General

  • Target

    db0b0e5eb345facc657dd38e95995545.bin

  • Size

    183.3MB

  • MD5

    db0b0e5eb345facc657dd38e95995545

  • SHA1

    6bc1d177656e76702734bd3b886156964adba161

  • SHA256

    353745675adcfa601cb9a5022cb073585100985b124126321f22050aad6e2943

  • SHA512

    ea5e027d073a41c0d264e84d42629b6e1aadf95a8194e4022899b7cd21a030b199426846d619bc418e32cc811ef746bc532c6b8ed51c6368cf837e7517a14198

  • SSDEEP

    3145728:zjucD6r95njYYfnpc09bGKR8vReA7z8YTMI2DFOi44SSecymKgU8gvgBO6hJ1leo:zacD6xpYlIGKCvRea/4XD04jecyaUhYF

Score
6/10

Malware Config

Signatures

  • Requests dangerous framework permissions 5 IoCs

Files

  • db0b0e5eb345facc657dd38e95995545.bin
    .apk android arch:arm64 arch:arm

    Password: infected

    com.roblox.client

    com.roblox.client.startup.ActivitySplash


Android Permissions

db0b0e5eb345facc657dd38e95995545.bin

Permissions

android.permission.BLUETOOTH

android.permission.POST_NOTIFICATIONS

android.permission.VIBRATE

com.android.vending.BILLING

android.permission.INTERNET

android.permission.ACCESS_NETWORK_STATE

android.permission.ACCESS_WIFI_STATE

android.permission.MODIFY_AUDIO_SETTINGS

android.permission.READ_CONTACTS

android.permission.FOREGROUND_SERVICE

android.permission.FOREGROUND_SERVICE_DATA_SYNC

android.permission.USE_FULL_SCREEN_INTENT

android.permission.DISABLE_KEYGUARD

android.permission.WRITE_EXTERNAL_STORAGE

com.google.android.gms.permission.AD_ID

android.permission.READ_EXTERNAL_STORAGE

android.permission.WRITE_EXTERNAL_STORAGE

com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE

android.permission.WAKE_LOCK

com.google.android.c2dm.permission.RECEIVE

com.roblox.client.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION