Analysis

  • max time kernel
    12s
  • max time network
    27s
  • platform
    android_x86
  • resource
    android-x86-arm-20240624-en
  • resource tags

    androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system
  • submitted
    01-07-2024 08:35

General

  • Target

    ec3e046e3ec9519fde99e35cfae3a958.apk

  • Size

    5.3MB

  • MD5

    ec3e046e3ec9519fde99e35cfae3a958

  • SHA1

    cc6caaf13f5ef7b5e845cee881c0fd63b3d48455

  • SHA256

    07d47a836fe5f766119bfc3ed8f9f4c51db57890a2252f44712e1fa043a20bae

  • SHA512

    9ff9503f5f0335263f310522f39ec5b36fec0ed4a99062df8c2ad9cb78df9c91ae57ecf3f02f81f91574d0ec6679dbcb9d5475856ccc8c50de58176b792b2762

  • SSDEEP

    98304:HX6vH0fpdsCl039pnVVuzpVMAPHS8rf/O+T1LUhkeSUC/v9pWZHT/JoTwr5xpiXu:qvH0fpstpnVMVMAPHZhpLGke/gWVhpD

Malware Config

Signatures

  • Queries the mobile country code (MCC) 1 TTPs 1 IoCs
  • Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • com.example.shineinterview
    1⤵
    • Queries the mobile country code (MCC)
    • Registers a broadcast receiver at runtime (usually for listening for system events)
    • Checks CPU information
    • Checks memory information
    PID:4265

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/com.example.shineinterview/files/profileInstalled
    Filesize

    24B

    MD5

    adae48e3aa9574cf2dacc9bf3c59b09d

    SHA1

    d9b8d274c66ee264dd1b84db1c3217d85857428a

    SHA256

    8b5fbf0355c36fafca9933411f09f06ae9599560142b007ad11a694d615be332

    SHA512

    6427cb968b1046ed19b724f56d19617f0b73a338812374afcff5ae4f3aa556dbb6a75b36b6b944dead5881fce7936bdebe8e2a388a2600e7f2357cab28651168

  • /data/data/com.example.shineinterview/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    4362433430b7f3554df82c02c0c5229e

    SHA1

    2d96bb3421cd37eeab1f24865b4cd92853889315

    SHA256

    b6187cb72040549f03ff962ada231616e91c5fa6a940c2ea899aa8f62ba4ab8d

    SHA512

    f175e29576d231ada4598ed233dc30806fc1991dd907121e80c8b2c4c4a73255031a7c02b5e72f99ad5f62cb4f5ca10b291cede8db5130e8d8419b7185901b38

  • /data/misc/profiles/cur/0/com.example.shineinterview/primary.prof
    Filesize

    1KB

    MD5

    a9c5111aad72022a092dcf2436762c8d

    SHA1

    26a467b78bc11a467f4606a31e6b3fc2ea72f0cb

    SHA256

    dc7cb49f8558b6696e2d2a8bf432ae36735e2aaebc0697f3745d97edb6e42a76

    SHA512

    d86a5a4b4d30f148b6c115d7ff192e796a91a228a8f9314fca355a558feaff343eb55bd5265cf543ab61f0aba5d0352fc9d6ff2d38aca1592075855167919d33