ANDROIDOS_DROIDKUNGFU.SMA
March 20, 2013
THREAT SUBTYPE:
Information Stealer, Click Fraud, Malicious Downloader, Rooting Tool
PLATFORM:
Android OS
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:

Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan may be unknowingly downloaded by a user while visiting malicious websites.
TECHNICAL DETAILS
File Size: Varies
File Type: APK, DEX
Initial Samples Received Date: 16 Sep 2011
Arrival Details
This Trojan may be unknowingly downloaded by a user while visiting malicious websites.
This malware arrives via the following means:
- via Trojanized Android applications
Other Details
This Trojan connects to the following possibly malicious URL:
- http://{BLOCKED}.gongfu-android.com:8511/search/sayhi.php
- http://{BLOCKED}.gongfu-android.com:8511/search/getty.php
- http://{BLOCKED}.gongfu-android.com:8511/search/rpty.php