Name: CarrierIQ
Sample credit with many thanks to S.Guerrero, Ryan Johnson, Jojo Edmonds and other kind folks from mobile malware google group for sharing
Information: Carrier IQ: What it is, what it isn't, and what you need to know By Zachary Lutz
List of files - see below
Download all samples (pass infected)
DROID
Apks
HtcIQAgent.apk - 25KB MD5: E7B6CB35CD19574F5DEFCA2A3CA35C16
HtcLoggers.apk - 106 KB MD5: C1FCCFDAFE87EDB273C6365A5A0A0DF9
Binaries
iqd - 524KB MD5: BF067B23909ADA76552E6AD73A579128
iqfd - 25KB MD5: B34826A9B62CA0875216BE949604EE78
Libraries
libhtciqagent.so - 16KB MD5: 1474FE8C5D98CB3D8ED872DE2A1D4AC0
libciq_client.so -119KB MD5: 967718893D31E508439692F427C51BB9
libciq_htc.so - 41KB MD5: 081409C77AA4C64009F3DFC60466C058
Configuration file
iqprofile.pro - 4KB MD5: A6886135D2D1EA423D4EDDE389FE1794
DROID SPRINT
HtcIQAgent.apk Size: 11812 MD5: 90556450A587B7DE1C32D971EA5E0C46
HtcIQAgent.odex Size: 50720 MD5: 7536DC9B82748649A7C778BC0F6070D4
iqprofile.pro Size: 717 MD5: A6886135D2D1EA423D4EDDE389FE1794 IQRD.apk Size: 12750 MD5: EDCB7838C64D1B5598687C7C6D76181D
IQRD.odex Size: 50640 MD5: 2B05552DD3C6272281787389A7DE25D4
libciq_client.so Size: 116608 MD5: F198056461B3EBCA9A3308E2458DCD5B
libciq_htc.so Size: 42956 MD5: E9FE5413F8B8AC9240676360F2170417
libhtciqagent.so Size: 25980 MD5: 148BCD942C961159614DBCA8BE24B623
BLACKBERRY CARRIERIQ (too many individual files to list)
4.5.0
4.5.0_beta
4.6.0
4.6.0_beta
4.7.0
4.7.0_beta
5.0.0
5.0.0_beta
6.0.0
6.0.0_beta
7.0.0
7.0.0_beta
No comments:
Post a Comment