General

  • Target

    farmville-2-v25.6.69-mod2.apk

  • Size

    195.4MB

  • Sample

    240704-1bgzmasdja

  • MD5

    b6b1ffab7c5030f531b400ab01a3cdb8

  • SHA1

    eee1134407a41a49703d5f038970d2f90bff791c

  • SHA256

    f8aeeb8abbad3c0c96b8e5d1429b2d2452497efade8b9f2a4e936c7f8e4105df

  • SHA512

    eb4903dd8bb0e582933ba2bbcda2fe76cfa1581f9a192baa5d18f940f83c639304e0461cd124652ed439c0475a8d4077defb51621d0118cdaacdd7789614e9fa

  • SSDEEP

    3145728:TIVj6jBfrxesjJuGGtYR7m+NwEJO18ZVqpJQaUXGpkKUipBppsMWC2Pqig6q3JQd:TIZmVfl/G6hn/qJLUWpkOEeqwyjaSl

Malware Config

Targets

    • Target

      farmville-2-v25.6.69-mod2.apk

    • Size

      195.4MB

    • MD5

      b6b1ffab7c5030f531b400ab01a3cdb8

    • SHA1

      eee1134407a41a49703d5f038970d2f90bff791c

    • SHA256

      f8aeeb8abbad3c0c96b8e5d1429b2d2452497efade8b9f2a4e936c7f8e4105df

    • SHA512

      eb4903dd8bb0e582933ba2bbcda2fe76cfa1581f9a192baa5d18f940f83c639304e0461cd124652ed439c0475a8d4077defb51621d0118cdaacdd7789614e9fa

    • SSDEEP

      3145728:TIVj6jBfrxesjJuGGtYR7m+NwEJO18ZVqpJQaUXGpkKUipBppsMWC2Pqig6q3JQd:TIZmVfl/G6hn/qJLUWpkOEeqwyjaSl

    • Checks if the Android device is rooted.

    • Loads dropped Dex/Jar

      Runs executable file dropped to the device during analysis.

    • Acquires the wake lock

    • Queries information about active data network

    • Queries the mobile country code (MCC)

    • Reads information about phone network operator.

    • Listens for changes in the sensor environment (might be used to detect emulation)

MITRE ATT&CK Matrix

Tasks