Analysis

  • max time kernel
    176s
  • max time network
    170s
  • platform
    android_x64
  • resource
    android-x64-20240624-en
  • resource tags

    androidarch:x64arch:x86image:android-x64-20240624-enlocale:en-usos:android-10-x64system
  • submitted
    30-06-2024 22:10

General

  • Target

    cdc9433c672d1c95b4909c3d23533865d224d19414cc3ee864d25e4b356f9c0e.apk

  • Size

    4.9MB

  • MD5

    eddbd7d4f08a5eb3598ba17cfbdf9f75

  • SHA1

    ce56279256a13655f5128ce0d054ea7b02404f56

  • SHA256

    cdc9433c672d1c95b4909c3d23533865d224d19414cc3ee864d25e4b356f9c0e

  • SHA512

    a7fb769088a485ca6229ef70f31aea2aa64217396345afd86f14741db8fb028784f7a1273fba08cd4096ef6e29fb4bd276d4d8f5089a4ef42817f3fd010e97da

  • SSDEEP

    98304:ujZlvPEih6dw0yPtLf9D9sJvcJESx2U69D7lI27SNKtx4+oTYrpqEh:ubn5hYStLfRG9cJEi6TvQKt6ji

Malware Config

Signatures

  • Obtains sensitive information copied to the device clipboard 2 TTPs 1 IoCs

    Application may abuse the framework's APIs to obtain sensitive information copied to the device clipboard.

  • Queries the mobile country code (MCC) 1 TTPs 1 IoCs
  • Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • app.games.btg777
    1⤵
    • Obtains sensitive information copied to the device clipboard
    • Queries the mobile country code (MCC)
    • Registers a broadcast receiver at runtime (usually for listening for system events)
    • Checks CPU information
    • Checks memory information
    PID:5054

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/app.games.btg777/files/profileInstalled
    Filesize

    24B

    MD5

    eec008ec2c9fd8b933b4a305e89a775f

    SHA1

    6718cee974d995049a3815d84bc7ab31c55d0575

    SHA256

    47e001dc3d77bbe56930734c5a87d3b1b7871da63ba2c8ed0d300f248a5ec331

    SHA512

    9a243dc4f79d5b3524cbf6d710e810711ce5fd6447bf89a1d7e30857e50a6a46dec89df3c658fb856ddc7ea58a30610850f763ea8668eb583ad7a3284493ffc8

  • /data/data/app.games.btg777/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    e1fe2185e106128e54cab1a35395fa3b

    SHA1

    5d9f66b2f7ec7f021f3d18b650ff080417783948

    SHA256

    708b81620d5c059e18bb533d17dfb54301a5c8400ece8cda110b7280adcf6098

    SHA512

    5242c7c88ca53b7bb3b30e946a61a0556588b03926ab6c4cb921e1047dc6abc4fbdfab3321d86bb78dd8c1e3cb39a9d20cde1ec39ff63f3930947a67f67589f6

  • /data/misc/profiles/cur/0/app.games.btg777/primary.prof
    Filesize

    1KB

    MD5

    455d91db4072625982a3eeb92b072641

    SHA1

    e0b8ee56a22b2cb8429bc072da3ad26f306e06b0

    SHA256

    4acc8cb445efc6a4fbc3cdc12d453d0520add602ba6dd39e342f33b8d98c03e4

    SHA512

    0d24be4a2122ee88b22a32c08eb127cf4088f24e15ccfcbb6e44afea3f052b3502295cb14ea0ea7781a772eda2e2abf4c0232b692f4c3516ed99c01b7a61dab4

  • /data/misc/profiles/cur/0/app.games.btg777/primary.prof
    Filesize

    3KB

    MD5

    bd3734650f4e3168e5badc7767ce3b87

    SHA1

    daf98585ab87c24512a179ecf0d07537817f5d42

    SHA256

    90f1a763f6001210cac3cf185c9e025ea1cce5bb968fed60fcbabb42cf60ec44

    SHA512

    e12657b16c9af70cf30e33d3ddc4374d4e2d46f757d5dad0657b6c8081ac94026ce6aa79d2635f9c67173d7b1357c279a2b19af058ea654a66eb9d651acf076c