Analysis

  • max time kernel
    46s
  • max time network
    135s
  • platform
    android_x86
  • resource
    android-x86-arm-20240624-en
  • resource tags

    androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system
  • submitted
    29-06-2024 22:04

General

  • Target

    5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e.apk

  • Size

    4.4MB

  • MD5

    27ab58d304e89bf784dcab85f59482ad

  • SHA1

    778ce244cd72b3388d0d240f921b40d885732b6d

  • SHA256

    5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e

  • SHA512

    5dcf4d9f973f22efd420629e1cda8f76b15aa732c0cf5b92a51ef10c5adaf46f1e2b414922133a54b077476866c18b6c46845aa07b3aa952bf2419d552efef60

  • SSDEEP

    98304:NLojuXUOlvBZjypRFOy9E6tSqILjey90ylshHuEzlAwRvZ3W:NbXUA21ErjeByquwM

Malware Config

Signatures

  • Queries the phone number (MSISDN for GSM devices) 1 TTPs
  • Queries the mobile country code (MCC) 1 TTPs 1 IoCs
  • Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • apnapuram.pk.sbisms2new
    1⤵
    • Queries the mobile country code (MCC)
    • Registers a broadcast receiver at runtime (usually for listening for system events)
    • Checks CPU information
    • Checks memory information
    PID:4244

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/apnapuram.pk.sbisms2new/files/profileInstalled
    Filesize

    24B

    MD5

    727c81d60933a14a766ce0949a7c1348

    SHA1

    ef5740a5914580cc5393e2c1c1fcfb66bd2dea39

    SHA256

    e0494cd695b8d8a8e4ceaa47331632a547e8ad21ed50b32cf5d62028e63b9d5c

    SHA512

    1756ec89cdf0739e988b5496f9a6f2586374518d74dfa8f99474d90ef998d27b99095bfcaacce031f42b219f5da5cbb068a01290a52c9a38112f3b158e6e5ba8

  • /data/data/apnapuram.pk.sbisms2new/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    50a893ca0b559705059f9db33a8ebe8c

    SHA1

    1b3660aa16c181f918f87351c3393710080baff4

    SHA256

    996fa700e3be805a017f7c1ef043caaec07d8316fc2914874e04869edf37babc

    SHA512

    421b3f1a3c9e315e24411021c3a981f97e578d1b999bdd4ac7267415d0f6e2e615de5afcc36ba6754b9944e8430f788ee943d31b87d6f3bfcaa000152bf2e0af

  • /data/misc/profiles/cur/0/apnapuram.pk.sbisms2new/primary.prof
    Filesize

    1KB

    MD5

    f96e9622d3d2df4be53fe52f1db85589

    SHA1

    986e220f53015c179e01bac1f821a0ee6ac3ca62

    SHA256

    96b182a06fb8db8537a25d904f85432e6d408a1359d16dc46d661e2d916632be

    SHA512

    65895b968b514ca5c7967f880c6bffb9ef72bbf3e485d3a71ecef8b7c649dd0083c0f7e738f472c439c856f528b0e5ab2a4ebc81eef5334baeb263bce348077a

  • /data/misc/profiles/cur/0/apnapuram.pk.sbisms2new/primary.prof
    Filesize

    2KB

    MD5

    b193c4b57e4c25378e4a5ec7b4cc7b99

    SHA1

    f15aa384c287eb24d15dde04116fe8b7ea75ada6

    SHA256

    4cae062e5cf8ab0e90cf792c6d966754df7ef13d9c7bfd4f8bc5789022c66528

    SHA512

    bfa0a89a2b58e1663df2d546862563d96234727bf2cd34132320e36aa4a84c2c4e376a3ac769ade26a1b3a67a4676df5cc89892562ad3f82c355bf8a6648f59d