Analysis
-
max time kernel
8s -
max time network
132s -
platform
android_x64 -
resource
android-x64-arm64-20240624-en -
resource tags
androidarch:armarch:arm64arch:x64arch:x86image:android-x64-arm64-20240624-enlocale:en-usos:android-11-x64system -
submitted
01-07-2024 02:34
Static task
static1
Behavioral task
behavioral1
Sample
833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67.apk
Resource
android-x86-arm-20240624-en
Behavioral task
behavioral2
Sample
833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67.apk
Resource
android-x64-20240624-en
Behavioral task
behavioral3
Sample
833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67.apk
Resource
android-x64-arm64-20240624-en
General
-
Target
833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67.apk
-
Size
3.9MB
-
MD5
46f65e8d735ec88344f0e3fd64d0ecc1
-
SHA1
7f928d391000f0c0f32af4abbdd571ecdd7d0025
-
SHA256
833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67
-
SHA512
acea2a07a838bbe2aabb4445336773d12d972269a04c8df9d7867a54024e7010e390dc34538a539a89dcfd4cb6ade1464798f9593f7bd1ae4c4a3c9334ce50ba
-
SSDEEP
98304:0ojAXbAmWbmsrT6Sr7Cs3wWXkYQYatKFdtho/KrQZB/y:7MbgTHr7DwWN+0tYB6
Malware Config
Signatures
-
Checks the application is allowed to request package installs through the package installer 1 TTPs 1 IoCs
Checks the application is allowed to install additional applications (Might try to install applications from unknown sources).
Processes:
com.mtf.downloaddescription ioc process Framework service call android.content.pm.IPackageManager.canRequestPackageInstalls com.mtf.download
Processes
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
/data/data/com.mtf.download/files/profileinstaller_profileWrittenFor_lastUpdateTime.datFilesize
8B
MD5abe04a521bc1f85c26db3437a0bcca06
SHA1d3f0cd5900ab48ad0515c6b6d1946445048aae5d
SHA256719409945aa69c20d9a54be3dee2fcf309c6b10d8dc91a24dd4feeb0f5e7eb0d
SHA512d33b21985789ffa014720b98f761779619804b65295923584393a86573bcade5cbdd740e0abfffca3511b01b7ef77413040a7333f579c7d38f6e0720f734aa6c
-
/data/misc/profiles/cur/0/com.mtf.download/primary.profFilesize
2KB
MD586c631e67c758d92e09cb4e8ed40d5f2
SHA1eae2c33d75184b5ad2275bf440353be737648d77
SHA2567072a584d031796d30a26500abf555e63689e6fa0b534774dbfadedb14c2e0db
SHA5122d68def5f6b3b1ed87951a1870bbfa6d8acbda102d8f521d4afa21e46bfed49141868c6c26b8fcbca94efac4c0f1df2b14afbea9de2e04d8e2d7708f8d8430ef