General

  • Target

    Spotify v8.9.46.426 (Premium).apk

  • Size

    76.6MB

  • Sample

    240630-27thzaydjg

  • MD5

    befa55891b46dfb56d9529d7d9b20c78

  • SHA1

    5cf75dd10a3af746ff13e755619066c7f38c9ce4

  • SHA256

    4248a489d865c7de92d0adab011db4910f875cf9a517e3038bc5715421becfc4

  • SHA512

    a536bdc0fa5189504f8e31a55bece5525ea058adca49859fdff664ea32339c748db37a91d4dad50b46bbc204dbc0c0ed0dc09db1914423edf980b7a85ee3eb5f

  • SSDEEP

    1572864:OmjGTbOL5hX+KqupgGZYB5Q94FFJdVczXDjd:5kiL5ltlpLZYJBdVaXDjd

Malware Config

Targets

    • Target

      Spotify v8.9.46.426 (Premium).apk

    • Size

      76.6MB

    • MD5

      befa55891b46dfb56d9529d7d9b20c78

    • SHA1

      5cf75dd10a3af746ff13e755619066c7f38c9ce4

    • SHA256

      4248a489d865c7de92d0adab011db4910f875cf9a517e3038bc5715421becfc4

    • SHA512

      a536bdc0fa5189504f8e31a55bece5525ea058adca49859fdff664ea32339c748db37a91d4dad50b46bbc204dbc0c0ed0dc09db1914423edf980b7a85ee3eb5f

    • SSDEEP

      1572864:OmjGTbOL5hX+KqupgGZYB5Q94FFJdVczXDjd:5kiL5ltlpLZYJBdVaXDjd

    • Checks if the Android device is rooted.

    • Queries information about running processes on the device

      Application may abuse the framework's APIs to collect information about running processes on the device.

    • Acquires the wake lock

    • Queries information about active data network

    • Reads information about phone network operator.

    • Checks the presence of a debugger

MITRE ATT&CK Matrix

Tasks