MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 512191a429f16b01a16d73ee97ef57f7699dfbdf4ea77ec445288fb33d3663a6. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 4
| SHA256 hash: | 512191a429f16b01a16d73ee97ef57f7699dfbdf4ea77ec445288fb33d3663a6 |
|---|---|
| SHA3-384 hash: | e93b758f39365b00a170ce7ac767cbcd60d7af9be30870d353f960d16410b2f43122fd6232bf049ed9f1fb2b71419d81 |
| SHA1 hash: | d00e3ba82fff83962d420dbf21c851f39ce74879 |
| MD5 hash: | e86d64ed99985737b1cf90454c982b2f |
| humanhash: | winter-michigan-march-november |
| File name: | rectv21.1-142mobilbox.apk |
| Download: | download sample |
| File size: | 103'628'254 bytes |
| First seen: | 2026-07-30 08:09:03 UTC |
| Last seen: | Never |
| File type: | apk |
| MIME type: | application/zip |
| ssdeep | 786432:+7Fd1nYQbYUVFcoeyMb1t9SXfsH6wr50OheJ8rSLv8fo9Kb44gJDaCGMys+iINWj:+VYPcJK17SvsT0jPJ9Kb44gJQi6Wp9Os |
| TLSH | T14938E047E0AC8935C8EAE279FB2E066162343C5C45E6A597660CB2107FFF5E01B927F1 |
| TrID | 40.0% (.APK) Android Package (27000/1/5) 20.0% (.JAR) Java Archive (13500/1/2) 18.5% (.VYM) VYM Mind Map (12500/1/3) 15.5% (.SH3D) Sweet Home 3D Design (generic) (10500/1/3) 5.9% (.ZIP) ZIP compressed archive (4000/1) |
| Magika | apk |
| Reporter | |
| Tags: | apk |
Intelligence
File Origin
# of uploads :
1
# of downloads :
178
Origin country :
TRVendor Threat Intelligence
Verdict:
Unknown
Threat level:
2.5/10
Confidence:
100%
Tags:
base64 crypto evasive fingerprint persistence signed
Result
Application Permissions
read/modify/delete external storage contents (WRITE_EXTERNAL_STORAGE)
read external storage contents (READ_EXTERNAL_STORAGE)
take pictures and videos (CAMERA)
record audio (RECORD_AUDIO)
Allows an application to request installing packages. (REQUEST_INSTALL_PACKAGES)
full Internet access (INTERNET)
view network status (ACCESS_NETWORK_STATE)
view Wi-Fi status (ACCESS_WIFI_STATE)
automatically start at boot (RECEIVE_BOOT_COMPLETED)
prevent phone from sleeping (WAKE_LOCK)
change network connectivity (CHANGE_NETWORK_STATE)
change Wi-Fi status (CHANGE_WIFI_STATE)
control vibrator (VIBRATE)
C2DM permissions (RECEIVE)
Verdict:
Clean
File Type:
apk
Score:
3%
Verdict:
Benign
File Type:
APK
Gathering data
Detection(s):
Suspicious file
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.
File information
The table below shows additional information about this malware sample such as delivery method and external references.
No further information available
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.