Google Play Pass app may have served up malware to 10 million users Barcode Scanner


At the end of last year, Malwarebytes forum users began noticing that ads were randomly opening in their web browsers on their Android devices and it turns out that a Google Play Pass app called Barcode Scanner was responsible.
The app in question had over 10m installs on the Google Play Store before it was taken down, though some users may still have it installed on their devices.
Developer LavaBird LTD’s app Barcode Scanner has previously allowed users to scan QR codes and generate barcodes before it received an update in December of last year. After the update though, what was once an innocent scanner turned into full on malware.
The Barcode Scanner app then began opening users’ default browsers and showing them ads for other apps as well as recommending that they upgrade apps already installed on their devices in order to boost their performance.
Malicious update
In order to provide apps to users for free, many free apps on Google Play include some kind of in-app advertising by including an ad SDK in their code. However, sometimes an ad SDK can change something on their end that makes their ads become more aggressive. Sometimes these changes can even transform an app into adware.
However, with Barcode Scanner, this wasn’t the case as the malicious code added in the update was not found in previous versions of the app. Malwarebytes also discovered that the added code used heavy obfuscation to avoid detection. The cybersecurity firm also verified that the update came from LavaBird LTD by confirming that it had been signed by the same digital certificate as previous versions of the app.
Due to Barcode Scanner’s obvious malicious intent, Malwarebytes looked even further into the app’s code to discover a trojan in the form of Android/Trojan.HiddenAds.ADQR.
Users that still have Barcode Scanner installed on their devices should delete the app immediately to avoid being served unwanted and even malicious ads in their browsers.
Via Android Police
At the end of last year, Malwarebytes forum users began noticing that ads were randomly opening in their web browsers on their Android devices and it turns out that a Google Play Pass app called Barcode Scanner was responsible. The app in question had over 10m installs on the Google…
Recent Posts
- The iOS 18.4 beta brings Matter robot vacuum support
- Philips Monitors is now offering a whopping 5-year warranty on some of its displays, including a gorgeous KVM-enabled business monitor
- The secretive X-37B space plane snapped this picture of Earth from orbit
- Beyond 100TB, here’s how Western Digital is betting on heat dot magnetic recording to reach the storage skies
- The end of an era? TSMC, Broadcom could tear apart Intel’s legendary business after 57 years by separating its foundry and chip design
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010