Static Analysis Tools > APKdevastate
Advanced analysis software for APK payloads created by RATs.
APKdevastate
APKdevastate is a powerful Windows application designed to analyze Android APK files for security risks, malware signatures, and suspicious behaviors. The tool helps identify potentially malicious applications by examining permissions, certificate information, and known Remote Access Trojan (RAT) signatures.
The application may be detected as infected by Anti-Virus because it contains RAT names
CLI Version for Linux: https://github.com/rafosw/APKdevastate-cli
Sample view of the software
Payload Alert

Malicious Alert

Clean APK

Features
- Permission Analysis: Lists and evaluates dangerous Android permissions
- Certificate Verification: Validates APK signing certificates against trusted organizations
- RAT Detection: Scans for known Remote Access Trojan signatures
- Hash Generation: Calculates MD5, SHA1, and SHA256 hashes for file verification
- Encryption Detection: Identifies potentially obfuscated or encrypted code
- Risk Assessment: Provides an overall security evaluation of the analyzed APK
- Native Library Scan: Detects suspicious
.solibraries - Dynamic Loader Check: Identifies reflection and dynamic class loading
Requirements
- .NET Framework 4.5+(downloads automatically)
- Java Runtime Environment
Usage
- Open the application
- Click "Analyze!" to choose apk file
- Click "RUN" to begin the security scan
- Review the detailed analysis results
Example Usage-
Click here to Watch Demo Video
🌟 Support the Project
Love APKdevastate? Give us a ⭐ on GitHub!
Installation
Please download the .rar file with the name of the application and then extract it from the .rar to a folder, remember that if the files inside the .rar file are not in a directory, the application will not work
Download latest version:
https://github.com/rafosw/APKdevastate/releases/tag/APKdevastatev1.5
Disclaimer: APKdevastate does not guarantee 100% accuracy in all detections or results. Use at your own discretion.