Analysis
-
max time kernel
46s -
max time network
135s -
platform
android_x86 -
resource
android-x86-arm-20240624-en -
resource tags
androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system -
submitted
29-06-2024 22:04
Static task
static1
Behavioral task
behavioral1
Sample
5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e.apk
Resource
android-x86-arm-20240624-en
Behavioral task
behavioral2
Sample
5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e.apk
Resource
android-x64-20240624-en
Behavioral task
behavioral3
Sample
5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e.apk
Resource
android-x64-arm64-20240624-en
General
-
Target
5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e.apk
-
Size
4.4MB
-
MD5
27ab58d304e89bf784dcab85f59482ad
-
SHA1
778ce244cd72b3388d0d240f921b40d885732b6d
-
SHA256
5d2461d4aa977208da9aa2aca48646ad2586af07a1c718cbbe8ee026d013009e
-
SHA512
5dcf4d9f973f22efd420629e1cda8f76b15aa732c0cf5b92a51ef10c5adaf46f1e2b414922133a54b077476866c18b6c46845aa07b3aa952bf2419d552efef60
-
SSDEEP
98304:NLojuXUOlvBZjypRFOy9E6tSqILjey90ylshHuEzlAwRvZ3W:NbXUA21ErjeByquwM
Malware Config
Signatures
-
Queries the phone number (MSISDN for GSM devices) 1 TTPs
-
Queries the mobile country code (MCC) 1 TTPs 1 IoCs
Processes:
apnapuram.pk.sbisms2newdescription ioc process Framework service call com.android.internal.telephony.ITelephony.getNetworkCountryIsoForPhone apnapuram.pk.sbisms2new -
Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
Processes:
apnapuram.pk.sbisms2newdescription ioc process Framework service call android.app.IActivityManager.registerReceiver apnapuram.pk.sbisms2new -
Checks CPU information 2 TTPs 1 IoCs
-
Checks memory information 2 TTPs 1 IoCs
Processes
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
/data/data/apnapuram.pk.sbisms2new/files/profileInstalledFilesize
24B
MD5727c81d60933a14a766ce0949a7c1348
SHA1ef5740a5914580cc5393e2c1c1fcfb66bd2dea39
SHA256e0494cd695b8d8a8e4ceaa47331632a547e8ad21ed50b32cf5d62028e63b9d5c
SHA5121756ec89cdf0739e988b5496f9a6f2586374518d74dfa8f99474d90ef998d27b99095bfcaacce031f42b219f5da5cbb068a01290a52c9a38112f3b158e6e5ba8
-
/data/data/apnapuram.pk.sbisms2new/files/profileinstaller_profileWrittenFor_lastUpdateTime.datFilesize
8B
MD550a893ca0b559705059f9db33a8ebe8c
SHA11b3660aa16c181f918f87351c3393710080baff4
SHA256996fa700e3be805a017f7c1ef043caaec07d8316fc2914874e04869edf37babc
SHA512421b3f1a3c9e315e24411021c3a981f97e578d1b999bdd4ac7267415d0f6e2e615de5afcc36ba6754b9944e8430f788ee943d31b87d6f3bfcaa000152bf2e0af
-
/data/misc/profiles/cur/0/apnapuram.pk.sbisms2new/primary.profFilesize
1KB
MD5f96e9622d3d2df4be53fe52f1db85589
SHA1986e220f53015c179e01bac1f821a0ee6ac3ca62
SHA25696b182a06fb8db8537a25d904f85432e6d408a1359d16dc46d661e2d916632be
SHA51265895b968b514ca5c7967f880c6bffb9ef72bbf3e485d3a71ecef8b7c649dd0083c0f7e738f472c439c856f528b0e5ab2a4ebc81eef5334baeb263bce348077a
-
/data/misc/profiles/cur/0/apnapuram.pk.sbisms2new/primary.profFilesize
2KB
MD5b193c4b57e4c25378e4a5ec7b4cc7b99
SHA1f15aa384c287eb24d15dde04116fe8b7ea75ada6
SHA2564cae062e5cf8ab0e90cf792c6d966754df7ef13d9c7bfd4f8bc5789022c66528
SHA512bfa0a89a2b58e1663df2d546862563d96234727bf2cd34132320e36aa4a84c2c4e376a3ac769ade26a1b3a67a4676df5cc89892562ad3f82c355bf8a6648f59d