Android banking trojan masquerades as Flash Player and bypasses 2FA | WeLiveSecurity
Common Information
Type Value
UUID 98a4e247-7914-471a-a512-7cba58f34374
Fingerprint 9f201c4989f3b687
Analysis status DONE
Considered CTI value 2
Text language
Published March 9, 2016, 2:49 p.m.
Added to db June 15, 2023, 11:12 a.m.
Last updated Nov. 8, 2024, 12:42 a.m.
Headline Android banking trojan masquerades as Flash Player and bypasses 2FA
Title Android banking trojan masquerades as Flash Player and bypasses 2FA | WeLiveSecurity
Detected Hints/Tags/Attributes 39/2/79
Attributes
Details Type #Events CTI Value
Details Domain 3
spy.agent.si
Details Domain 1
flashplayeerupdate.com
Details Domain 1
adobeflashplaayer.com
Details Domain 1
adobeuploadplayer.com
Details Domain 1
adobeplayerdownload.com
Details Domain 1
adobeupdateplayer.com
Details Domain 1
adobeupdateplayeer.com
Details Domain 1
adobeupdateflash11.com
Details Domain 19
org.westpac.bank
Details Domain 27
au.com
Details Domain 17
com.bendigobank.mobile
Details Domain 24
com.commbank.netbank
Details Domain 20
org.stgeorge.bank
Details Domain 21
au.com.nab.mobile
Details Domain 20
au.com.bankwest.mobile
Details Domain 20
com.akbank.android
Details Domain 19
com.finansbank.mobile
Details Domain 19
com.wf
Details Domain 1
com.wellsfargo.mobile
Details Domain 18
com.anz.android
Details Domain 10
nz.co.anz.android
Details Domain 15
nz.co
Details Domain 11
nz.co.kiwibank.mobile
Details Domain 19
com.ykb.android
Details Domain 17
com.vakifbank.mobile
Details Domain 6
biz.mobinex.android
Details Domain 15
com.paypal.android
Details Domain 9
com.ebay.mobile
Details Domain 26
com.skype
Details Domain 57
com.google.android
Details Domain 188
com.android
Details Domain 4
com.google.android.music
Details Domain 1
com.google.android.apps.plus
Details Domain 10
com.android.chrome
Details Domain 7
com.google.android.youtube
Details Domain 3
com.google.android.apps.photos
Details Domain 3
com.google.android.apps.docs
Details Domain 1
com.google.android.apps.docs.editors.docs
Details Domain 17
com.google.android.gm
Details File 4
wellsfargomobile.tab
Details File 1
apps.pl
Details File 4
apps.doc
Details File 1
editors.doc
Details sha1 1
c31e5e31210b08ba07ac6570814473c963a2ef81
Details sha1 1
6cad2250eddf7eddf0b4d4e7f0b5d24b647cb728
Details sha1 1
4a788d05dd8849cd60073f15255c166f06611475
Details sha1 1
ee88d05cf99d8c534fba60d1da9045fb7526343a
Details sha1 1
26a2b328f194b6b75b2cc72705dc928a4260b7e7
Details sha1 1
4ad1dbb43175a3294a85957e368c89a5e34f7b8c
Details sha1 1
db228bb5760bd7054e5e0a408e0c957aac72a89f
Details sha1 1
266b572b093db550778ba7824e32d88639b78afc
Details sha1 1
e4fa83a479642792bc89ca3c1553883066a19b6c
Details sha1 1
644644a30de78ddcd50238b20bf8a70548ff574c
Details sha1 1
f1aaae29071cbc23c33b4282f1c425124234481c
Details sha1 1
cac078c80ad1ff909cc9970e3ca552a5865c7963
Details sha1 1
1c8d0e7bb733fbceb05c40e0ce26288487655738
Details sha1 1
fe6ac1915f8c215ecec227da6fb341520d68a9c7
Details sha1 1
bd394e0e626ce74c938dddf0005c074bc8c5249d
Details sha1 1
d7e0afce7d2c4de8182c353c7cba3fac607eafc9
Details sha1 1
a804e43c3aff3bdaee24f8abf460baa8442f5372
Details sha1 1
0ef56105cf4dbf1dae1d91ece62fc6c4ff8ad05f
Details sha1 1
9fd295721c1ff87bc862d19f6195fdde090524d9
Details sha1 1
57d0870e68ac1b508bc83f24e8a0ebc624e9b104
Details sha1 1
521f9767104c6cbb5489544063fce555b94025a6
Details sha1 1
e5f536408dbb66842d7bb6f0730144fdd877a560
Details sha1 1
3fa6010874d39b050ca6ca380dad33ca49a8b821
Details IPv4 1
94.198.97.202
Details IPv4 1
46.105.95.130
Details IPv4 1
181.174.164.138
Details Url 1
http://94.198.97.202
Details Url 1
http://46.105.95.130
Details Url 1
http://181.174.164.138
Details Url 1
http://flashplayeerupdate.com/download
Details Url 1
http://adobeflashplaayer.com/download
Details Url 1
http://adobeuploadplayer.com/download
Details Url 1
http://adobeplayerdownload.com/download
Details Url 1
http://adobeupdateplayer.com/download
Details Url 1
http://adobeupdateplayeer.com/download
Details Url 1
http://adobeupdateflash11.com/download