ANDROIDOS_FSPY.A

 Analysis by: Karl Dominguez

 THREAT SUBTYPE:

Spying Tool

 PLATFORM:

Android OS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Spyware

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW


This application is installed manually by a user on a target device. The application will then secretly monitor the device's GPS location, SMS, emails, and calls. It also gives the remote user the capabality to remotely listen to calls and control the affected device via SMS.

The application has no icon and no Graphical User Interface (GUI). Details about the application, however, can be viewed via the phone's Settings panel.

All gathered information are uploaded by the application to a server and can be accessed by the remote user via Web.

This spyware may be manually installed by a user.

  TECHNICAL DETAILS

File Size:

266,788 bytes

File Type:

PE

Memory Resident:

Yes

Initial Samples Received Date:

09 Mar 2011

Payload:

Steals information

Arrival Details

This spyware may be manually installed by a user.

NOTES:
This application is installed manually by a user on a target device. The application will then secretly monitor the device's GPS location, SMS, emails, and calls. It also gives the remote user the capabality to remotely listen to calls and control the affected device via SMS. The application has no icon and no Graphical User Interface (GUI). Details about the application, however, can be viewed via the phone's Settings panel.

All gathered information are uploaded by the application to the server http://{BLOCKED}py.com and can be accessed by the remote user via Web.

  SOLUTION

Minimum Scan Engine:

8.900

TMMS Pattern File:

1.105.00

TMMS Pattern Date:

13 Jun 2011

Step 1

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android smartphones and tablets from malicious and Trojanized applications. The App Scanner is free and detects malicious and Trojanized apps as they are downloaded, while SmartSurfing blocks malicious websites using your device's Android browser.

Download and install the Trend Micro Mobile Security App via Google Play.

Step 2

Remove unwanted apps on your Android mobile device

[ Learn More ]

Did this description help? Tell us how we did.