Analysis

  • max time kernel
    47s
  • max time network
    131s
  • platform
    android_x86
  • resource
    android-x86-arm-20240624-en
  • resource tags

    androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system
  • submitted
    29-06-2024 22:06

General

  • Target

    3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12.apk

  • Size

    4.5MB

  • MD5

    ddbe89199458ac917f297b47b66d12af

  • SHA1

    66e9b6eb444e3941a7c729b6581789b3f04790a6

  • SHA256

    3fbeeea1cb6b59144ed79537b6f20e8ebb295eecc35ed6dfa22743572c809d12

  • SHA512

    66d13016209ed3898e2db3dffda4fdca1e4196869b2fff1b8810b2e0f89df5e9763332edde5ba4f3afc334342d71e6ac43a4002ffdfe327e80301deb68327e11

  • SSDEEP

    98304:8pi7lv9dsNQs9XfwosbeRdr07m2TUKwZ5+sPNPX1oTYr/M1p:fd9kpwosgrY2ZssVX41p

Malware Config

Signatures

  • Queries the mobile country code (MCC) 1 TTPs 1 IoCs
  • Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • com.example.test
    1⤵
    • Queries the mobile country code (MCC)
    • Registers a broadcast receiver at runtime (usually for listening for system events)
    • Checks CPU information
    • Checks memory information
    PID:4312

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/com.example.test/files/profileInstalled
    Filesize

    24B

    MD5

    9238eecfde327841a509c28bab6a87cd

    SHA1

    ea4fdc3520ff46e7746ca8b179aa2f007a28a27c

    SHA256

    51b8d6db295ee8f5cb335f6e344b93d93f71d26b1a175a304bb8928bd25149ce

    SHA512

    5e3654a57be1019b04f229f71e72f23f7816a00dc351552f2a4b15a59c351931518e98e25c881a40fc2a316a97bb98bbd574473f0df4363ca77fb7036a6628c3

  • /data/data/com.example.test/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    c5289e1dc19e0358d6bb0a3ee2e2aebd

    SHA1

    9d88b16c5e50ca34b045ecb7a47c21e2bbdbcf57

    SHA256

    383941c81c8b148323ec3eb1c2d7427a0702147a7659e79c0b16491501b22b2e

    SHA512

    fb4812c5ccbd47c32fadd2b4c1b09701a9fb00aed4c02554c9de6a1833cf023edbb80677abed802e2131445bbda7ec74f092b5ffa7dee224a6815293f63e90b4

  • /data/misc/profiles/cur/0/com.example.test/primary.prof
    Filesize

    1KB

    MD5

    4ee3125c70faad60cb3ef7ddc16adb7c

    SHA1

    3c9c5394eb7cc8e7ffb36785aa6b4d1aa8b51713

    SHA256

    9aafa0754eb79bce250741c1a7f08d7c2cd7c29b29c4359bb77c6f802a5a8d5f

    SHA512

    76c6ccd57d185a193f97d956cb894dcb4e42f3acaa7b67fe9646966968f60d01ac38e6f3ae2e1de4c896e4f1638dfc76920b51245c750eab5bb50d867913d102

  • /data/misc/profiles/cur/0/com.example.test/primary.prof
    Filesize

    4KB

    MD5

    4facb278f25169b02647f52f52a75e2a

    SHA1

    d20127fef4d971ffca6ebbea6647d486cb646510

    SHA256

    052f0e05932e5784d48b01bd44305f7b0e9eaa42a6aa371cfd14bf76435e0105

    SHA512

    4bef4f5acbc0a98eac47fff2c7fc248d921d41f457a81b6124addd422769aadd1bf8ef96c8b67ccad534f9b50d1a81b5f0f65077cc5025d7f039c7568b68a180