ESET identifies one of the largest malware campaigns on Google Play

Status
Not open for further replies.

Jrs30

Level 11
Thread author
Verified
Honorary Member
Top Poster
Well-known
Feb 4, 2016
549
Source : ESET identifica uma das maiores campanhas de malwares na Google Play - TecMundo

a recent discovery made by ESET laboratory can bring new anything nice for a large number of Android users worldwide. According to the study released by security company, the family of Trojans called Android / Clicker masquerades as a legitimate app in the Google Play store and, when downloaded and installed on a mobile device, initiates am heavy internet traffic for porn sites without you noticing.

Scholars say the malware group already infiltrated the official store of the system at least 343 times in the past seven months, becoming one of the greatest advances ever recorded in Google Play. "We found many cases of malware campaigns on Android, but none showed so long or had such a large number of successful infiltrations like this," says Camillo Di Jorge, president of ESET Brazil.

According to the executive, the fact that these Trojans are constantly changing causes able to fool Google's security barriers, hiding their true purpose and returning to the same store after sending alerts to users. During the campaign period, on average 10 new family of malware passed by controlling the giant of searches each week.

Great extent

ESET's report indicates that the Trojan Android / Clicker group also infiltrated other app stores geared to operating system users green little robot. Each of malicious applications had an average of 3,600 downloads in Google Play Store, but the number must be considerably greater when we consider alternative sources.

To reach the greatest number of people, these trojans disguise themselves as popular applications, such as games. After installation, the malware creates false ads, which are used to steal advertisers and harm the advertising platforms inside the store. As for the users, the Trojan creates a lot of traffic on the Internet, negatively affecting those who have a limited data plan.

As president of ESET, the campaign Android / Clicker family has been successful, but there simply to escape the infection methods. "An important tip for users to avoid being victims of fraud is check the reviews and ratings given to applications in the Google Play Store," explains the executive.
 

Jrs30

Level 11
Thread author
Verified
Honorary Member
Top Poster
Well-known
Feb 4, 2016
549
H

hjlbx

What Google ? - no manual file analysis ?

And this is what happens... app is safe, but really it is not.

Masquerading malicious apps, browser extensions, digitally signed installers, etc.

Just the beginning...
 

safe1st

Level 17
Verified
Top Poster
Well-known
Jan 29, 2016
812
Nice article! I don't understand why people keep saying "there's no malware at android"..

Yes, me too. I dont understand.. Years ago, people said no viruses on Mac. Now? ;)

Nothing is safe

Even the Play store isn't 100% safe, but it is supposed to be the safest as it is official. Go ESET. I am glad they found it. Love their products!

Agreed..
That why I love to use ESET :D
 

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
@hjlbx: Seems their 'Bouncer' is too soft and pale to check the file for verification. :D

Only those people who are 'fool' and 'silly' to suffer on those threats.
 
  • Like
Reactions: Jrs30 and hjlbx

soccer97

Level 11
Verified
May 22, 2014
517
They need a tougher bouncer :p. Wait in line until the code is at minimum automatically checked thoroughly with malware analytic software, and updates would have to be too. This would place a huge burden on Google's Ply store and cause delays though (I would think...). ESET Mobile Security is really good.
 
  • Like
Reactions: Jrs30

Khairul

Level 2
Verified
Feb 3, 2015
90
Well somehow i believed even google cannot handled manually test the products themselves as everyday, there are just too many new apps being introduce. Thats why they are more depends on the auto bouncer to check if there are any malware. But i still remember the arrogance of google representative (i didnt remember his name), where he said that "there are no need to use antivirus as long as they download from official play store". But it seems the official play store are the place to spread those malware.
 
  • Like
Reactions: Jrs30

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
You know its easy if they will integrate license AV engine to improve its security check, but Google remains to ignore the request which turned out to be worse enough.
 
  • Like
Reactions: Jrs30

Khairul

Level 2
Verified
Feb 3, 2015
90
You know its easy if they will integrate license AV engine to improve its security check, but Google remains to ignore the request which turned out to be worse enough.

If im not mistaken, google already did that, but not the brands that we often hear nowadays. They actually purchase the Antivirus company and absorbed it directly into their company (which became the antivirus technology for their email scanner etc).
 
  • Like
Reactions: Jrs30

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
@Khairul: Well likely yes where I've read it somewhere long time before, however seems they rather focus to create by themselves which result the detection rate is too minimal.
 
  • Like
Reactions: Jrs30
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top