Analysis

  • max time kernel
    272s
  • max time network
    290s
  • platform
    android_x64
  • resource
    android-x64-arm64-20240624-en
  • resource tags

    androidarch:armarch:arm64arch:x64arch:x86image:android-x64-arm64-20240624-enlocale:en-usos:android-11-x64system
  • submitted
    30-06-2024 14:07

General

  • Target

    29650bb7ee441cd6c3abbe4b0bff2fb2.apk

  • Size

    5.3MB

  • MD5

    29650bb7ee441cd6c3abbe4b0bff2fb2

  • SHA1

    318417164f1eb9f1e47bf5ae2ce1e4388944bc3c

  • SHA256

    8b9696f08c6941711ef1de573aac74b71f609c7e615aea078781434b0bfcd600

  • SHA512

    9bd5e4ccb569b81c71b2bb7d37367bee14b4b3bd246e91a4f04c087d6539bcadf0405c8d6272d69fcab4bab0828b5affb23475c34d7158730f443d027375554f

  • SSDEEP

    98304:fX6vH0fpdsCl039pnVVuzpVMAPHS8rf/O+T1LU3kaeACJol1M+PLXRoTwr5xpiP9:SvH0fpstpnVMVMAPHZhpLwkarDMeRpY

Malware Config

Signatures

  • Obtains sensitive information copied to the device clipboard 2 TTPs 1 IoCs

    Application may abuse the framework's APIs to obtain sensitive information copied to the device clipboard.

  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • com.example.shineinterview
    1⤵
    • Obtains sensitive information copied to the device clipboard
    • Checks CPU information
    • Checks memory information
    PID:4476

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/com.example.shineinterview/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    5a138294dc9d805e14374176b7dfa6a1

    SHA1

    3065f9a67dc83739a82550a1e757ec514d5c68c8

    SHA256

    0218d0a37c7b86e7f1acc7af265703eea94caf7a30f0e868a0d3822b05fcd400

    SHA512

    cd670f4c77574d0d3e962c499c3d5afdacf0faf145bbc5cfe1e2d81354bb47ed176ec1367af0e0cf00566e08e8de484410c0e078dd15fe30e042f3fe29b2136e

  • /data/misc/profiles/cur/0/com.example.shineinterview/primary.prof
    Filesize

    1KB

    MD5

    a9c5111aad72022a092dcf2436762c8d

    SHA1

    26a467b78bc11a467f4606a31e6b3fc2ea72f0cb

    SHA256

    dc7cb49f8558b6696e2d2a8bf432ae36735e2aaebc0697f3745d97edb6e42a76

    SHA512

    d86a5a4b4d30f148b6c115d7ff192e796a91a228a8f9314fca355a558feaff343eb55bd5265cf543ab61f0aba5d0352fc9d6ff2d38aca1592075855167919d33

  • /data/misc/profiles/cur/0/com.example.shineinterview/primary.prof
    Filesize

    3KB

    MD5

    9baff586e28303ca3568472c92307557

    SHA1

    431b599ca2a27f11fdec7cd54f6b86ff6d9c30fe

    SHA256

    c05ba4c5660515f7b597d2c444084dd449edff12ca8b283cb7576579c51b2a7a

    SHA512

    40854151eefaf5180fb32d2c8affac48c80005e901d8de238d40d4f86064258b1d43d8704e3d553998844c48d209614d3b69045426198c604545cc2b34833077