AndroidOS_RiskGen.A

 Analysis by: Francisrey Joshua Castillo

 ALIASES:

PUA.AndroidOS.DebugCert (IKARUS), PUP/Android.ScamFX.1222315 (AHNLAB-V3)

 PLATFORM:

Android

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Potentially Unwanted Application

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes


  TECHNICAL DETAILS

File Size:

5,635,685 bytes

File Type:

APK

Memory Resident:

No

Initial Samples Received Date:

23 May 2024

Payload:

Connects to URLs/IPs

Other Details

This Potentially Unwanted Application does the following:

  • The label "Stockspot" features an icon closely resembling that of the legitimate Stockspot application, yet it has a different package name. This discrepancy suggests it may be a potential phishing application.

Mobile Malware Routine

This Potentially Unwanted Application accesses the following possibly malicious URL(s):

  • hxxp[://]{BLOCKED}p[.]xn--9t4ba259hkjc[.]com/AppStock/App[.]aspx

  SOLUTION

Minimum Scan Engine:

9.800

TMMS Pattern File:

2.753.022

TMMS Pattern Date:

23 Apr 2024

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.