General

  • Target

    facebook-lite-412-0-0-8-106.apk

  • Size

    2.4MB

  • Sample

    240630-z7g4tswbpa

  • MD5

    f7b027d62e1353599d0fc70512594f6f

  • SHA1

    d09b02f60f0020b19ad4ee52e1ad655cfe9edda7

  • SHA256

    2ebb340099d2c7c067ba98aa31b773d0e8c2d5001d72ea2a42bb366bb442b7d5

  • SHA512

    9bc86b8dcb4f3c3a649e4c3adb513cf255ea14b3e838b528a0eb677d14b9bf87a2fbbc0722f241cf1e0389b564c0bd55dfd2d6ab3b9dec7c2a7b36e8156f9749

  • SSDEEP

    49152:/LcdSe1jQGbWQxQEwOvh0fvBXDmKsnQmmijuW3Ur8sQR05xCd5MSl:/0S2jQAbBvh0fpXDUnDAW3UkunCd5dl

Malware Config

Targets

    • Target

      facebook-lite-412-0-0-8-106.apk

    • Size

      2.4MB

    • MD5

      f7b027d62e1353599d0fc70512594f6f

    • SHA1

      d09b02f60f0020b19ad4ee52e1ad655cfe9edda7

    • SHA256

      2ebb340099d2c7c067ba98aa31b773d0e8c2d5001d72ea2a42bb366bb442b7d5

    • SHA512

      9bc86b8dcb4f3c3a649e4c3adb513cf255ea14b3e838b528a0eb677d14b9bf87a2fbbc0722f241cf1e0389b564c0bd55dfd2d6ab3b9dec7c2a7b36e8156f9749

    • SSDEEP

      49152:/LcdSe1jQGbWQxQEwOvh0fvBXDmKsnQmmijuW3Ur8sQR05xCd5MSl:/0S2jQAbBvh0fpXDUnDAW3UkunCd5dl

    • Loads dropped Dex/Jar

      Runs executable file dropped to the device during analysis.

    • Queries a list of all the installed applications on the device (Might be used in an attempt to overlay legitimate apps)

    • Queries account information for other applications stored on the device

      Application may abuse the framework's APIs to collect account information stored on the device.

    • Queries information about running processes on the device

      Application may abuse the framework's APIs to collect information about running processes on the device.

    • Reads the content of photos stored on the user's device.

    • Acquires the wake lock

    • Queries information about active data network

    • Queries the mobile country code (MCC)

    • Reads information about phone network operator.

MITRE ATT&CK Matrix

Tasks