Analysis by: Echo Duan

 PLATFORM:

Windows

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Backdoor

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This Backdoor poses as an Android app using different app names.

  TECHNICAL DETAILS

Mobile Malware Routine

This Backdoor is a file that collects the following information on an affected mobile device:

  • Banker credentials
  • Wifi setting

It poses as an Android application that uses random names such as the following:

  • Usually fake KDDI security apps

Upon installation, it asks for the following permissions:

  • android.permission.SEND_SMS
  • android.permission.READ_SMS

  SOLUTION

Minimum Scan Engine: 9.800

Step 1

Remove unwanted apps on your Android mobile device

[ Learn More ]

Step 2

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.