General

  • Target

    3564cc3bf27a7a0a0127547429141fa99dd20e5a53f86bcf41ea377b09418c2b.bin

  • Size

    2.7MB

  • Sample

    240705-1wnynszala

  • MD5

    022a9560b28130e21131055305011629

  • SHA1

    79bf171d37476ac24ec2b5f9201f121d1571f90b

  • SHA256

    3564cc3bf27a7a0a0127547429141fa99dd20e5a53f86bcf41ea377b09418c2b

  • SHA512

    df1d8c33e13be9ca4ccd927bd7461b10dddd625fab30b190bcf06ab8925954f11a3e775576224d29a7e932c9f18fa5dbde40acdb9cb8fb71a67abe1eef2abdd4

  • SSDEEP

    49152:NDEnq/W9aV8puatiFdBORUVgZSeo/KrmF:NDEnq/jFdBOvo/KrmF

Malware Config

Targets

    • Target

      3564cc3bf27a7a0a0127547429141fa99dd20e5a53f86bcf41ea377b09418c2b.bin

    • Size

      2.7MB

    • MD5

      022a9560b28130e21131055305011629

    • SHA1

      79bf171d37476ac24ec2b5f9201f121d1571f90b

    • SHA256

      3564cc3bf27a7a0a0127547429141fa99dd20e5a53f86bcf41ea377b09418c2b

    • SHA512

      df1d8c33e13be9ca4ccd927bd7461b10dddd625fab30b190bcf06ab8925954f11a3e775576224d29a7e932c9f18fa5dbde40acdb9cb8fb71a67abe1eef2abdd4

    • SSDEEP

      49152:NDEnq/W9aV8puatiFdBORUVgZSeo/KrmF:NDEnq/jFdBOvo/KrmF

    • Removes its main activity from the application launcher

    • Loads dropped Dex/Jar

      Runs executable file dropped to the device during analysis.

    • Requests disabling of battery optimizations (often used to enable hiding in the background).

MITRE ATT&CK Matrix

Tasks