Kwai icon

KWAI_7_DIAS_sign.apk

Kwai

20.03 MB

Analyzed: 2026-06-19 05:54 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
83/100
Threat scan flagged Debuggable build Modern target SDK
Privacy Permissions & network
81/100
High-risk permissions
82/100
Good
Overall trust

Facts

Threat scan 1/74 flagged, 0 suspicious
Permissions 14 requested
Network strings No URL strings detected
Target SDK 35
Certificate Valid until 2035-07-17 (9 years, suspicious)

Warnings

Threat scan flagged: 1/74 scanners marked this file as malicious.
High-risk permissions detected: android.permission.SYSTEM_ALERT_WINDOW, android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS
Package Name com.proxy.hg
Version Code 1
Version Name 1.0
Debuggable Yes
Allow Backup No
Min SDK Android 30 (Android 11)
Target SDK Android 35 (Android 15)
Supported ABIs
arm64-v8a armeabi-v7a

Certificate & Signer

Valid From 2008-02-29 01:33:46
Valid To 2035-07-17 01:33:46
Serial Number 936eacbe07f201df
Thumbprint 61ed377e85d386a8dfee6b864bd85b0bfaa5af81
Issuer: C US
Issuer: CN Android
Issuer: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Issuer: L Mountain View
Issuer: O Android
Issuer: OU Android
Issuer: ST California
Issuer: email android@android.com
Subject: C US
Subject: CN Android
Subject: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Subject: L Mountain View
Subject: O Android
Subject: OU Android
Subject: ST California
Subject: email android@android.com

Security Scan

1 /74
⚠️ Threats Detected
Detected by 1 vendor: BitDefenderFalx (Android.Riskware.TestKey.rA)
Scanned by 74 security vendors
Last scan: 2026-06-19 05:54 UTC
Malicious
1
Suspicious
0
Harmless
0
Undetected
63
Timeout
0
Failure
2

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.789
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260617-00
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx malicious
Android.Riskware.TestKey.rA
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.2.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.265
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.44964AVA:64.31442
Google undetected
No result reported
Engine 1781845298
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.58.59870
K7GW undetected
No result reported
Engine 14.58.59869
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.239
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26050.11
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.6.3.2
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.5.1.0
Symantec failure
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-06-19.01
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1231
Webroot undetected
No result reported
Engine 1.10.0.2
Xcitium undetected
No result reported
Engine 38740
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5625
ZoneAlarm undetected
No result reported
Engine 6.25-116107653
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine eb947ba:eb947ba:1e47ea2:1e47ea2
tehtris type-unsupported
No result reported
Engine v0.1.4

File Signatures

SHA-256 710a2767e2d04ff435f3851b0c3644a7e7ff09195baf86368072f46a7a94c078
MD5 7ef35ac69f7726e79c5609002323d0e8
SHA-1 49f80f03f5b00533a633d5aaca7a297e3f4f609b
SSDEEP 196608:Omp+2+rM3ZjHfntpvHjdpjifNYPPUfQ7MOkFkZNkF+wo9eETfuP9cXu7/fZpDa03:OmgMpj/tRH7i6Pv2q2+XePueLfiwRZN
TLSH T15D27D003F50A8D36C98DE7782DA39B82BB32B4A96F4387232549D139FD537D94A043D9
VHASH 7a0c310283222fc0138b84e84eea52df
PERMHASH 684f5dfea8770fb59339d84ed297a8437bff32c8a7cd5c5f9cd288e1b3c11749

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v1.0 to extract, compression method=store File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID SPSS Extension (40.2%), Android Package (36.2%), Java Archive (18.1%), ZIP compressed archive (5.3%) TrID file type guesses with probabilities.
dhash 0000001c0e070b02 Perceptual hash used to compare visual similarity of files.
raw md5 458ff46476885c8e885ee1f67c065ff6 Raw MD5 hash of the file contents.
extensions png (13), so (8), kotlin_builtins (7), properties (7), xml (7), dex (3), arsc (1), gz (1), MF (1), mp4 (1), Provider (1), RSA (1), SF (1), txt (1) File extensions found inside the APK and how many of each.
file types unknown (27), PNG (12), ELF (9), XML (7) Detected embedded file types and their counts.
highest datetime 2026-06-19 02:13:26 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 55 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 24 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (1)

com.proxy.hg.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
Categories
android.intent.category.LAUNCHER

Receiver Intents (1)

com.proxy.hg.PairReceiver
Actions
com.proxy.hg.ACTION_DO_PAIR com.proxy.hg.ACTION_DO_PAIR

Native Libraries (4)

C++ Standard Library Android NDK C++ runtime used by native code. libc++_shared.so
libconscrypt_jni libconscrypt_jni.so
libproxy_native libproxy_native.so
libspake2 libspake2.so

Requested Permissions (14)

have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
This app can appear on top of other apps This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. android.permission.SYSTEM_ALERT_WINDOW
Foreground service Allows the app to run a foreground service. android.permission.FOREGROUND_SERVICE
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS Custom app or vendor permission (not publicly documented). android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS
change network connectivity Allows the app to change the state of network connectivity. android.permission.CHANGE_NETWORK_STATE
android.permission.FOREGROUND_SERVICE_DATA_SYNC Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_DATA_SYNC
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
android.permission.MANAGE_EXTERNAL_STORAGE Custom app or vendor permission (not publicly documented). android.permission.MANAGE_EXTERNAL_STORAGE
read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE

Activities (1)

com.proxy.hg.MainActivity

Services (2)

com.proxy.hg.OverlayService
com.proxy.hg.FloatPairService

Broadcast Receivers (1)

com.proxy.hg.PairReceiver com.proxy.hg.PairReceiver

Submission Details

Submitted At 2026-06-19
First Submission 2026-06-19
Last Submission 2026-06-19
Stored Until 2026-07-19