ANDROIDOS_WORMHOLE.WLA


 PLATFORM:

Android OS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Potentially Unwanted Application

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes


  TECHNICAL DETAILS

File Size:

3543742 bytes

File Type:

APK

Memory Resident:

Yes

NOTES:

This application contains the vulnerable Moplus SDK from Baidu. The said SDK has the following routines similar to a backdoor:

  • getting the location and package information
  • pushing phishing pages
  • inserting arbitrary contacts
  • sending fake SMS
  • uploading local files to remote servers
  • installing any applications to the Android devices without user’s authorization

Since there is no identity authentication in the local HTTP server (which is set up by Moplus SDK), an attack can be triggered not only by an app developer but by anyone. With just one command, an attacker or cybercriminal can remotely control the device. Applications with this SDK expose user devices to the risks that these may pose.

  SOLUTION

Minimum Scan Engine:

9.800

Step 1

Remove unwanted apps on your Android mobile device

[ Learn More ]

Step 2

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.