Managed XDR

elite_encrypted_enstr.apk — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
elite_encrypted_enstr.apk
Тип файла
Zip archive data, at least v2.0 to extract
Размер файла
774.9 KB
Первое обнаружение
Последнее обнаружение

Окружение

droid7/x86 ru

Хеши

SHA1
5022006171289dd11009b1250b34e6a57eb6c721
SHA256
a5b88072f9a8d554f5b520886b1f2b9b35eae2cedd48427e13e1639c0d8c82b8
MD5
df80f46234eda95b03a25e5259da76bd

Сигнатуры

Other

device_admin: Asks for device admin rights
create_sms: Create SMS Message
uri_parse_sms_inbox: Gets access to outgoing SMS
is_device_admin: Check accessibility - device admin
dynamic_load: Uses undocumented methods to load apk/dex/classes
skip_main_activity: Abort loading MainActivity
hide_icon: Hides app icon
kill_process: Kills process
super_user: Checks root access
get_run_appprocesses: Fetches list of running App Processes
sms_message: Reads incoming SMS
dex_elements: Modifies classes path (possibly, dynamic code loading)
reflection: Uses reflection
get_accounts: Gets contacts
framework_check: Checks frida/xposed/substrate
register_receiver: Registers broadcast receiver
skip_broadcast: Aborts broadcast event
read_or_write_global_settings: Read or write global settings
trowable: Throwable exceptions
start_activity: Starts activity
start_service: Starts service