Analysis by: Jordan Pan

 PLATFORM:

AndroidOS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Spyware

  • Destructiveness: Yes

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This spyware displays pop-up advertisements. It uses common file icons to trick a user into thinking that the files are legitimate. This is the Trend Micro detection for Android applications bundled with malicious code.

  TECHNICAL DETAILS

File Size: 36981652 bytes
Memory Resident: Yes
Initial Samples Received Date: 10 Apr 2016

Mobile Malware Routine

This spyware is a file that collects the following information on an affected mobile device:

  • phone number
  • location

It bears the file icons of the following applications:

  • system update
  • popular games

It also steals the following information from the affected device:

  • phone number
  • location

It blocks the received SMS, not allowing the user to read the received message.

It displays the following:

  • popup ads

It displays pop-up advertisements.

Upon installation, it asks for the following permissions:

  • android.permission.WRITE_EXTERNAL_STORAGE
  • android.permission.WAKE_LOCK
  • android.permission.INTERNET
  • android.permission.ACCESS_NETWORK_STATE
  • android.permission.READ_PHONE_STATE
  • android.permission.ACCESS_WIFI_STATE
  • android.permission.CHANGE_WIFI_STATE
  • android.permission.CHANGE_NETWORK_STATE
  • android.permission.RECEIVE_BOOT_COMPLETED
  • android.permission.RECEIVE_SMS
  • android.permission.DISABLE_KEYGUARD
  • android.permission.SYSTEM_ALERT_WINDOW
  • android.permission.GET_TASKS
  • android.permission.INTERNET
  • android.permission.ACCESS_NETWORK_STATE
  • android.permission.WRITE_EXTERNAL_STORAGE
  • android.permission.READ_PHONE_STATE

It uses common file icons to trick a user into thinking that the files are legitimate.

This is the Trend Micro detection for Android applications bundled with malicious code.

  SOLUTION

Minimum Scan Engine: 9.800

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.