Analysis

  • max time kernel
    23s
  • max time network
    131s
  • platform
    android_x86
  • resource
    android-x86-arm-20240624-en
  • resource tags

    androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system
  • submitted
    01-07-2024 08:50

General

  • Target

    4f309b057a0465bfa98eeff9c39dcfb2.apk

  • Size

    3.3MB

  • MD5

    4f309b057a0465bfa98eeff9c39dcfb2

  • SHA1

    4d8de118f8db6ba1fcd91aa250c7c6093ffce703

  • SHA256

    a3a36a2884e086145608b737c1d9c66798dc14983cad47203fe1fbdffbc33a71

  • SHA512

    50400988c473b155b6789a394cf9018bed8fcd7a9cfbc879fa65321fab27429bfc7568b2f4fde55ee335f9e844bf9cdba05aaff3542ac59faec08c45c242c152

  • SSDEEP

    98304:JTf6kkRqA2R0aAqzkkIOX5BaB06AcWfGzp0gWC:565RtWd/5M+69us

Malware Config

Signatures

  • Queries the mobile country code (MCC) 1 TTPs 1 IoCs
  • Checks the presence of a debugger
  • Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
  • Checks CPU information 2 TTPs 1 IoCs
  • Checks memory information 2 TTPs 1 IoCs

Processes

  • com.devrajonline.android
    1⤵
    • Queries the mobile country code (MCC)
    • Registers a broadcast receiver at runtime (usually for listening for system events)
    • Checks CPU information
    • Checks memory information
    PID:4244

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • /data/data/com.devrajonline.android/cache/volley/1944199558-1013893717
    Filesize

    1KB

    MD5

    a3181bde8b3a8f313fe599acff5dd492

    SHA1

    47b8e13b330146e43e7c2605d13927129b8abe39

    SHA256

    3c5d7142c729e60a6af3c1f5cbc570612159a8d917719197d26fd40509826acb

    SHA512

    89f478f5d5d545ae148b2b9cf9212c7fe6b239bc0fd86f7a93a14ebfd3217a2e3600b67b3e68fc8ab0d341dad2f5aea6c8688fa55a6c567455993e15c66056d6

  • /data/data/com.devrajonline.android/cache/volley/1944199558-1013893717
    Filesize

    1KB

    MD5

    df71cb9689d976e42fa4759c0e5de700

    SHA1

    304cf03931570d405f0e6e56712578ee6c990569

    SHA256

    30db25d8eece3d009e263501c9746ed5f1aaaaff189c0dbeff81aef6f987f480

    SHA512

    34cb05533c1116d8936464d107372cdb44a242e6a2a3513154a1634f513af1661e1ec8ffc93a62f130c2870d6db9a00f6a5a628fa9f6d8613eaea9d91a176f15

  • /data/data/com.devrajonline.android/files/profileInstalled
    Filesize

    24B

    MD5

    69b5ea3a313896ef25fe2111e90d17d7

    SHA1

    398bec644bd5f7430a961aaa6d6f8667cf0e2a5e

    SHA256

    465cf827939ac95cbea1779179cc777f6efdfd32c83f89908cfca160921d0e25

    SHA512

    59397543011b0a90d9a5a6ed3e0c5d1e09075a0f23603ac46d6013b29fe845ba7c9f0230a30676689a2b9fc93e6e95788b65bee78c79f51857384bdac7e0f3d0

  • /data/data/com.devrajonline.android/files/profileinstaller_profileWrittenFor_lastUpdateTime.dat
    Filesize

    8B

    MD5

    7a110208240f91b0b1ad1900c7bf5967

    SHA1

    1d9adff3b696f4cc507ea33b024a2a2ace67d583

    SHA256

    d99dfba76e5a4eb48c644cc9e7402d554def2522a495096de5150a9e95cc5b1d

    SHA512

    41b8dbd2ab0ab5e41fe8ed92e2b3f8b361e3a790db5ad12af910b6fa60c102aac4a71be594cf00dae019a00414d1cbaedcce5f9cd82e981635ecb59533431779

  • /data/misc/profiles/cur/0/com.devrajonline.android/primary.prof
    Filesize

    2KB

    MD5

    92127441b3d65f1792ec928b23744a68

    SHA1

    d76b8dcd87853f62b6d4486cb03c6a15d99fbd73

    SHA256

    818942c9f3fb024c0f7deeede0754a336c79ba399bbacee329404248e4795f57

    SHA512

    5762bc0f2b1dc70442f66d643dd073f68256322754f91a782f2c70c67c55b77992072485c177bad432f937c9aab5026cd8759833d852d3827e785ad6f9508db4