Analysis by: Yang Yang

 PLATFORM:

AndroidOS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted: Yes

  • In the wild: Yes

  OVERVIEW

Infection Channel: Downloaded from the Internet

This Trojan may be unknowingly downloaded by a user while visiting malicious websites.

  TECHNICAL DETAILS

File Size: 316,682 bytes
File Type: APK
Memory Resident: Yes
Initial Samples Received Date: 24 Apr 2014
Payload: Steals information

Arrival Details

This Trojan may be unknowingly downloaded by a user while visiting malicious websites.

NOTES:

This malicious app monitors screen events. It always puts its own user interface on top of the screen when the screen is unlocked. Because of this, users who installed this app have difficulty removing it.

It steals IMEI code. It has the following capabilities that it performs by using appropriate Android permissions:

  • Open network sockets and connect to the Internet
  • App is notified when system boot is done
  • Keep smartphone processor from sleeping or the screen from dimming
  • Read-only access to phone state

  SOLUTION

Minimum Scan Engine: 9.700

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android smartphones and tablets from malicious and Trojanized applications. The App Scanner is free and detects malicious and Trojanized apps as they are downloaded, while SmartSurfing blocks malicious websites using your device's Android browser.

Download and install the Trend Micro Mobile Security App via Google Play.


Did this description help? Tell us how we did.