Архив фотографий (3) icon

__________________3_.apk

Архив фотографий (3)

320.93 KB

Analyzed: 2026-07-18 16:51 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
36/100
Threat scan flagged Modern target SDK
Privacy Permissions & network
98/100
AllowBackup enabled Low data access
53/100
High Risk
Overall trust

Facts

Threat scan 13/74 flagged, 0 suspicious
Permissions 2 requested
Network strings 2 URLs (0 HTTP, 2 HTTPS)
Target SDK 34
Certificate Valid until 2035-07-17 (9 years, suspicious)

Warnings

Threat scan flagged: 13/74 scanners marked this file as malicious.
AllowBackup is enabled.
Package Name ru.irrj2.wm1pyq
Version Code 1
Version Name 1.0
Application Name zloy.MyApp
Debuggable No
Allow Backup Yes
Min SDK Android 24 (Nougat)
Target SDK Android 34 (Android 14)
Supported ABIs
Universal

Certificate & Signer

Valid From 2008-02-29 01:33:46
Valid To 2035-07-17 01:33:46
Serial Number 936eacbe07f201df
Thumbprint 61ed377e85d386a8dfee6b864bd85b0bfaa5af81
Issuer: C US
Issuer: CN Android
Issuer: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Issuer: L Mountain View
Issuer: O Android
Issuer: OU Android
Issuer: ST California
Issuer: email android@android.com
Subject: C US
Subject: CN Android
Subject: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Subject: L Mountain View
Subject: O Android
Subject: OU Android
Subject: ST California
Subject: email android@android.com

Security Scan

13 /74
⚠️ Threats Detected
Detected by 13 vendors: AVG (Android:Evo-gen [Trj]), Avast (Android:Evo-gen [Trj]), Avast-Mobile (Android:Evo-gen [Trj])
Scanned by 74 security vendors
Last scan: 2026-07-18 13:45 UTC
Malicious
13
Suspicious
0
Harmless
0
Undetected
52
Timeout
0
Failure
0

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.799
AVG malicious
Android:Evo-gen [Trj]
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast malicious
Android:Evo-gen [Trj]
Engine 23.9.8494.0
Avast-Mobile malicious
Android:Evo-gen [Trj]
Engine 260718-02
Avira malicious
TR/Android.Evo
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx malicious
Android.Riskware.Agent.aEKMQ
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.3.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet malicious
Malicious (score: 99)
Engine 4.0.3.4
DrWeb malicious
Android.Banker.Mamont.259.origin
Engine 7.0.75.2070
ESET-NOD32 malicious
Android/Spy.Banker.EAR trojan
Engine 18.2.18.0
Elastic type-unsupported
No result reported
Engine 4.0.273
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure malicious
Trojan:Android/Corrupted.BC
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.45310AVA:64.31599
Google undetected
No result reported
Engine 1784372451
Gridinsoft undetected
No result reported
Engine 1.0.250.174
Ikarus undetected
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.63.60174
K7GW malicious
Trojan ( 005c9c5a1 )
Engine 14.63.60175
Kaspersky malicious
HEUR:Trojan-Banker.AndroidOS.Mamont.hl
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.246
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26060.3008
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.7.0.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.6.2.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight type-unsupported
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-07-18.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.14.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro malicious
HEUR_ZIP.PWTRICK
Engine 24.550.0.1002
TrendMicro-HouseCall malicious
HEUR_ZIP.PWTRICK
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1252
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38817
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5644
ZoneAlarm undetected
No result reported
Engine 6.26-117392315
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 91d036f:91d036f:ee62b07:ee62b07
tehtris type-unsupported
No result reported

File Signatures

SHA-256 3c8f87eb511509727cc2c50485e0e5397eb57817b31a33b102f5bcf4bca4f0b8
MD5 a07677f01a46c45b71078d83bbb6d9bb
SHA-1 aa7c77e8c5c581ab8332d6ce3334ad2ed0e14ecb
SSDEEP 6144:zOnsxymfQWi/gb3vguWolBRYey7BimG2arBjmPmTfIe+TgjEjN1dIgiw:6sFBioDWolBRO7UYarBjmPmjIeljEjNH
TLSH T1E964E083E30276CED5F7893B4E530A225033CD39994256DB6E65F23409BA7AD874DBC8
VHASH 133b28fd3ea9812efb03f21d965a1a92

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v2.0 to extract, compression method=[0x96] File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (49%), Java Archive (24.5%), Sweet Home 3D Design (generic) (19%), ZIP compressed archive (7.2%) TrID file type guesses with probabilities.
dhash 0000101c1e0d1400 Perceptual hash used to compare visual similarity of files.
raw md5 10ee865d1ca684698077d30088b5f285 Raw MD5 hash of the file contents.
extensions png (26), xml (18), kotlin_builtins (7), arsc (1), dex (1), gz (1), json (1), MF (1), RSA (1), SF (1) File extensions found inside the APK and how many of each.
file types PNG (26), XML (17), unknown (14), DEX (1) Detected embedded file types and their counts.
highest datetime 2020-02-29 11:20:00 UTC Latest timestamp found among files inside the archive.
lowest datetime 2020-02-29 11:20:00 UTC Earliest timestamp found among files inside the archive.
num children 59 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 552 KB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (2)

zloy.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
Categories
android.intent.category.DEFAULT android.intent.category.INFO
zloy.core.SmsActivity
Actions
Send Activity Action: Deliver some data to someone else. android.intent.action.SEND
Sendto Activity Action: Send a message to someone specified by the data. android.intent.action.SENDTO
Categories
android.intent.category.DEFAULT android.intent.category.BROWSABLE

Service Intents (5)

zloy.ForegroundService
Actions
Send Activity Action: Deliver some data to someone else. android.intent.action.SEND
RESTART_SERVICE RESTART_SERVICE
zloy.PushNotificationListener
Actions
android.service.notification.NotificationListenerService android.service.notification.NotificationListenerService
zloy.core.SmsService
Actions
android.intent.action.RESPOND_VIA_MESSAGE android.intent.action.RESPOND_VIA_MESSAGE
zloy.sync.StubAuthenticatorService
Actions
android.accounts.AccountAuthenticator android.accounts.AccountAuthenticator
zloy.sync.SyncService
Actions
android.content.SyncAdapter android.content.SyncAdapter

Receiver Intents (6)

zloy.ServiceRestartReceiver
Actions
Locked Boot Completed Broadcast Action: This is broadcast once, after the system has finished android.intent.action.LOCKED_BOOT_COMPLETED
Boot Completed Broadcast Action: This is broadcast once, after the system has finished android.intent.action.BOOT_COMPLETED
android.intent.action.QUICKBOOT_POWERON android.intent.action.QUICKBOOT_POWERON
com.htc.intent.action.QUICKBOOT_POWERON com.htc.intent.action.QUICKBOOT_POWERON
My Package Replaced Broadcast Action: A new version of your application has been installed android.intent.action.MY_PACKAGE_REPLACED
zloy.RESTART_SERVICE zloy.RESTART_SERVICE
android.provider.action.DEFAULT_SMS_PACKAGE_CHANGED android.provider.action.DEFAULT_SMS_PACKAGE_CHANGED
User Unlocked Broadcast Action: Sent when the credential-encrypted private storage has android.intent.action.USER_UNLOCKED
Screen On Broadcast Action: Sent when the device wakes up and becomes interactive. android.intent.action.SCREEN_ON
Power Connected Broadcast Action: External power has been connected to the device. android.intent.action.ACTION_POWER_CONNECTED
android.intent.action.ACTION_POWER_DISCONNECTED android.intent.action.ACTION_POWER_DISCONNECTED
android.net.conn.CONNECTIVITY_CHANGE android.net.conn.CONNECTIVITY_CHANGE
android.intent.action.MIUI_BATTERY_FEATURE_CHANGE android.intent.action.MIUI_BATTERY_FEATURE_CHANGE
miui.intent.action.POWER_MODE_CHANGED miui.intent.action.POWER_MODE_CHANGED
miui.intent.action.OP_AUTO_START miui.intent.action.OP_AUTO_START
User Present Broadcast Action: Sent when the user is present after device wakes up (e.g when the android.intent.action.USER_PRESENT
com.huawei.intent.action.POWER_MODE_CHANGED com.huawei.intent.action.POWER_MODE_CHANGED
com.oplus.battery.OplusBatteryAction com.oplus.battery.OplusBatteryAction
com.samsung.android.sm.action.ACTION_REFRESH com.samsung.android.sm.action.ACTION_REFRESH
com.transsion.action.UPDATE_POWER_SAVE_MODE com.transsion.action.UPDATE_POWER_SAVE_MODE
zloy.core.WapPushReceiver
Actions
android.provider.Telephony.WAP_PUSH_DELIVER android.provider.Telephony.WAP_PUSH_DELIVER
zloy.core.alarm.ServiceMonitorReceiver
Actions
zloy.SERVICE_MONITOR zloy.SERVICE_MONITOR
zloy.core.telephony.sms.DeliverySmsReceiver
Actions
SMS_DELIVERED SMS_DELIVERED
SMS_SENT SMS_SENT
zloy.core.telephony.sms.SmsReceiver
Actions
android.provider.Telephony.SMS_RECEIVED android.provider.Telephony.SMS_RECEIVED
android.provider.Telephony.SMS_DELIVER android.provider.Telephony.SMS_DELIVER
zloy.watchdog.WatchdogReceiver
Actions
zloy.WATCHDOG_PING zloy.WATCHDOG_PING

Requested Permissions (2)

view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET

Uses Features (6)

Ethernet Feature for {@link #getSystemAvailableFeatures} and android.hardware.ethernet
Opengles Extension Pack Feature for {@link #getSystemAvailableFeatures} and android.hardware.opengles.aep
Sensor Barometer Feature for {@link #getSystemAvailableFeatures} and android.hardware.sensor.barometer
Telephony Feature for {@link #getSystemAvailableFeatures} and android.hardware.telephony
Touchscreen Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen
Printing Feature for {@link #getSystemAvailableFeatures} and {@link #hasSystemFeature}: android.software.print

Activities (3)

com.facebook.ads.internal.DebugOverlayActivity
zloy.core.SmsActivity
zloy.MainActivity

Services (8)

androidx.core.app.MessagePushService
com.google.firebase.iid.CacheCleanupService
zloy.sync.StubAuthenticatorService
zloy.ForegroundService
zloy.PushNotificationListener
zloy.core.RescueJobService
zloy.core.SmsService
zloy.sync.SyncService

Broadcast Receivers (7)

zloy.watchdog.WatchdogReceiver zloy.watchdog.WatchdogReceiver
zloy.core.telephony.sms.DeliverySmsReceiver zloy.core.telephony.sms.DeliverySmsReceiver
zloy.ServiceRestartReceiver zloy.ServiceRestartReceiver
zloy.core.telephony.sms.SmsReceiver zloy.core.telephony.sms.SmsReceiver
zloy.core.WapPushReceiver zloy.core.WapPushReceiver
com.squareup.okhttp.internal.BootCompletedReceiver com.squareup.okhttp.internal.BootCompletedReceiver
zloy.core.alarm.ServiceMonitorReceiver zloy.core.alarm.ServiceMonitorReceiver

Content Providers (2)

androidx.core.app.FirebaseInitProvider
zloy.sync.StubContentProvider

Submission Details

Submitted At 2026-07-18
First Submission 2026-07-18
Last Submission 2026-07-18
Stored Until 2026-08-17