http://{BLOCKED}gs5570.ru

 Analysis by: Miguel Carlo Ang

 URL BLOCKING DATE/TIME: 01 Aug 2012 12:45:00 AM GMT-8
 RATING: HIGH
 DOMAIN: samsungs5570.ru
 CATEGORY: Disease Vector
 DESCRIPTION:

This is a fake Google Play site which hosts malicious apps, including the rogue app London2012-Official Game. The said site also contains a QR code and download button. Once unsuspecting users clicked the download button, it redirects to a web hosting site that serves a variant of ANDROIDOS_SMSBOXER malware family. This malware is notorious for sending messages to premium numbers without the user’s consent.