Home / Science and technology / Virus-Trojan steals money from Android users

Virus-Trojan steals money from Android users

Вирус-троянец ворует деньги у пользователей AndroidThe Android-based devices become even more vulnerable to the modified virus-Trojan.

Android banking Trojan.SmsSpy.88.origin terrorizing users of the mobile OS Android for the past few years, has considerably evolved and became more dangerous. Information about a new modification of the malware was published on the official website of the antivirus company “Doctor Web”.

Tellingly, all earlier versions of the Trojan attacked only users from Russia and some CIS countries. The new version of infected smartphones and tablets running Android around the world. As before, Android.SmsSpy.88.origin gets on the mobile device under the guise of innocuous programs like the well-known Adobe Flash Player. After the launch of Android.SmsSpy.88.origin prompts the user with access to administrator rights in order to obstruct its removal from the infected system.

The Trojan then connects to the network and maintains a connection in the active state, using Wi-Fi or a data transmission channel of the mobile operator, which allows the app to ensure constant communication with the managing server and to avoid any disruptions. The Trojan then creates the infected device unique identifier, which, together with other technical information is transmitted to the criminals ‘ server, where the registration of an infected smartphone or tablet.

Thus Android.SmsSpy.88.origin is trying to steal logins and passwords from accounts mobile banking to transfer them to cyber criminals. After the device owner runs one of the target applications, the Trojan by using the WebView shows its window on top of the phishing form of input authentication data to access accounts mobile banking. Once the user specifies the desired data is malware, the program secretly transmits them to attackers, and they have full control over all the accounts of the victims.

The main difference between a modified version of Android.SmsSpy.88.origin from the base became a self-protection feature that tries to hinder the work of a number of antivirus programs and service utilities, not allowing them to start and “to resist”.

Check Also

Science in Russia is isolated, as the Runet

Science in Russia is isolated, as the Runet: the staff of universities are already ordered …