Resubmissions

05-07-2024 05:11

240705-fvbxhawarg 8

05-07-2024 05:09

240705-fs8hpawape 8

05-07-2024 04:33

240705-e6qdlaverg 8

05-07-2024 04:13

240705-es258svcpb 8

General

  • Target

    65743ef5290b93d2532f7ed780eaae22_GXBank_1.9.6.apk

  • Size

    31.1MB

  • Sample

    240705-es258svcpb

  • MD5

    65743ef5290b93d2532f7ed780eaae22

  • SHA1

    4e0a9ae6cb4a564798e967be96bc183ab3dc3e13

  • SHA256

    12b6c7ae00a48b1e347379b1e5165d7b851dac508453cdaf52bcf694f809561e

  • SHA512

    0c96ea9bc330e9b05916f64eb0e38a643d6d23260e1b4976bfd837bf445488914f532cf7d28e04e60e4cd4e76ac40f1727caab8220871fb97b8ede869542430e

  • SSDEEP

    196608:DG5RsFcFYJptQMAtcxsvPtvC3P6cvKY+vNRLbzbpUaOs5hraO3mZzpe65a4dgmEv:JFAMrx8Tazfuy5NncCceHf8GUjH

Malware Config

Targets

    • Target

      65743ef5290b93d2532f7ed780eaae22_GXBank_1.9.6.apk

    • Size

      31.1MB

    • MD5

      65743ef5290b93d2532f7ed780eaae22

    • SHA1

      4e0a9ae6cb4a564798e967be96bc183ab3dc3e13

    • SHA256

      12b6c7ae00a48b1e347379b1e5165d7b851dac508453cdaf52bcf694f809561e

    • SHA512

      0c96ea9bc330e9b05916f64eb0e38a643d6d23260e1b4976bfd837bf445488914f532cf7d28e04e60e4cd4e76ac40f1727caab8220871fb97b8ede869542430e

    • SSDEEP

      196608:DG5RsFcFYJptQMAtcxsvPtvC3P6cvKY+vNRLbzbpUaOs5hraO3mZzpe65a4dgmEv:JFAMrx8Tazfuy5NncCceHf8GUjH

    • Checks if the Android device is rooted.

    • Checks Android system properties for emulator presence.

    • Loads dropped Dex/Jar

      Runs executable file dropped to the device during analysis.

    • Queries information about running processes on the device

      Application may abuse the framework's APIs to collect information about running processes on the device.

    • Acquires the wake lock

    • Queries information about active data network

    • Reads information about phone network operator.

    • Checks the presence of a debugger

    • Listens for changes in the sensor environment (might be used to detect emulation)

MITRE ATT&CK Matrix

Tasks