ANDROIDOS_GREYWOLF.HBT

 Analysis by: Veo Zhang

 THREAT SUBTYPE:

Click Fraud

 PLATFORM:

Android OS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Others

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes


  TECHNICAL DETAILS

File Size:

289,628 bytes

File Type:

APK

Memory Resident:

Yes

NOTES:

GreyWolf family is found in an underground forum for malware authors. The malware disguises itself using names like love profess app. After the victim installs the app, it locks the interface after rebooting. The serial number and unlock code are randomly generated and are sent to to the creator's mail inbox.

The malware author is the only one aware of the unlock code. The victim is then instructed to pay for ransom worth about USD $5 in exchange for the code.

  SOLUTION

Minimum Scan Engine:

9.750

TMMS Pattern File:

1.973.00

TMMS Pattern Date:

19 May 2015

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.