Analysis by: Weichao Sun

 THREAT SUBTYPE:

Premium Service Abuser, Click Fraud

 PLATFORM:

Android OS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW

This Trojan may be manually installed by a user.

  TECHNICAL DETAILS

Tipo de compactação: 281,141 bytes
Tipo de arquivo: APK
Residente na memória: No
Data de recebimento das amostras iniciais: 04 Mar 2013

Arrival Details

This Trojan may be manually installed by a user.

  SOLUTION

Mecanismo de varredura mínima: 9.700
Trend Micro Mobile Security Pattern Version: 9.715
Trend Micro Mobile Security Pattern Release Date: 28 Oct 2013

Scan your computer with your Trend Micro product to delete files detected as ANDROIDOS_SMSSENDER.VTA. If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check this Knowledge Base page for more information.

NOTES:

After the application is launched, it will show a UI that advertises a website with sexually suggestive images. The UI will inform users that they can have access to the site after registering.

Once users registers, a text message will be send out without notification. Users will be charged for text messages.


Did this description help? Tell us how we did.