AndroidOS_Banker.AXM

 Analysis by: Kevin Sun

 THREAT SUBTYPE:

Information Stealer, Malicious Downloader

 PLATFORM:

AndroidOS

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes


  TECHNICAL DETAILS

File Size:

75068 bytes

Memory Resident:

Yes

Mobile Malware Routine

This Trojan bears the file icons of the following applications:

  • AhnLab V3 Mobile Plus 2.0

It also steals the following information from the affected device:

  • IMEI
  • Phone Number
  • Voice Mail Number
  • Bank Info

It sends the gathered information via HTTP POST to the following URL(s):

  • http://{BLOCKED}.{BLOCKED}.42.251:7070

  SOLUTION

Minimum Scan Engine:

9.850

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.