收款宝 icon

shoukuanbao_2.1.4_prod_online.apk

收款宝

22.86 MB

Analyzed: 2026-06-22 06:32 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
93/100
Threat scan clean
Privacy Permissions & network
79/100
High-risk permissions
85/100
Good
Overall trust

Facts

Threat scan 0/74 flagged, 0 suspicious
Permissions 24 requested
Network strings 1 URLs (0 HTTP, 1 HTTPS)
Target SDK 31
Certificate Valid until 2124-09-23 (98 years, suspicious)

Warnings

High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.WRITE_SETTINGS
Package Name zhaolian.agent
Version Code 214
Version Name 2.1.4
Application Name io.dcloud.application.DCloudApplication
Debuggable No
Allow Backup No
Min SDK Android 21 (Lollipop)
Target SDK Android 31 (Android 12)
Supported ABIs
arm64-v8a armeabi-v7a

Certificate & Signer

Valid From 2024-10-17 08:38:12
Valid To 2124-09-23 08:38:12
Serial Number 1deb0691
Thumbprint 19d7a288d9eb71d009b1c82f806bc5c768e9df20
Issuer: C CN
Issuer: CN zhaolian
Issuer: DN C:CN, CN:zhaolian, O:zhaolian, OU:IT
Issuer: O zhaolian
Issuer: OU IT
Subject: C CN
Subject: CN zhaolian
Subject: DN C:CN, CN:zhaolian, O:zhaolian, OU:IT
Subject: O zhaolian
Subject: OU IT

Security Scan

0 /74
✓ Clean
Scanned by 74 security vendors
Last scan: 2026-06-22 06:32 UTC
Malicious
0
Suspicious
0
Harmless
0
Undetected
52
Timeout
13
Failure
1

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.790
AVG timeout
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast timeout
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260620-02
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender timeout
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal timeout
No result reported
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.2.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb timeout
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.265
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet timeout
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.44998AVA:64.31458
Google undetected
No result reported
Engine 1782104447
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.58.59895
K7GW undetected
No result reported
Engine 14.58.59894
Kaspersky timeout
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.239
MaxSecure timeout
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26050.11
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda timeout
No result reported
Engine 4.6.4.2
Rising timeout
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor timeout
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.6.3.2
Skyhigh timeout
No result reported
Sophos undetected
No result reported
Engine 3.5.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-06-22.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS timeout
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1232
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38748
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5626
ZoneAlarm undetected
No result reported
Engine 6.25-116107717
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine c9b0e25:c9b0e25:1e47ea2:1e47ea2
tehtris type-unsupported
No result reported

File Signatures

SHA-256 8b655d00c4d8f11245a4b76ce83ad7959be373dd667f849f91d0983f8cd14b03
MD5 b639cdb011fcdc5f4e99b8530dc00e4b
SHA-1 3540a217175a75cf8b1733fb7c09e3176c9a178e
SSDEEP 393216:SPrqW1QJWTYsuPZlH5fXznptfO78icjHa/f4/pBRnDR5I8ELyB0a:YuW1FYsgZjznpRg8icj63i1a8Ff
TLSH T14B373362E779CE3FFCB308364AA58A2212615F4542535B1639CC7A2877337C94F99BC2
VHASH f8a84c7f9b71909c906e35b6cfc4f669
PERMHASH c21387cb2edb458f8936f32818971dc67b753ea6367ee472acba979599eb8e25

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v0.0 to extract, compression method=deflate File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (49%), Java Archive (24.5%), Sweet Home 3D Design (generic) (19%), ZIP compressed archive (7.2%) TrID file type guesses with probabilities.
dhash 0000101e1e0c0908 Perceptual hash used to compare visual similarity of files.
raw md5 d59a3601cbc966592d67beacd8b19b06 Raw MD5 hash of the file contents.
extensions png (453), xml (358), version (39), so (30), js (18), jpg (13), kotlin_builtins (8), json (6), dex (3), gif (3), ttf (3), gz (2), html (2), arsc (1), AutoDiscoverable (1), bin (1), BuiltInsLoader (1), CoroutineExceptionHandler (1), css (1), ExternalOverridabilityCondition (1), MainDispatcherFactory (1), MessageBodyReader (1), MessageBodyWriter (1), MetadataExtensions (1), MF (1), ogg (1), prof (1), profm (1), properties (1), Providers (1), RSA (1), SF (1), textproto (1), txt (1) File extensions found inside the APK and how many of each.
file types PNG (453), XML (358), unknown (93), ELF (30), JPG (13), GIF (3), DEX (2), HTML (2), JSON (2), Java Bytecode (1), JavaScript (1), OGG (1) Detected embedded file types and their counts.
highest datetime 1981-01-01 01:01:02 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 959 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 56 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (1)

io.dcloud.PandoraEntry
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.LAUNCHER android.intent.category.DEFAULT android.intent.category.BROWSABLE

Receiver Intents (1)

Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver
Actions
Install performance profile Installs a profile that helps optimize app performance. androidx.profileinstaller.action.INSTALL_PROFILE
Skip profile install Skips profile installation for this build. androidx.profileinstaller.action.SKIP_FILE
Save performance profile Saves a profile generated during app usage. androidx.profileinstaller.action.SAVE_PROFILE
Benchmark operation Runs a profile installer benchmark operation. androidx.profileinstaller.action.BENCHMARK_OPERATION

Native Libraries (15)

lib39285EFA lib39285EFA.so
Breakpad Crash Reporter Crash reporting library that captures diagnostic minidumps. libbreakpad-core.so
libdcblur libdcblur.so
libgifimage libgifimage.so
libimagepipeline libimagepipeline.so
liblamemp3 liblamemp3.so
libnative-filters libnative-filters.so
libnative-imagetranscoder libnative-imagetranscoder.so
libpl_droidsonroids_gif libpl_droidsonroids_gif.so
libstatic-webp libstatic-webp.so
libuts-runtime libuts-runtime.so
libweexcore libweexcore.so
libweexjsb libweexjsb.so
libweexjss libweexjss.so
libweexjst libweexjst.so

Requested Permissions (27)

modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
com.asus.msa.SupplementaryDID.ACCESS
android.permission.READ_MEDIA_IMAGES Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_IMAGES
android.permission.READ_MEDIA_VIDEO Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VIDEO
android.permission.READ_MEDIA_VISUAL_USER_SELECTED Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VISUAL_USER_SELECTED
App badge update Allows the app to update the launcher icon badge count on Huawei launchers. com.huawei.android.launcher.permission.CHANGE_BADGE
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.vivo.notification.permission.BADGE_ICON
take pictures and videos This app can take pictures and record videos using the camera while the app is in use. android.permission.CAMERA
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. zhaolian.agent.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
Install Packages android.permission.INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
change network connectivity Allows the app to change the state of network connectivity. android.permission.CHANGE_NETWORK_STATE
connect and disconnect from Wi-Fi Allows the app to connect to and disconnect from Wi-Fi access points and to make changes to device configuration for Wi-Fi networks. android.permission.CHANGE_WIFI_STATE
Flashlight android.permission.FLASHLIGHT
Flashlight android.permission.FLASHLIGHT
Mount Unmount Filesystems android.permission.MOUNT_UNMOUNT_FILESYSTEMS
Read Logs android.permission.READ_LOGS
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
modify system settings Allows the app to modify the system\'s settings data. Malicious apps may corrupt your system\'s configuration. android.permission.WRITE_SETTINGS

Uses Features (2)

Camera Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera
Camera Autofocus Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera.autofocus

Activities (11)

io.dcloud.PandoraEntry
io.dcloud.PandoraEntryActivity
io.dcloud.feature.nativeObj.photoview.PhotoActivity
io.dcloud.WebAppActivity
io.dcloud.ProcessMediator
io.dcloud.WebviewActivity
com.dmcbig.mediapicker.PickerActivity
com.dmcbig.mediapicker.PreviewActivity
io.dcloud.feature.gallery.imageedit.IMGEditActivity
io.dcloud.sdk.activity.WebViewActivity
uts.sdk.modules.DCloudUniMedia.SystemPickerActivity

Services (1)

io.dcloud.sdk.base.service.DownloadService

Broadcast Receivers (2)

com.taobao.weex.WXGlobalEventReceiver com.taobao.weex.WXGlobalEventReceiver
Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver

Content Providers (3)

io.dcloud.common.util.DCloud_FileProvider
io.dcloud.sdk.base.service.provider.DCloudAdFileProvider
androidx.startup.InitializationProvider

Submission Details

Submitted At 2026-06-22
First Submission 2026-06-22
Last Submission 2026-06-22
Stored Until 2026-07-22

Other Versions

收款宝 zhaolian.agent 2.1.2 (212) zhaolian_2.1.2_prod_online.apk Analyzed 2026-06-01 06:47 UTC
View report