Malware-laden Apps Discovered on Google Play Store

Risk:
high
Damage:
high
Platform(s):
Google
Advisory ID:
ngCERT-2022-0097
Version:
N/A
CVE:
N/A
Published:
November 4, 2022

Summary


The Nigeria Computer Emergency Response Team (ngCERT) has continued to observe and monitor the constant introduction of malicious mobile applications into Google Play Store. Recently, a group of apps created by 'Mobile Apps Group' were discovered to contain Trojans and adware that are harmful to users and their privacy. Mobile apps Group has a history of distributing malware-infected apps through the Google Play store, and the current batch of apps has already been downloaded over a million times.

Description & Consequence


This group's malicious apps include the following:

  1. Bluetooth Auto Connect
  2. Bluetooth App Sender
  3. Driver: Bluetooth, Wi-Fi, USB
  4. Mobile transfer: smart switch

 

To avoid detection, the apps will delay the display of ads for up to three days after installation. However, once this time period has passed, the user is bombarded with advertisements and is directed to malicious phishing websites in the Chrome browser. While the device is idle, it can even open Chrome tabs in the background. Some of the sites it opens may appear to be harmless, but they are actually pay-per-click pages that generate revenue for the developers when clicked on.

The consequences of installing the malicious apps are as follows:

  1. The user will be bombarded with advertisements, which will degrade the user experience.
  2. Theft of sensitive user data.
  3. Clicking on the ads may result in the stealth download/installation of additional malware.
  4. User privacy and data may be jeopardized.

Solution


  1. Users should refrain from downloading apps developed by Mobile apps Group.
  2. Be sure to read app reviews before installing any app.
  3. Users that may have installed any of the identified malicious apps should uninstall immediately.
  4. Install up-to-date anti-malware solution to detect and remove malware.

Reference


Revision


Related Articles