ANDROIDOS_WORMHOLE.WLA
Android OS

Threat Type: Potentially Unwanted Application
Destructiveness: No
Encrypted:
In the wild: Yes
TECHNICAL DETAILS
NOTES:
This application contains the vulnerable Moplus SDK from Baidu. The said SDK has the following routines similar to a backdoor:
- getting the location and package information
- pushing phishing pages
- inserting arbitrary contacts
- sending fake SMS
- uploading local files to remote servers
- installing any applications to the Android devices without user’s authorization
Since there is no identity authentication in the local HTTP server (which is set up by Moplus SDK), an attack can be triggered not only by an app developer but by anyone. With just one command, an attacker or cybercriminal can remotely control the device. Applications with this SDK expose user devices to the risks that these may pose.
SOLUTION
Step 1
Remove unwanted apps on your Android mobile device
Step 2
Trend Micro Mobile Security Solution
Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:
Did this description help? Tell us how we did.