Analysis
-
max time kernel
47s -
max time network
131s -
platform
android_x86 -
resource
android-x86-arm-20240624-en -
resource tags
androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system -
submitted
29-06-2024 22:06
Static task
static1
Behavioral task
behavioral1
Sample
3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12.apk
Resource
android-x86-arm-20240624-en
Behavioral task
behavioral2
Sample
3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12.apk
Resource
android-x64-20240624-en
Behavioral task
behavioral3
Sample
3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12.apk
Resource
android-x64-arm64-20240624-en
General
-
Target
3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12.apk
-
Size
4.5MB
-
MD5
ddbe89199458ac917f297b47b66d12af
-
SHA1
66e9b6eb444e3941a7c729b6581789b3f04790a6
-
SHA256
3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12
-
SHA512
66d13016209ed3898e2db3dffda4fdca1e4196869b2fff1b8810b2e0f89df5e9763332edde5ba4f3afc334342d71e6ac43a4002ffdfe327e80301deb68327e11
-
SSDEEP
98304:8pi7lv9dsNQs9XfwosbeRdr07m2TUKwZ5+sPNPX1oTYr/M1p:fd9kpwosgrY2ZssVX41p
Malware Config
Signatures
-
Queries the mobile country code (MCC) 1 TTPs 1 IoCs
Processes:
com.example.testdescription ioc process Framework service call com.android.internal.telephony.ITelephony.getNetworkCountryIsoForPhone com.example.test -
Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
Processes:
com.example.testdescription ioc process Framework service call android.app.IActivityManager.registerReceiver com.example.test -
Checks CPU information 2 TTPs 1 IoCs
-
Checks memory information 2 TTPs 1 IoCs
Processes
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
/data/data/com.example.test/files/profileInstalledFilesize
24B
MD59238eecfde327841a509c28bab6a87cd
SHA1ea4fdc3520ff46e7746ca8b179aa2f007a28a27c
SHA25651b8d6db295ee8f5cb335f6e344b93d93f71d26b1a175a304bb8928bd25149ce
SHA5125e3654a57be1019b04f229f71e72f23f7816a00dc351552f2a4b15a59c351931518e98e25c881a40fc2a316a97bb98bbd574473f0df4363ca77fb7036a6628c3
-
/data/data/com.example.test/files/profileinstaller_profileWrittenFor_lastUpdateTime.datFilesize
8B
MD5c5289e1dc19e0358d6bb0a3ee2e2aebd
SHA19d88b16c5e50ca34b045ecb7a47c21e2bbdbcf57
SHA256383941c81c8b148323ec3eb1c2d7427a0702147a7659e79c0b16491501b22b2e
SHA512fb4812c5ccbd47c32fadd2b4c1b09701a9fb00aed4c02554c9de6a1833cf023edbb80677abed802e2131445bbda7ec74f092b5ffa7dee224a6815293f63e90b4
-
/data/misc/profiles/cur/0/com.example.test/primary.profFilesize
1KB
MD54ee3125c70faad60cb3ef7ddc16adb7c
SHA13c9c5394eb7cc8e7ffb36785aa6b4d1aa8b51713
SHA2569aafa0754eb79bce250741c1a7f08d7c2cd7c29b29c4359bb77c6f802a5a8d5f
SHA51276c6ccd57d185a193f97d956cb894dcb4e42f3acaa7b67fe9646966968f60d01ac38e6f3ae2e1de4c896e4f1638dfc76920b51245c750eab5bb50d867913d102
-
/data/misc/profiles/cur/0/com.example.test/primary.profFilesize
4KB
MD54facb278f25169b02647f52f52a75e2a
SHA1d20127fef4d971ffca6ebbea6647d486cb646510
SHA256052f0e05932e5784d48b01bd44305f7b0e9eaa42a6aa371cfd14bf76435e0105
SHA5124bef4f5acbc0a98eac47fff2c7fc248d921d41f457a81b6124addd422769aadd1bf8ef96c8b67ccad534f9b50d1a81b5f0f65077cc5025d7f039c7568b68a180