORD_AUDIO
pair with Bluetooth devices Allows the app to view the configuration of Bluetooth on the tablet, and to make and accept connections with paired devices. android.permission.BLUETOOTH
access Bluetooth settings Allows the app to configure the local Bluetooth tablet, and to discover and pair with remote devices. android.permission.BLUETOOTH_ADMIN
change your audio settings Allows the app to modify global audio settings such as volume and which speaker is used for output. android.permission.MODIFY_AUDIO_SETTINGS
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
Device Power android.permission.DEVICE_POWER
android.permission.MANAGE_EXTERNAL_STORAGE Custom app or vendor permission (not publicly documented). android.permission.MANAGE_EXTERNAL_STORAGE
change network connectivity Allows the app to change the state of network connectivity. android.permission.CHANGE_NETWORK_STATE
com.google.android.gms.permission.AD_ID Custom app or vendor permission (not publicly documented). com.google.android.gms.permission.AD_ID
com.asus.permission.READ_SDID_PROVIDER Custom app or vendor permission (not publicly documented). com.asus.permission.READ_SDID_PROVIDER
com.asus.msa.SupplementaryDID.ACCESS
freemme.permission.msa Custom app or vendor permission (not publicly documented). freemme.permission.msa
freemme.permission.msa.SECURITY_ACCESS Custom app or vendor permission (not publicly documented). freemme.permission.msa.SECURITY_ACCESS
com.rexue.a1267.gdt.qq.SEND_PERMISSION
com.rexue.a1267.gdt.qq.RECEIVE_PERMISSION
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
Foreground service Allows the app to run a foreground service. android.permission.FOREGROUND_SERVICE
android.permission.FOREGROUND_SERVICE_DATA_SYNC Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_DATA_SYNC
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
com.android.vending.BILLING

Uses Features (9)

Camera Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera
Camera Autofocus Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera.autofocus
Location Feature for {@link #getSystemAvailableFeatures} and android.hardware.location
Location Gps Feature for {@link #getSystemAvailableFeatures} and android.hardware.location.gps
Microphone Feature for {@link #getSystemAvailableFeatures} and android.hardware.microphone
Sensor Accelerometer Feature for {@link #getSystemAvailableFeatures} and android.hardware.sensor.accelerometer
Touchscreen Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen
Touchscreen Multitouch Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen.multitouch
Touchscreen Multitouch Distinct Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen.multitouch.distinct

Activities (67)

com.unity3d.rjengineb.SplashActivity
com.unity3d.rjengineb.MainActivity
com.huiyue.devicesdk.DiagnosisActivity
com.huiyue.devicesdk.InputDialogActivity
com.xqhy.lib.privacy.view.PermissionDialogActivity
com.xqhy.lib.privacy.view.PrivacyDialogActivity
com.xqhy.lib.privacy.view.WebViewActivity
com.sq.sdk.cloudgame.ui.CloudPlayerActivity
com.sq.sdk.cloudgame.ui.CloudJoinLivePlayActivity
com.king.zxing.CaptureActivity
com.sq.sdk.cloudgame.ui.MultiTaskActivity
com.nbc.acsdk.widget.PermissionActivity
com.cloudapp.client.player.AcsPlayerActivity
com.cloudapp.client.queue.AcsQueueDialogActivity
com.xqhy.login.view.LogOutPutActivity
com.xqhy.login.view.WebViewActivity
com.xqhy.login.view.RealNameActivity
com.xqhy.login.view.AccountActivity
com.xqhy.login.view.BindPhoneAndLoginActivity
com.xqhy.login.view.PhoneVerifyLoginActivity
com.xqhy.login.view.PasswordLoginActivity
com.xqhy.login.view.AutoLoginActivity
com.xqhy.login.view.CodeLoginActivity
com.xqhy.login.view.PasswordRegisterActivity
com.xqhy.login.view.BindPhoneActivity
com.xqhy.login.view.KeyRegisterActivity
com.xqhy.login.view.ChangePassWordActivity
com.xqhy.login.view.ChangePhoneActivity
com.xqhy.login.view.ChangePasswordVerificationPhone
com.xqhy.login.view.FindUserNamePhoneChangePwdActivity
com.xqhy.login.view.ContactServiceActivity
com.xqhy.login.view.VerifitionActivity
com.xqhy.login.view.ChangephoneVerifitionActivity
com.xqhy.login.view.SetNewPasswordActivity
com.xqhy.login.view.SetNewTwoPasswordActivity
com.xqhy.login.view.MoreActivity
com.xqhy.login.view.AccountLogOffActivity
com.xqhy.login.view.AccountLogOffConfirmActivity
com.xqhy.login.view.GiftBagActivity
com.xqhy.login.view.CustomerServiceActivity
com.xqhy.login.view.InvoiceHelperActivity
com.xqhy.login.view.UserAgreementActivity
com.xqhy.login.view.LoginVerifyRemindActivity
com.xqhy.login.view.FastRegisterActivity
com.netease.nis.quicklogin.ui.CmccLoginActivity
com.netease.nis.quicklogin.ui.ProtocolDetailActivity
com.netease.nis.quicklogin.ui.YDQuickLoginActivity
com.xqhy.pay.PayCodeActivity
com.xqhy.pay.wechat.WechatPayWebActivity
com.xqhy.pay.PayActivity
com.alipay.sdk.app.H5PayActivity
com.ipaynow.plugin.presenter.PayMethodActivity
com.ipaynow.plugin.inner_plugin.wechatwp.activity.WeChatNotifyActivity
com.ipaynow.plugin.inner_plugin.miniprogram.activity.MiniProgramPayActivity
com.ipaynow.plugin.inner_plugin.alipaywp.activity.AlipayNotifyActivity
com.alipay.sdk.app.H5AuthActivity
com.alipay.sdk.app.PayResultActivity
com.alipay.sdk.app.AlipayResultActivity
com.alipay.sdk.app.H5OpenAuthActivity
com.alipay.sdk.app.APayEntranceActivity
com.bytedance.applog.migrate.MigrateDetectorActivity
com.bytedance.ads.convert.BDBridgeActivity
com.xqhy.update.view.ForceUpdateActivity
com.hy.trading.view.widget.imagepicker.activity.ImageCropActivity
com.hy.trading.view.widget.imagepicker.activity.ImagePickerActivity
com.hy.trading.view.widget.imagepicker.activity.ImagePreActivity
com.android.billingclient.api.ProxyBillingActivity

Services (4)

com.huiyue.devicesdk.FloatingWindowService
com.netease.htprotect.poly.mcService
com.shenghe.backgrounddownload.BackgroundDownloadService
com.voxelbusters.replaykit.internal.ScreenRecordingService

Broadcast Receivers (1)

com.bytedance.applog.collector.Collector com.bytedance.applog.collector.Collector

Content Providers (7)

com.xqhy.login.provider.BoxLoginInfoProvider
com.qq.gdt.action.GDTInitProvider
androidx.core.content.FileProvider
com.hy.trading.view.widget.imagepicker.provider.ImagePickerProvider
androidx.lifecycle.ProcessLifecycleOwnerInitializer
com.aliyun.sls.android.producer.provider.SLSContentProvider
com.voxelbusters.replaykit.extensions.FileProviderExtended

URL Endpoints (59)

http://commons.apache.org/logging/tech.html http://commons.apache.org/logging/troubleshooting.html http://commons.apache.org/proper/commons-compress/limitations.html#7Z http://www.bouncycastle.org http://www.slf4j.org/codes.html http://www.slf4j.org/codes.html#StaticLoggerBinder http://www.slf4j.org/codes.html#multiple_bindings http://www.slf4j.org/codes.html#no_static_mdc_binder http://www.slf4j.org/codes.html#null_LF http://www.slf4j.org/codes.html#null_MDCA http://www.slf4j.org/codes.html#substituteLogger http://www.slf4j.org/codes.html#unsuccessfulInit http://www.slf4j.org/codes.html#version_mismatch https://abtest.volceapplog.com/service/2/abtest_config/ https://ad.partner.gifshow.com/api/v2/sdk/log?token=dee6172daef74f0895c7d185956ac0a7 https://alink.volceapplog.com/service/2/alink_data https://alink.volceapplog.com/service/2/attribution_data https://api.e.kuaishou.com/rest/config/client/v1/open/globalId https://api.e.kuaishou.com/rest/config/client/v1/open/sdkGatherConfig https://databyterangers.com.cn

Submission Details

Submitted At 2026-07-17
First Submission 2026-07-17
Last Submission 2026-07-17
Stored Until 2026-08-16