Tags
country: | Venezuela China Germany France Greece Italy Poland Portugal Romania Ukraine United Kingdom |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Model Models Domains - T1583.001 Domains - T1584.001 Firmware - T1592.003 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | 4579ba7d-1131-489e-8bc6-78d7b652748e |
Fingerprint | af05a100a5332fc9 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 24, 2018, midnight |
Added to db | Feb. 17, 2023, 10:54 p.m. |
Last updated | Nov. 8, 2024, 12:42 a.m. |
Headline | List of available regions |
Title | |
Detected Hints/Tags/Attributes | 81/3/30 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://blog.avast.com/android-devices-ship-with-pre-installed-malware |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 42 | com.google |
|
Details | Domain | 1 | apk.io |
|
Details | Domain | 1 | www.cosiloon.com |
|
Details | Domain | 1 | app.storage.yunvm.com |
|
Details | Domain | 1 | pull-3045.kxcdn.com |
|
Details | Domain | 188 | com.android |
|
Details | Domain | 1 | 7176.com |
|
Details | File | 1 | google.ep |
|
Details | File | 5 | version.xml |
|
Details | File | 1 | version_2.xml |
|
Details | File | 1 | version_3.xml |
|
Details | File | 1 | information.xml |
|
Details | File | 1 | ba.apk |
|
Details | File | 2 | getip.php |
|
Details | File | 1 | systemui.apk |
|
Details | File | 6 | android.key |
|
Details | File | 1 | guard.key |
|
Details | File | 1 | version_4.xml |
|
Details | File | 1 | version_5.xml |
|
Details | File | 1 | cstr.apk |
|
Details | File | 1 | anlradio.apk |
|
Details | sha256 | 1 | 838d70c21ab98bfbf9c69ce516ddebbd988cade05d25558b086e1c103dadcb06 |
|
Details | sha256 | 1 | b81a7e72197fa8dff5970e6c326d18f678799f316985daf6aef7b3e562bfb2ad |
|
Details | sha256 | 1 | 12a6a5e9c58f8a04f54ef812f2159a0fa760ae9272141749f8ed6fc919622da1 |
|
Details | Url | 1 | http://www.cosiloon.com/version.xml |
|
Details | Url | 1 | http://app.storage.yunvm.com/ba.apk |
|
Details | Url | 1 | http://pull-3045.kxcdn.com/getip.php |
|
Details | Url | 1 | http://www.cosiloon.com/version_4.xml |
|
Details | Url | 1 | http://www.cosiloon.com/version_5.xml |
|
Details | Url | 1 | https://docs.google.com/spreadsheets/d/10grehhgreaqvx45kb7ai4fkxdfx1vdjnwyrpu9qgj5k/edit?usp=sharing |