Analysis

  • max time kernel
    8s
  • max time network
    132s
  • platform
    android_x64
  • resource
    android-x64-arm64-20240624-en
  • resource tags

    androidarch:armarch:arm64arch:x64arch:x86image:android-x64-arm64-20240624-enlocale:en-usos:android-11-x64system
  • submitted
    01-07-2024 02:34

General

  • Target

    833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67.apk

  • Size

    3.9MB

  • MD5

    46f65e8d735ec88344f0e3fd64d0ecc1

  • SHA1

    7f928d391000f0c0f32af4abbdd571ecdd7d0025

  • SHA256

    833e332dc7a23004cf9da9714c7d4522571617c174f654957c173ebcc74ede67

  • SHA512

    acea2a07a838bbe2aabb4445336773d12d972269a04c8df9d7867a54024e7010e390dc34538a539a89dcfd4cb6ade1464798f9593f7bd1ae4c4a3c9334ce50ba

  • SSDEEP

    98304:0ojAXbAmWbmsrT6Sr7Cs3wWXkYQYatKFdtho/KrQZB/y:7MbgTHr7DwWN+0tYB6

Score
6/10

Malware Config

Signatures

  • Checks the application is allowed to request package installs through the package installer 1 TTPs 1 IoCs

    Checks the application is allowed to install additional applications (Might try to install applications from unknown sources).

Processes

  • com.mtf.download
    1⤵
    • Checks the application is allowed to request package installs through the package installer
    PID:4441

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/com.mtf.download/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    abe04a521bc1f85c26db3437a0bcca06

    SHA1

    d3f0cd5900ab48ad0515c6b6d1946445048aae5d

    SHA256

    719409945aa69c20d9a54be3dee2fcf309c6b10d8dc91a24dd4feeb0f5e7eb0d

    SHA512

    d33b21985789ffa014720b98f761779619804b65295923584393a86573bcade5cbdd740e0abfffca3511b01b7ef77413040a7333f579c7d38f6e0720f734aa6c

  • /data/misc/profiles/cur/0/com.mtf.download/primary.prof
    Filesize

    2KB

    MD5

    86c631e67c758d92e09cb4e8ed40d5f2

    SHA1

    eae2c33d75184b5ad2275bf440353be737648d77

    SHA256

    7072a584d031796d30a26500abf555e63689e6fa0b534774dbfadedb14c2e0db

    SHA512

    2d68def5f6b3b1ed87951a1870bbfa6d8acbda102d8f521d4afa21e46bfed49141868c6c26b8fcbca94efac4c0f1df2b14afbea9de2e04d8e2d7708f8d8430ef