Managed XDR

tmp-26d2113e-2ac9-4545...491ce31b3a0-chrome.apk — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
tmp-26d2113e-2ac9-4545-8b54-1491ce31b3a0-chrome.apk
Тип файла
Zip archive data, at least v2.0 to extract
Размер файла
277.2 KB
Первое обнаружение
Последнее обнаружение

Окружение

droid7/x86 ru

Хеши

SHA1
5052f249f6961d0addf47d71c207c84f4d8d5ee7
SHA256
90402c8ccf7bdc01f93c96bfcd37da8bf00daf956418c6696d79d7994808fa1a
MD5
70cca44bd24fbedbc00ad10dcdafd9b2

Сигнатуры

Other

yara_rules: Static rules
coper: Coper banking trojan
metrics: Be used to get information from the screen
create_sms: Create SMS Message
dynamic_load: Uses undocumented methods to load apk/dex/classes
acquire: Acquires the wake lock
accessibility_event: Intercepting Accessibility Events
super_user: Checks root access
get_line1_num: Gets phone number
wake_lock: Creates a new wake lock
telephony_getsimcountryiso: Access country code of SIM
reflection: Uses reflection
telephony_getnetworkoperator: Fetches MCC + MNC codes of network operator
wifi_info: Gets wifi connections data
sim_operator_name: Fetches SIM-SPN
read_device_id: Gets device IMEI
register_receiver: Registers broadcast receiver
skip_broadcast: Aborts broadcast event
browsed_history: Reads web browser history
send_sms: Sends http request
network: Checks internet connection
read_or_write_global_settings: Read or write global settings
shared_prefs: Uses shared preferences
change_state_wifi_signature: Changes the state of Wi-Fi connection
read_or_write_system_settings: Read or write system settings
start_activity: Starts activity
load_jni_lib: Loads native library
start_service: Starts service
keyguard_manager: Interaction with Keyguard Manager
alarm_manager: Sets a timer
access_network_state: Network state access
suricata_alert: Malicious traffic detected
read_or_write_secure_settings: Read or write secure settings
notify: Attempts to create a notification