Managed XDR

2c19f78b9ec05d79da9138...1c980007b68812d0a0.apk — malware analysis report

File info

Filename
2c19f78b9ec05d79da91389e3ba5ddc87e5b28edd57a401c980007b68812d0a0.apk
File type
Zip archive data
File size
66.8 MB
First seen
Last seen

Environment

droid7/x86 ru

Hashes

SHA1
fb075f04fda0efcbe135ac71d243c13871f70b1b
SHA256
2c19f78b9ec05d79da91389e3ba5ddc87e5b28edd57a401c980007b68812d0a0
MD5
5d8d171d85d5bd0581097b8e2b8108f3

Signatures

Other

yara_rules: Static rules
metrics: Be used to get information from the screen
acquire: Acquires the wake lock
super_user: Checks root access
wake_lock: Creates a new wake lock
telephony_getsimcountryiso: Access country code of SIM
runapp_processes: Tries to fetch process list
reflection: Uses reflection
telephony_getnetworkoperator: Fetches MCC + MNC codes of network operator
framework_check: Checks frida/xposed/substrate
sim_operator_name: Fetches SIM-SPN
cpu_vm_file: Gets information about the processor
register_receiver: Registers broadcast receiver
send_sms: Sends http request
network: Checks internet connection
is_debug: Check for a connected debugger
read_or_write_global_settings: Read or write global settings
shared_prefs: Uses shared preferences
trowable: Throwable exceptions
sensor_manager: Interaction with Sensor Manager
create_sqlite: Uses SQLite
load_jni_lib: Loads native library
keyguard_manager: Interaction with Keyguard Manager
get_runtime: Gets Runtime class
connect: Opening a connection
access_network_state: Network state access
suricata_alert: Malicious traffic detected
read_or_write_secure_settings: Read or write secure settings