yangben.apk

63.06 MB

Analyzed: 2026-07-01 10:23 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
81/100
Threat scan flagged
Privacy Permissions & network
41/100
High-risk permissions
54/100
High Risk
Overall trust

Facts

Threat scan 1/74 flagged, 0 suspicious
Permissions 56 requested
Network strings No URL strings detected
Target SDK Unknown
Certificate Valid until 2040-03-07 (14 years, suspicious)

Warnings

Threat scan flagged: 1/74 scanners marked this file as malicious.
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.SYSTEM_ALERT_WINDOW, android.permission.RECEIVE_BOOT_COMPLETED
Requests 56 permissions (review carefully).

Analysis Coverage

This report is partial. Some core metadata could not be extracted.
version
Package Name org.telegram.start
Version Code
Version Name
Debuggable No
Allow Backup No
Min SDK Unknown
Target SDK Unknown
Supported ABIs
arm64-v8a armeabi-v7a

Certificate & Signer

Valid From 2026-06-29 00:54:58
Valid To 2040-03-07 00:54:58
Serial Number 21f334599b666d1e
Thumbprint 81f20dd10156353ca9f67df0a428875b2b2b156e
Issuer: C FCIIpIBArjzLL
Issuer: CN HcWuehxYQTgWl
Issuer: DN C:FCIIpIBArjzLL, CN:HcWuehxYQTgWl, L:mWGVCjUTsyqfh, O:fSIhjlrkHxdoO, ST:oDSGoCTexQyqS, OU:wmKAcNlqQbWqU
Issuer: L mWGVCjUTsyqfh
Issuer: O fSIhjlrkHxdoO
Issuer: OU wmKAcNlqQbWqU
Issuer: ST oDSGoCTexQyqS
Subject: C FCIIpIBArjzLL
Subject: CN HcWuehxYQTgWl
Subject: DN C:FCIIpIBArjzLL, CN:HcWuehxYQTgWl, L:mWGVCjUTsyqfh, O:fSIhjlrkHxdoO, ST:oDSGoCTexQyqS, OU:wmKAcNlqQbWqU
Subject: L mWGVCjUTsyqfh
Subject: O fSIhjlrkHxdoO
Subject: OU wmKAcNlqQbWqU
Subject: ST oDSGoCTexQyqS

Security Scan

1 /74
⚠️ Threats Detected
Detected by 1 vendor: K7GW (Trojan ( 005374bc1 ))
Scanned by 74 security vendors
Last scan: 2026-07-01 10:22 UTC
Malicious
1
Suspicious
0
Harmless
0
Undetected
60
Timeout
3
Failure
3

Scan Providers

74 vendors
ALYac failure
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.794
AVG timeout
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast timeout
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260630-00
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC timeout
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.2.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet type-unsupported
No result reported
Engine 4.0.3.4
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.270
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.45105AVA:64.31506
Google failure
No result reported
Engine 1782889252
Gridinsoft undetected
No result reported
Engine 1.0.249.174
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.60.59994
K7GW malicious
Trojan ( 005374bc1 )
Engine 14.60.59994
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.239
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26050.11
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne undetected
No result reported
Engine 7.7.0.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.5.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-07-01.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1239
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38772
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5632
ZoneAlarm undetected
No result reported
Engine 6.25-116107941
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine d8af585:d8af585:6350f3f:6350f3f
tehtris type-unsupported
No result reported

File Signatures

SHA-256 083a28863384897964fee4c3d913629c1b401d230b1ff46e7c1ddac4b47ea436
MD5 4b376e7c6aa928a91011afddfd376cc2
SHA-1 88be04945f31290944274f17d04707ded64dd1d5
SSDEEP 1572864:is8wBnyiLOMhtWQyYCAC2wcAEnCi2lDJTWVy0gLf:0In5OMhMnjHTDJqYjLf
TLSH T176E702FB7A0D0830C27E283F11991B95F7242EC45357E45690E0FA2EBA773C2E456B96
VHASH 20c8719771c45cb6397dfdd415df5cec

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v2.0 to extract, compression method=deflate File signature result from magic bytes inspection.
TrID Android Package (60.6%), Java Archive (30.3%), ZIP compressed archive (8.9%) TrID file type guesses with probabilities.
dhash 0000001d0e1d1510 Perceptual hash used to compare visual similarity of files.
raw md5 575dc305225920afca124926e39ccbc1 Raw MD5 hash of the file contents.
extensions png (927), properties (54), attheme (5), dat (3), txt (3), bin (1), gzip (1), html (1), jpg (1), json (1), lst (1), prof (1), profm (1) File extensions found inside the APK and how many of each.
file types PNG (927), unknown (70), HTML (1), Java Bytecode (1), JSON (1) Detected embedded file types and their counts.
highest datetime 2026-06-20 13:33:04 UTC Latest timestamp found among files inside the archive.
lowest datetime 2026-06-20 13:33:04 UTC Earliest timestamp found among files inside the archive.
num children 9879 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 2.3 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Native Libraries (9)

libEvWXBFoVcNOKlVw libEvWXBFoVcNOKlVw.so
libcrashsdk libcrashsdk.so
libgojni libgojni.so
liblanguage_id_jni liblanguage_id_jni.so
libucrash-core libucrash-core.so
libucrash libucrash.so
libumeng-spy libumeng-spy.so
libumonitor libumonitor.so
libxmAmGpElcKbQ libxmAmGpElcKbQ.so

Requested Permissions (56)

android.permission.ACCESS_BACKGROUND_LOCATION Custom app or vendor permission (not publicly documented). android.permission.ACCESS_BACKGROUND_LOCATION
access approximate location only in the foreground This app can get your approximate location from location services while the app is in use. Location services for your device must be turned on for the app to get location. android.permission.ACCESS_COARSE_LOCATION
access precise location only in the foreground This app can get your precise location from location services while the app is in use. Location services for your device must be turned on for the app to get location. This may increase battery usage. android.permission.ACCESS_FINE_LOCATION
android.permission.ACCESS_MEDIA_LOCATION Custom app or vendor permission (not publicly documented). android.permission.ACCESS_MEDIA_LOCATION
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
Authenticate Accounts android.permission.AUTHENTICATE_ACCOUNTS
android.permission.BIND_CHOOSER_TARGET_SERVICE Custom app or vendor permission (not publicly documented). android.permission.BIND_CHOOSER_TARGET_SERVICE
android.permission.BIND_JOB_SERVICE Custom app or vendor permission (not publicly documented). android.permission.BIND_JOB_SERVICE
Bind Remoteviews android.permission.BIND_REMOTEVIEWS
android.permission.BIND_TELECOM_CONNECTION_SERVICE Custom app or vendor permission (not publicly documented). android.permission.BIND_TELECOM_CONNECTION_SERVICE
pair with Bluetooth devices Allows the app to view the configuration of Bluetooth on the tablet, and to make and accept connections with paired devices. android.permission.BLUETOOTH
android.permission.BLUETOOTH_CONNECT Custom app or vendor permission (not publicly documented). android.permission.BLUETOOTH_CONNECT
directly call phone numbers Allows the app to call phone numbers without your intervention. This may result in unexpected charges or calls. Note that this doesn\'t allow the app to call emergency numbers. Malicious apps may cost you money by making calls without your confirmation, or dial carrier codes which cause incoming calls to be automatically forwarded to another number. android.permission.CALL_PHONE
take pictures and videos This app can take pictures and record videos using the camera while the app is in use. android.permission.CAMERA
Dump android.permission.DUMP
Foreground service Allows the app to run a foreground service. android.permission.FOREGROUND_SERVICE
android.permission.FOREGROUND_SERVICE_CAMERA Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_CAMERA
android.permission.FOREGROUND_SERVICE_DATA_SYNC Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_DATA_SYNC
android.permission.FOREGROUND_SERVICE_LOCATION Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_LOCATION
android.permission.FOREGROUND_SERVICE_MEDIA_PLAYBACK Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_MEDIA_PLAYBACK
android.permission.FOREGROUND_SERVICE_MEDIA_PROJECTION Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_MEDIA_PROJECTION
android.permission.FOREGROUND_SERVICE_MICROPHONE Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_MICROPHONE
find accounts on the device Allows the app to get the list of accounts known by the tablet. This may include any accounts created by applications you have installed. android.permission.GET_ACCOUNTS
Install Packages android.permission.INSTALL_PACKAGES
android.permission.INSTALL_SHORTCUT Custom app or vendor permission (not publicly documented). android.permission.INSTALL_SHORTCUT
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
Manage Accounts android.permission.MANAGE_ACCOUNTS
android.permission.MANAGE_OWN_CALLS Custom app or vendor permission (not publicly documented). android.permission.MANAGE_OWN_CALLS
change your audio settings Allows the app to modify global audio settings such as volume and which speaker is used for output. android.permission.MODIFY_AUDIO_SETTINGS
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
App badge update Allows the app to update the launcher icon badge count on Android launchers. android.permission.READ_APP_BADGE
read call log This app can read your call history. android.permission.READ_CALL_LOG
android.permission.READ_CLIPBOARD Custom app or vendor permission (not publicly documented). android.permission.READ_CLIPBOARD
read your contacts Allows the app to read data about your contacts stored on your tablet. Apps will also have access to the accounts on your tablet that have created contacts. This may include accounts created by apps you have installed. This permission allows apps to save your contact data, and malicious apps may share contact data without your knowledge. android.permission.READ_CONTACTS
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
android.permission.READ_MEDIA_AUDIO Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_AUDIO
android.permission.READ_MEDIA_IMAGES Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_IMAGES
android.permission.READ_MEDIA_VIDEO Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VIDEO
android.permission.READ_MEDIA_VISUAL_USER_SELECTED Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VISUAL_USER_SELECTED
android.permission.READ_PHONE_NUMBERS Custom app or vendor permission (not publicly documented). android.permission.READ_PHONE_NUMBERS
read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE
Read Profile android.permission.READ_PROFILE
read sync settings Allows the app to read the sync settings for an account. For example, this can determine whether the People app is synced with an account. android.permission.READ_SYNC_SETTINGS
run at startup Allows the app to have itself started as soon as the system has finished booting. This can make it take longer to start the tablet and allow the app to slow down the overall tablet by always running. android.permission.RECEIVE_BOOT_COMPLETED
record audio android.permission.RECORD_AUDIO
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
This app can appear on top of other apps This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. android.permission.SYSTEM_ALERT_WINDOW
android.permission.USE_BIOMETRIC Custom app or vendor permission (not publicly documented). android.permission.USE_BIOMETRIC
android.permission.USE_FINGERPRINT Custom app or vendor permission (not publicly documented). android.permission.USE_FINGERPRINT
android.permission.USE_FULL_SCREEN_INTENT Custom app or vendor permission (not publicly documented). android.permission.USE_FULL_SCREEN_INTENT
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
modify your contacts Allows the app to modify the data about your contacts stored on your tablet. This permission allows apps to delete contact data. android.permission.WRITE_CONTACTS
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
toggle sync on and off Allows an app to modify the sync settings for an account. For example, this can be used to enable sync of the People app with an account. android.permission.WRITE_SYNC_SETTINGS

Submission Details

Submitted At 2026-07-01
First Submission 2026-07-01
Last Submission 2026-07-01
Stored Until 2026-07-31