EFY Times  
Wednesday, May 22, 2013

 
GO
 
 
Mobile Zeus Trojan Poses As Android Security Tools: Kaspersky Lab
 
Home >> Infotech >> Trends
 
Mobile Zeus Trojan Poses As Android Security Tools: Kaspersky Lab  
 
   
Rate this news:  (0 Votes)
Thursday, June 21, 2012 Researchers have discovered a set of malicious Android applications posing as security software in the latest example of malware targeting Google’s mobile platform. Kaspersky Lab has uncovered a set of malicious Android applications posing as security software. The malware is linked to the infamous Zeus Trojan, a common tool used in the theft of banking credentials. The phony security applications were first observed earlier this month, and newer versions have continued to appear, according to Kaspersky.






Malicious files
“On the 4th of June 2012 we found 3 APK files of ~207 kb in size each heuristically detected by our engine as HEUR:Trojan-Spy.AndroidOS.Zitmo.a,” blogged Kaspersky researcher Denis Maslennikov. “All these applications are malicious and were created to steal incoming SMS messages from infected devices. SMS messages will be uploaded to a remote server whose URL is encrypted and stored inside the body of the Trojan.”

The company found three more APK (application package) files with exactly the same functionality on 8, 13 and 14 June. Altogether there are at least six files that pretend to be “Android Security Suite Premium”, but in actuality steal incoming SMS messages, the researcher said.

The point of stealing incoming SMS messages is to swipe the victim’s mobile transaction authentication number (mTAN), which is used by banks to authenticate online bank transactions. When a device is infected, the SMS messages are uploaded to a remote server.

“One of the remote server domains was registered using the same fake data which was used for registering ZeuS C&Cs [command and control] servers back in 2011,” Maslennikov blogged.” And the malware’s functionality is almost the same as in old ZitMo samples [the mobile version of Zeus]. Therefore ‘Android Security Suite Premium’ = New ZitMo.”

Android malware on the rise
The issue of Android malware has been a focus security researchers and attackers alike for the past year.

Last week, Sophos released its list of the five most common pieces of Android malware. The most prevalent is what the company refers to as Andr/PJApps-C, which Sophos Senior Technology Consultant Graham Cluley described as an application that has been cracked using a publicly available tool that may or may not be actually malicious.

The second most popular is BaseBridge, which uses a privilege escalation exploit to elevate its privileges and install additional malicious apps onto a victim’s device. It also uses HTTP to communicate with a central server and leaks potentially identifiable information.

On 13 June authorities in Japan arrested six men for distributing a malicious Android app through a website that hosted adult content. According to The Daily Yomiuri, the Trojan was hidden inside an application that posed as a video player.

Once opened, the malware stole the victim’s information and sent it to a remote server. The application also displayed a message demanding a payment of 99,800 yen (£805). Symantec detects the rogue application as Android.Oneclickfraud.
Smartphone attack

“While there are countless numbers of sites aimed at scamming computer users, there have only been a handful of sites designed for smartphones to date,” blogged Joji Hamada, threat analyst with Symantec Security Response. “Out of those, we are aware of at least two sites affiliated with the site operated by the arrested men, and they are up and running…. So, with the arrest of the gang operating Android.Oneclickfraud I am hopeful that their sister sites will be taken down soon, with more arrests to follow. However, at the time of writing they show no sign of letting up.”



Print Email Post Comment 
(Total Views: 676)
 
Share
 
 
Infotech News
   
Two Basic Steps To Increase PC's Speed
Send Scented Messages Using Scentee Smartphone Addon
Opera For Android Out Of Beta; Now Available On Google Play
'Desi' Facebook And Twitter Coming Soon?
5 Top And Free Image Hosting Websites
 
 
 
     
     
     
Press Release
     
DISH Anywhere App Upgraded, Includes On ...
Powermat And PowerKiss To Unite
Mosaik Solutions Launches CellMaps ...
Major League Soccer And Windows 8 Bring ...
TiVo Reports Results For The First ...
LXI For Collider Signal Monitoring At ...
Mobile Operators: Make Cellular And ...
Times Mobile Ltd Brings A Home ...
Nearly 3,000 Participants Attended ...
Tech Mahindra Q4 PAT At Rs 377 Crores, ...
Recommend.ly The Easiest Way To Gain ...
Mahindra Racing Launches Android-Based ...
Tata Communications’: 40th Anniversary ...
Jelastic Launches New Version Of Its ...
Soyer5001T: Put The Zing Back In Your ...
Tata DOCOMO Inks Exclusive Partnership ...
F5 Addresses The Escalating Application ...
Romanian Teenager Wins Big For ...
CMC Wins TV5 Business Leader Award In ...
SP/Silicon Power Presents Jewel J10 USB ...
Yebhi.com Launches 30 Virtual Stores ...
Amdocs Announces Cloud-based Business ...
Record Number Of New Exhibitors Join ...
His Excellency Premier Li Keqiang ...
Jogesh K. Jaitly Moves From Samsung To ...
 
Ericsson Brings Carrier-Grade Wi-Fi To ...
Axis Announces A High-Performance Video ...
Achieve Cost Savings With SapphireIMS ...
0% 6 And 12 Month EMI On Samsung ...
Seagate Delivers Industry’s First ...
Xilinx Achieves PCI Express Compliance ...
Plancess Partners With LurnQ Taking The ...
Vuclip Redefines Mobile Ad ...
EMC Components: Extremely Miniaturized ...
Snapdeal.com Exclusively Launches A ...
Amdocs Unveils Industry’s First Elastic ...
NASSCOM Announces Engineering Council ...
MAIT Felicitates Uttarakhand Government ...
Sumitomo Corporation And NEC Provide ...
Gionee Announces “ELife” Its Ultra ...
Discover Browser Beauty With Opera for ...
Dijit Media Introduces NextGuide Web, A ...
Wacom Offers Bamboo Loop - A Digital ...
SPOT Global Phone Brings Affordable, ...
Enjoy The Best Moments From The UEFA ...
Evolio Launches The Thinnest And ...
DIGISOL Rolls Out “Cool Summer Offer”, ...
One Percent Rise In Use Of Properly ...
Toshiba To Start Mass Production Of ...
Marvell Unveils Industry's First Mass ...
     
     
     
     
     
Most popular
 
 
 
 
Features
Four Best And Free Cloud Storages With Their Features
To make it easy for you to choose the best cloud storage option, we bring the top 4 cloud storages with their features....
Five Free Google Reader Alternatives
The Google Reader might be dying on 1 July but the RSS is definitely not! So here we bring to you 5 alternatives of Google Reader....
 
  View All
Videos
 
First Look: LG Optimus G
The phone sports a high-end display and comes powered by a powerful processor. ...
Create QR-Codes For Free
TEC-IT releases the freeware QR-Code Studio to provide a quick and convenient way of QR code creation for every application scenario....
DoT Secretary Shares Plans For Growth Of Telecom Sector
M.F. Farooqui has recently taken charge as secretary, Department of Telecom....
Hands-On: Sony Xperia Z
Xperia Z is Sony's first entrant model in the big-screen smartphone category. ...
Hands On: Videocon A30 Smartphone
Videocon, the consumer electronics company which is known for its refrigerators, washing machine and air-conditioner has unveiled its Android-based sm...
   
View All
   
 
Dialogue
 
“Open Source Technology Will Bring In A Services-Based Model With A Reasonable Opex, Zero Capex”
myOpenSourceStore.com is an open source solutions provider catering to businesses worldwide. ...
How OSS Helped A Construction Company Almost Halve Its IT Budget!
SEW Infra has been able to save nearly 40 per cent of its IT budget by deploying open source solutions....
Face To Face With Richard Stallman
The father of the free software movement, Richard M. Stallman talks on topics including why ‘Free Software’ matters so much, the entire confusion crea...
“We See India As Our Top Priority And Believe It To Be A Fascinating Market”
In an exclusive interview with EFY, Yamashita talks about the potential market in India, and Fujitsu’s marketing strategy to explore it....
Indian Market Is A Quality Conscious Market And The Customers Pay The Price For Quality
In an exclusive interview with EFY, Hidekazu Katsuno, president, ROHM Semiconductor Singapore Pte Ltd, talks about the company's strategy to capture t...
   
  View All
CeBIT 2013
 
Major Indian IT Companies Found Missing From CeBIT
Besides European companies, CeBIT 2013 attracted exhibitors and visitors in large numbers from all other continents as well. Poland was the partner co...
CeBIT 2013: Here Comes Brain Painting!
The system is basically a computer program that can help paralysed patients draw artworks simply by using the power of their brains. ...
CeBIT 2013: Fujitsu Unveils Lifebook E Line Notebooks
All three models in the series include flexible and convenient working functions that are normally expected in today’s premium business notebooks. ...
CeBIT 2013: Want To Feel Loved? Get 'Cuddle Jacket' For You
The 'cuddle jacket' can be helpful for kids suffering from autism and other sensory disorders....
CeBIT 2013: Here Comes Solar Powered Water Filtering Technology
The technology works in a unique way as it purifies water with the help of UV rays coming via daylight....
CeBIT 2013: Highlights Of Day 1!
Besides European companies, CeBIT 2013 attracted exhibitors and visitors from all other continents....
   
View All
   
 
Events
 
12 Nov: LASER World Of PHOTONICS INDIA

View All
   
   
 
 

home archives contact us advertise with us
           
Magazines Portals Directories Events News Verticals Educational Institute  
Electronics for You
Open Source for You
Facts for You
Electronics Bazaar
electronicsforu.com
efytimes.com
bpotimes.com
linuxforu.com
Electronics Annual Guide
EFY EXPO
EFY Awards
EduTech Expo
OSIWEEK Expo
Electronics
Infotech
Linux & Open Source
Consumer Electronics
Science & Technology
BPO
EFY Techcenter 
 
 
© Copyright 2013 EFY Enterprises Pvt. Ltd.
All rights reserved. Reproduction in whole or in part in any form or medium without written permission is prohibited.
Usage of the content from the web site is subject to Terms and Conditions