AfterDawn: Tech news

Android malware using Google Play Store icon to trick users

Written by Andre Yoskowitz @ 30 Dec 2012 10:27 User comments (3)

Android malware using Google Play Store icon to trick users A new Android trojan has been found that causes infected devices to be used for spamming text message purposes and even DDoS attacks.
The "Android.DDoS.1.origin" trojan was first discovered by effective Russian security firm Doctor Web, and tricks its way onto consumer's Android devices by disguising itself as a legitimate app from Google.

After installed, the app creates an icon that is an exact replica of the Google Play Store. Clicking it will still send you to the Store, but there is much more malicious occurrences happening in the background. The trojan will immediately try to connect to its Command and Control (C&C) server and if it does, the server operators are sent the victim's phone number. Further instructions are sent via SMS.

The malware, if given a DDoS command, will begin sending data packets to a specified address. This is bad for the site if there are enough infected devices and also bad for the user, who is using up bandwidth unwillingly and criminally.

Previous Next  

3 user comments

131.12.2012 01:19

How exactly does one get infected? I remember how there were, and probably still are, malicious versions of TubeMate on the Play Store.

Another way I can think of right off, are people trying to score paid versions of apps via torrents. I don't remember the name of this one app in particular, but it would send an SMS to everyone in the victims contacts with something similar to, "I'm too cheap to pay for apps".

231.12.2012 02:24

hilarious...


"I'm too cheap to pay for apps"

I never got such a message, i support when price is right, dont need to pirate anymore too much entertainment already available and deals on the play store are great

illegal download free since 2010.
try netflix, redbox, pandora, tunein, hulu, basic cable, youtube, free apps, dollar apps, EA Origin, steam, amazon app+MP3.

31.1.2013 20:23

Originally posted by Ofnir1:
How exactly does one get infected? I remember how there were, and probably still are, malicious versions of TubeMate on the Play Store.

Another way I can think of right off, are people trying to score paid versions of apps via torrents. I don't remember the name of this one app in particular, but it would send an SMS to everyone in the victims contacts with something similar to, "I'm too cheap to pay for apps".
lmao!

Comments have been disabled for this article.

Latest news

The era of cheap AI is about to end - consumers and companies may experience a harsh reality very soon The era of cheap AI is about to end - consumers and companies may experience a harsh reality very soon (19 Apr 2026 12:58)
AI companies have allowed both consumers and businesses to use their developed AI models at a significantly lower cost than their actual expenses. A clear change is now coming to this, which could significantly alter the market.
Defunct companies started selling their former employees' email and Slack messages to AI companies Defunct companies started selling their former employees' email and Slack messages to AI companies (18 Apr 2026 12:27)
Technology companies that have gone bankrupt or have simply been shut down have found a new way to make a little more money at their final gasp. The companies are selling their employees' Slack, Teams, and email messages as training material for AI compan
Google starts penalizing sites that hijack the browser back button Google starts penalizing sites that "hijack" the browser back button (18 Apr 2026 2:35)
Google has announced that starting from June 2026 it will begin penalizing websites that hijack the browser back button.
Installing a fresh Windows 11 is now up to half an hour faster Installing a fresh Windows 11 is now up to half an hour faster (17 Apr 2026 11:11)
The update to Windows 11 released in April 2026 changes the way Windows is installed on a computer for the first time. User can now skip the previously mandatory updates during the installation phase.
EU age verification app humiliated: Researcher bypassed protections in two minutes EU age verification app humiliated: Researcher bypassed protections in two minutes (17 Apr 2026 9:57)
The official EU age verification app released this week is reportedly easy to crack. Security researchers claim that it can be circumvented within two minutes.

News archive