General

  • Target

    9a35498a63f6fcc8586618770c54a037.apk

  • Size

    4.7MB

  • Sample

    240701-khqmca1hlg

  • MD5

    9a35498a63f6fcc8586618770c54a037

  • SHA1

    048bf703e9bde232090ab25915eb38fb2e45a3b9

  • SHA256

    1eb8a431cce2d2a600f652067fe8d2e4a5df57f340e99cbd4aab38ef138571e2

  • SHA512

    6e7426f4970cd9ea7ea5bb986436282e0e05807d71ac29807d6e5599b6ff7e31337b12b185f185305dd31fc2d3a8b1f91af00eba41041bd6f0d7c9e74e0301f2

  • SSDEEP

    98304:hTxB7YOCZc8EHeectu6XO2kuoQNm7qsuqhQIxOCJMXNv2e7i0r+k5Ks9wD:V7QEHeZ+IoQbKjJMdR5Ks98

Malware Config

Extracted

Family

axbanker

C2

https://pntedgy.com/api/user/step1

Targets

    • Target

      9a35498a63f6fcc8586618770c54a037.apk

    • Size

      4.7MB

    • MD5

      9a35498a63f6fcc8586618770c54a037

    • SHA1

      048bf703e9bde232090ab25915eb38fb2e45a3b9

    • SHA256

      1eb8a431cce2d2a600f652067fe8d2e4a5df57f340e99cbd4aab38ef138571e2

    • SHA512

      6e7426f4970cd9ea7ea5bb986436282e0e05807d71ac29807d6e5599b6ff7e31337b12b185f185305dd31fc2d3a8b1f91af00eba41041bd6f0d7c9e74e0301f2

    • SSDEEP

      98304:hTxB7YOCZc8EHeectu6XO2kuoQNm7qsuqhQIxOCJMXNv2e7i0r+k5Ks9wD:V7QEHeZ+IoQbKjJMdR5Ks98

    • AxBanker

      AxBanker is an Android banking trojan that targets bank customers information distributed through fake bank applications.

MITRE ATT&CK Matrix

Tasks