ANDROIDOS_SMSTHIEF.AXMA

 Analysis by: Yang Yang

 THREAT SUBTYPE:

Spying Tool

 PLATFORM:

Android OS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Spyware

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

Infection Channel:

Dropped by other malware, Via app stores

This spyware may be downloaded by other malware/grayware/spyware from remote sites. It may be manually installed by a user. It may be downloaded from app stores/third party app stores.

  TECHNICAL DETAILS

File Size:

248,644 bytes

File Type:

APK

Memory Resident:

Yes

Initial Samples Received Date:

18 Sep 2016

Arrival Details

This spyware may be downloaded by other malware/grayware/spyware from remote sites.

It may be manually installed by a user.

It may be downloaded from app stores/third party app stores.

NOTES:

This malicious app functions as a spyware for Android devices. It has several malicious behaviors. When it is launched, it collects ithe following information and sends it to a remote server:

  • user's contact address
  • SMS messages
  • device information

To avoid removal, it hides its icon and also requests user to enable the device administrator for the app. If the device administrator is enabled, it can not be uninstalled manually.

It is also capable of sending SMS messages and deleting user's SMS message.

  SOLUTION

Minimum Scan Engine:

9.800

Remove unwanted apps on your Android mobile device

[ Learn More ]

Did this description help? Tell us how we did.