Analysis by: Francisrey Joshua Castillo

 PLATFORM:

Android

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Potentially Unwanted Application

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  TECHNICAL DETAILS

Other Details

This Potentially Unwanted Application does the following:

  • This app requests the high-risk REQUEST_INSTALL_PACKAGES permission, allowing it to install other APKs outside Google Play, potentially bypassing security checks. Combined with storage access permissions, it could store and install additional apps without proper vetting, a capability often abused by PUAs.

Mobile Malware Routine

Upon installation, it asks for the following permissions:

  • "android.permission.READ_EXTERNAL_STORAGE"
  • "android.permission.WRITE_EXTERNAL_STORAGE"
  • "android.permission.REQUEST_INSTALL_PACKAGES"

  SOLUTION

Minimum Scan Engine: 9.800

Step 1

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:

Step 2

Scan your computer with your Trend Micro product to delete files detected as AndroidOS_InstallGen.A. If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check the following Trend Micro Support pages for more information:


Did this description help? Tell us how we did.