Analysis
-
max time kernel
9s -
max time network
184s -
platform
android_x86 -
resource
android-x86-arm-20240624-en -
resource tags
androidarch:armarch:x86image:android-x86-arm-20240624-enlocale:en-usos:android-9-x86system -
submitted
04-07-2024 22:03
Static task
static1
Behavioral task
behavioral1
Sample
e57974e66d56aa4e199d382fe38e92cf9e17845d15dcd7c28e96db447cbf44c7.apk
Resource
android-x86-arm-20240624-en
Behavioral task
behavioral2
Sample
e57974e66d56aa4e199d382fe38e92cf9e17845d15dcd7c28e96db447cbf44c7.apk
Resource
android-x64-20240624-en
Behavioral task
behavioral3
Sample
e57974e66d56aa4e199d382fe38e92cf9e17845d15dcd7c28e96db447cbf44c7.apk
Resource
android-x64-arm64-20240624-en
General
-
Target
e57974e66d56aa4e199d382fe38e92cf9e17845d15dcd7c28e96db447cbf44c7.apk
-
Size
145KB
-
MD5
aef36a69af4cf7149b7cc940d15c3587
-
SHA1
4f4c759e59bf4b3c2d907c2a3aa32d9dfcc3db78
-
SHA256
e57974e66d56aa4e199d382fe38e92cf9e17845d15dcd7c28e96db447cbf44c7
-
SHA512
81111d4c74ce2659a065cc26138008d18d0d2a4bd06dc83e573171523b3e4ad7768a7fb9a0855dc4b1fd4159e10a2ac0a0da95da368d9e02dce48620a33e601d
-
SSDEEP
3072:F07w3Ey3Eb3E/BN1UrhxUphUG77VKEQRoeXFx3Eb:urhUWGwEQRDQ
Malware Config
Signatures
-
Queries a list of all the installed applications on the device (Might be used in an attempt to overlay legitimate apps) 1 TTPs
-
Queries the phone number (MSISDN for GSM devices) 1 TTPs
-
Reads the contacts stored on the device. 1 TTPs 1 IoCs
Processes:
com.Zionshop.Hardcoredescription ioc process URI accessed for read content://com.android.contacts/data/phones com.Zionshop.Hardcore -
Queries information about active data network 1 TTPs 1 IoCs
Processes:
com.Zionshop.Hardcoredescription ioc process Framework service call android.net.IConnectivityManager.getActiveNetworkInfo com.Zionshop.Hardcore -
Tries to add a device administrator. 2 TTPs 1 IoCs
-
Registers a broadcast receiver at runtime (usually for listening for system events) 1 TTPs 1 IoCs
Processes:
com.Zionshop.Hardcoredescription ioc process Framework service call android.app.IActivityManager.registerReceiver com.Zionshop.Hardcore
Processes
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
/data/data/com.Zionshop.Hardcore/app_config/configFilesize
42B
MD517d391d4700563ee9a211e212bc27483
SHA1a338d9858382dd46d38cc3276060d82b8c4b4313
SHA2566ba0abe30c45a6ed25bdccc1dd26a06e007f01ddbbe74e991d6b442501bbdd0a
SHA5127fa5aee85c5d8690c62359998f114f3b0b12d4f9ac51e65eb4d0212f5b50879fa76a5c69bb5f674d2fd53edbb3913f0ed26eb044aacbae9ec500de65f89741e5