GPlayed
MITRE ATT&CK: S0536 View on attack.mitre.org
Aliases: GPlayed
- Malware type
- trojan
- Family
- Malware family
- Operating systems
- android
- Related IoCs
- 1 (1 malicious)
- Last IoC activity
- 2026-06-16 09:16:03
- Profile updated
- 2026-07-07 14:07:27
Targeted industries: financial-services technology-and-telecommunications
Context
GPlayed is an Android trojan with a broad range of capabilities.
Recent IoC activity
1 malicious indicator in Maltiverse are attributed to GPlayed (S0536). The 1 most recently updated:
| Type | Indicator | Updated | Sources |
|---|---|---|---|
| file sample | 250429-3x4rmawmv7.bin | 2026-06-16 | 2 |
Malware & tools used
- Web Protocols (attack-pattern)
- SMS Control (attack-pattern)
- SMS Messages (attack-pattern)
- Scheduled Task/Job (attack-pattern)
- Contact List (attack-pattern)
- Download New Code at Runtime (attack-pattern)
- Software Discovery (attack-pattern)
- Broadcast Receivers (attack-pattern)
- System Network Configuration Discovery (attack-pattern)
- Endpoint Denial of Service (attack-pattern)
- Match Legitimate Name or Location (attack-pattern)
- Device Administrator Permissions (attack-pattern)
- File Deletion (attack-pattern)
- Obfuscated Files or Information (attack-pattern)
- System Information Discovery (attack-pattern)
- Data from Local System (attack-pattern)
- Location Tracking (attack-pattern)
- GUI Input Capture (attack-pattern)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Apk.Gplayed (report)
- Cisco Talos — Gplayedtrojan (report)
- Cisco Talos — Gplayerbanker (report)
- MITRE ATT&CK — S0536 (report)