Managed XDR

vtdl__4ma3ayo — malware analysis report

File info

Filename
vtdl__4ma3ayo
File type
SMTP mail, ASCII text, with CRLF line terminators
File size
3.4 KB
First seen
Last seen

Environment

droid7/x86 ru

Hashes

SHA1
08724eb981655ad9278667a0bb3fc85e3f5f6c35
SHA256
038dd1c59455c31d2a8e8d8f9459f924c75e35fd9eddb4ccefad3d51e7a26ec3
MD5
88f9ed1868dcbc1f3dd4e24f771229e6

Signatures

Other

accessibility_event: Intercepting Accessibility Events
metrics: Be used to get information from the screen
dynamic_load: Uses undocumented methods to load apk/dex/classes
acquire: Acquires the wake lock
super_user: Checks root access
wake_lock: Creates a new wake lock
telephony_getsimcountryiso: Access country code of SIM
reflection: Uses reflection
framework_check: Checks frida/xposed/substrate
register_receiver: Registers broadcast receiver
browsed_history: Reads web browser history
network: Checks internet connection
is_debug: Check for a connected debugger
read_or_write_global_settings: Read or write global settings
shared_prefs: Uses shared preferences
change_state_wifi_signature: Changes the state of Wi-Fi connection
read_or_write_system_settings: Read or write system settings
read_or_write_secure_settings: Read or write secure settings
load_jni_lib: Loads native library
access_network_state: Network state access