🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c5061b4ffd1b5d876be219d3a13bc92c62aa0789b5154924add9d374591ab22d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: c5061b4ffd1b5d876be219d3a13bc92c62aa0789b5154924add9d374591ab22d
SHA3-384 hash: 8fc04699777ed0cdf89d0327d6df6f6e9dd02316987f9a9aa16bf9056d7dfa49ec4d590ffc4939f88a7cfa66bc6c9be1
SHA1 hash: 724ce69c282d9d390089f8760f945f89bb3a320a
MD5 hash: 06c73f58a45aa471d91ae33f5312c5b8
humanhash: papa-eighteen-minnesota-avocado
File name:signed (6).apk
Download: download sample
File size:9'123'951 bytes
First seen:2026-09-17 09:13:39 UTC
Last seen:2026-09-17 09:13:39 UTC
File type: apk
MIME type:application/java-archive
ssdeep 196608:2qZ+m/iLNyNeLGLuf8U7Uj6G79K4rdD6gtuQgPcLZ9hgBQg:2qZ+sOyNyG6fN7kp42RoPs3yig
TLSH T1A3962206630135EEF8295F3DAAAFD971FA921E0CAD74EDD1A054B361097FA857F32810
TrID 77.1% (.JAR) Java Archive (13500/1/2)
22.8% (.ZIP) ZIP compressed archive (4000/1)
Magika apk
Reporter SashaLovesFoxes
Tags:apk joke launcher Locker password:555


Avatar
SashaLovesFoxes
locks device, password 555, trying to be default launcher

Intelligence


File Origin
# of uploads :
2
# of downloads :
87
Origin country :
BY BY
Vendor Threat Intelligence
No detections
Verdict:
Unknown
Threat level:
  0/10
Confidence:
100%
Tags:
signed
Result
Application Permissions
display system-level alerts (SYSTEM_ALERT_WINDOW)
set wallpaper (SET_WALLPAPER)
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments