收款宝 icon

zhaolian_2.1.2_prod_online.apk

收款宝

22.88 MB

Analyzed: 2026-06-01 06:47 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
93/100
Threat scan clean
Privacy Permissions & network
79/100
High-risk permissions
85/100
Good
Overall trust

Facts

Threat scan 0/75 flagged, 0 suspicious
Permissions 24 requested
Network strings 1 URLs (0 HTTP, 1 HTTPS)
Target SDK 31
Certificate Valid until 2124-09-23 (98 years, suspicious)

Warnings

High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.WRITE_SETTINGS
Package Name zhaolian.agent
Version Code 212
Version Name 2.1.2
Application Name io.dcloud.application.DCloudApplication
Debuggable No
Allow Backup No
Min SDK Android 21 (Lollipop)
Target SDK Android 31 (Android 12)
Supported ABIs
arm64-v8a armeabi-v7a

Certificate & Signer

Valid From 2024-10-17 08:38:12
Valid To 2124-09-23 08:38:12
Serial Number 1deb0691
Thumbprint 19d7a288d9eb71d009b1c82f806bc5c768e9df20
Issuer: C CN
Issuer: CN zhaolian
Issuer: DN C:CN, CN:zhaolian, O:zhaolian, OU:IT
Issuer: O zhaolian
Issuer: OU IT
Subject: C CN
Subject: CN zhaolian
Subject: DN C:CN, CN:zhaolian, O:zhaolian, OU:IT
Subject: O zhaolian
Subject: OU IT

Security Scan

0 /75
✓ Clean
Scanned by 75 security vendors
Last scan: 2026-06-01 06:47 UTC
Malicious
0
Suspicious
0
Harmless
0
Undetected
66
Timeout
1
Failure
0

Scan Providers

75 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.783
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.0.10666
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260531-02
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.2.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.264
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.44749AVA:64.31342
Google undetected
No result reported
Engine 1780290047
Gridinsoft undetected
No result reported
Engine 1.0.247.174
Ikarus undetected
No result reported
Engine 6.4.16.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.54.59674
K7GW undetected
No result reported
Engine 14.54.59673
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.235
MaxSecure timeout
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.14833
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26040.8
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.6.2.19
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.5.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-06-01.01
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1218
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38691
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5611
ZoneAlarm undetected
No result reported
Engine 6.25-116107205
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 1925a7e:1925a7e:354c4d2:354c4d2
tehtris type-unsupported
No result reported

File Signatures

SHA-256 4eca53bbb46d04e5e18cd8906ba70580ac615b60af275c597f9d11aaf053270b
MD5 ab3b90e1df8ae14b8e0e6fb3daaed97f
SHA-1 0ae72591e69de52d7dbb866fe10ad6cfb4504f68
SSDEEP 393216:DPrqfRAI1gEuPZlH5fXznptfO78icjHa/f4/pBRnDRJcoGm8Etynz:rufR7SEgZjznpRg8icj63i16K8nz
TLSH T137373362EB75DE3EFCB308368AA58A3223215F4542531B1535CC79287B33AC55F99BC2
VHASH f8a84c7f9b71909c906e35b6cfc4f669
PERMHASH da455068ef861dd58683e0ddd4db398ce369b56b8a0b73e731c05f0843a726e7

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v0.0 to extract, compression method=deflate File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (49%), Java Archive (24.5%), Sweet Home 3D Design (generic) (19%), ZIP compressed archive (7.2%) TrID file type guesses with probabilities.
dhash 0000001e1e0c0908 Perceptual hash used to compare visual similarity of files.
raw md5 006633a2b2c48f7868d69edadee916fa Raw MD5 hash of the file contents.
extensions png (452), xml (358), version (39), so (30), js (18), jpg (15), kotlin_builtins (8), json (6), dex (3), gif (3), ttf (3), gz (2), html (2), arsc (1), AutoDiscoverable (1), bin (1), BuiltInsLoader (1), CoroutineExceptionHandler (1), css (1), ExternalOverridabilityCondition (1), MainDispatcherFactory (1), MessageBodyReader (1), MessageBodyWriter (1), MetadataExtensions (1), MF (1), ogg (1), prof (1), profm (1), properties (1), Providers (1), RSA (1), SF (1), textproto (1), txt (1) File extensions found inside the APK and how many of each.
file types PNG (452), XML (358), unknown (93), ELF (30), JPG (15), GIF (3), DEX (2), HTML (2), JSON (2), Java Bytecode (1), JavaScript (1), OGG (1) Detected embedded file types and their counts.
highest datetime 1981-01-01 01:01:02 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 960 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 56 MB Estimated total size of all files after extraction.

Sandbox

Sandbox Verdicts

Zenbox android
Harmless 96% confidence CLEAN

Deep Manifest Analysis

Activity Intents (1)

io.dcloud.PandoraEntry
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.LAUNCHER android.intent.category.DEFAULT android.intent.category.BROWSABLE

Receiver Intents (1)

Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver
Actions
Install performance profile Installs a profile that helps optimize app performance. androidx.profileinstaller.action.INSTALL_PROFILE
Skip profile install Skips profile installation for this build. androidx.profileinstaller.action.SKIP_FILE
Save performance profile Saves a profile generated during app usage. androidx.profileinstaller.action.SAVE_PROFILE
Benchmark operation Runs a profile installer benchmark operation. androidx.profileinstaller.action.BENCHMARK_OPERATION

Native Libraries (15)

lib39285EFA lib39285EFA.so
Breakpad Crash Reporter Crash reporting library that captures diagnostic minidumps. libbreakpad-core.so
libdcblur libdcblur.so
libgifimage libgifimage.so
libimagepipeline libimagepipeline.so
liblamemp3 liblamemp3.so
libnative-filters libnative-filters.so
libnative-imagetranscoder libnative-imagetranscoder.so
libpl_droidsonroids_gif libpl_droidsonroids_gif.so
libstatic-webp libstatic-webp.so
libuts-runtime libuts-runtime.so
libweexcore libweexcore.so
libweexjsb libweexjsb.so
libweexjss libweexjss.so
libweexjst libweexjst.so

Requested Permissions (27)

modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
android.permission.READ_MEDIA_IMAGES Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_IMAGES
android.permission.READ_MEDIA_VIDEO Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VIDEO
android.permission.READ_MEDIA_VISUAL_USER_SELECTED Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VISUAL_USER_SELECTED
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
App badge update Allows the app to update the launcher icon badge count on Huawei launchers. com.huawei.android.launcher.permission.CHANGE_BADGE
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.vivo.notification.permission.BADGE_ICON
com.asus.msa.SupplementaryDID.ACCESS
take pictures and videos This app can take pictures and record videos using the camera while the app is in use. android.permission.CAMERA
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. zhaolian.agent.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
Install Packages android.permission.INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
change network connectivity Allows the app to change the state of network connectivity. android.permission.CHANGE_NETWORK_STATE
connect and disconnect from Wi-Fi Allows the app to connect to and disconnect from Wi-Fi access points and to make changes to device configuration for Wi-Fi networks. android.permission.CHANGE_WIFI_STATE
Flashlight android.permission.FLASHLIGHT
Flashlight android.permission.FLASHLIGHT
Mount Unmount Filesystems android.permission.MOUNT_UNMOUNT_FILESYSTEMS
Read Logs android.permission.READ_LOGS
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
modify system settings Allows the app to modify the system\'s settings data. Malicious apps may corrupt your system\'s configuration. android.permission.WRITE_SETTINGS

Uses Features (2)

Camera Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera
Camera Autofocus Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera.autofocus

Activities (11)

io.dcloud.PandoraEntry
io.dcloud.PandoraEntryActivity
io.dcloud.feature.nativeObj.photoview.PhotoActivity
io.dcloud.WebAppActivity
io.dcloud.ProcessMediator
io.dcloud.WebviewActivity
com.dmcbig.mediapicker.PickerActivity
com.dmcbig.mediapicker.PreviewActivity
io.dcloud.feature.gallery.imageedit.IMGEditActivity
io.dcloud.sdk.activity.WebViewActivity
uts.sdk.modules.DCloudUniMedia.SystemPickerActivity

Services (1)

io.dcloud.sdk.base.service.DownloadService

Broadcast Receivers (2)

com.taobao.weex.WXGlobalEventReceiver com.taobao.weex.WXGlobalEventReceiver
Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver

Content Providers (3)

io.dcloud.common.util.DCloud_FileProvider
io.dcloud.sdk.base.service.provider.DCloudAdFileProvider
androidx.startup.InitializationProvider

Submission Details

Submitted At 2026-06-01
First Submission 2026-06-01
Last Submission 2026-06-01
Stored Until 2026-07-01