{"id":36267,"date":"2019-08-29T15:29:20","date_gmt":"2019-08-29T07:29:20","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=36267"},"modified":"2019-08-29T15:29:22","modified_gmt":"2019-08-29T07:29:22","slug":"dangerous-trojan-distributed-thru-popular-app-on-official-app-store","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2019\/08\/29\/dangerous-trojan-distributed-thru-popular-app-on-official-app-store\/","title":{"rendered":"Dangerous Trojan distributed thru popular app on official app store"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>Kaspersky experts warn about a malicious version of a popular app for the creation of PDF images, which was distributed through the Google Play, the official store for Android based applications. <\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The app contained mechanisms for downloading malware to the users\u2019 devices. As a result, victims could find themselves subscribed to paid services which they did not request. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to the platform\u2019s statistics, the app has been installed more than 100 million times. Google Play Store has immediately withdrawn the app following Kaspersky\u2019s notification of the malicious content.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">While researching the compromised app, Kaspersky researchers discovered a malicious \u2018dropper\u2019 \u2013 a shell that brings a malware \u2013 that was there to introduce a malicious downloader on the user\u2019s device. This downloader, was then used to download malicious files onto the user\u2019s smartphone. The functionality of these malicious files varied depending on the intentions of the malware developers, but the samples analyzed by Kaspersky researchers displayed intrusive ads and signed the user up for paid subscriptions.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Shortly after removal from Google Play, the developer of the app published a statement stating that the incident happened due to third-party advertisement provider.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u00a0\u201cIt\u2019s not often that we see an app with a loyal user base and such a large number of installations is distributing malicious components. Given the positive reviews on the Google Play app page and the fact that security researchers did not previously detect malicious activity, it looks like the malicious modules were added into the app with one of its updates. In a nutshell, this is yet another example of the fact that it is important for consumers to reliably protect your devices even if you use only official sources to download software,\u201d said Igor Golovin, a security researcher at Kaspersky.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>To stay safe<\/strong><strong>,<\/strong><strong> Kaspersky recommends:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Remembering that even the apps from official stores with a loyal user base can be modified and include malicious elements<\/li><li>&nbsp;&nbsp;Installing system and application updates as soon as they are available &#8211; they patch vulnerabilities and keep devices protected<\/li><li>&nbsp;&nbsp;Using use a <a rel=\"noreferrer noopener\" target=\"_blank\" href=\"https:\/\/www.kaspersky.com\/android-security\">reliable security solution for Android<\/a> and scanning your smartphone from time to time, to make sure it stays protected&nbsp;<\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The app contained mechanisms for downloading malware to the users\u2019 devices. As a result, victims could find themselves subscribed to paid services which they did not request.<\/p>\n","protected":false},"author":6,"featured_media":36268,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[101,54],"class_list":["post-36267","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-kaspersky","tag-security"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36267","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=36267"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36267\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/36268"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=36267"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=36267"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=36267"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}