ZDNet

July 9, 2012

New Android malware infects 100,000 Chinese smartphones

Share

New Android malware infects 100,000 Chinese smartphones

A new piece of malware has been discovered on more than 100,000 Android smartphones in China. It generates revenue by silently downloading paid apps and multimedia content from Mobile Market, an Android app store hosted by China Mobile, one of the largest wireless providers in the world.

TrustGo, which first discovered the malware, is calling this particular threat “Trojan!MMarketPay.A@Android” and has already found it on nine app stores: nDuoa, GFan, AppChina, LIQU, ANFONE, Soft.3g.cn, TalkPhone, 159.com, and AZ4SD. The security firm also disclosed the following eight package names for the malware:

  • com.mediawoz.goweather
  • com.mediawoz.gotq
  • com.mediawoz.gotq1
  • cn.itkt.travelskygo
  • cn.itkt.travelsky
  • com.funinhand.weibo
  • sina.mobile.tianqitong
  • com.estrongs.android.pop

MMarketPay.A works by placing malicious orders at Mobile Market. Normally, a Mobile Market customer receives a verification code via SMS after purchasing an app or multimedia content, which he or she has to input back into the market to start the download. China Mobile then adds this order to the customer’s phone bill.

MMarketPay.A automates this process and downloads as much as it can so that victims rack up huge phone bills. It finds paid content, simulates a click action in the background, intercepts the received SMS messages, and collects the verification code sent by Mobile Market. If a CAPTCHA image is invoked, the malware posts the image to a remote server for analysis.

In short, MMarketPay.A is a complex little bugger. If you’re using an Android device on China Mobile, you may want to check your phone bill and make sure there’s nothing suspicious on it.

Android lets you download and install apps from anywhere (provided you have the following option enabled: Settings = Applications = Unknown sources). If you want to minimize the chance of downloading malicious apps, please only use the official Google Play store.

See also:

Article source: http://www.zdnet.com/new-android-malware-infects-100000-chinese-smartphones-7000000497/

Share





 
 

 
 

Smartphone App Wrap: Travel, TV, Google, and sports

Previous | Next Image 1 of 16 (Image: Google Hangouts) As the pleasant weather finally approaches, we start to think about travel, baseball, golf, music, and enjoying time with family and friends. This collection of apps cove...
by Geek Staff
0

 
 
 

Improve smartphone photos with native editing tools (gallery)

Previous | Next Image 1 of 26 Android: Viewing a photo, getting ready to edit Most people take photos with their smartphones and then share them on social networking sites or via email. I rarely see anyone print photos and th...
by Geek Staff
0

 
 
 

SEA mobile phone sales rise by 8 percent

Southeast Asian consumers are increasingly moving away from feature phones and on to smartphones, which is helping spur sales growth in this region. According to findings from GfK released Friday, the region’s overall mob...
by Geek Staff
0