These Android apps are nothing but adware, but have been installed over 2 million times already – so uninstall now
Cybersecurity researchers from Dr.Web discovered a handful of Android apps that were pushing ads and stealthily subscribing people to premium services.
The reserachers reported that these trojan apps, all found on Google’s official Play Store app repository, were cumulatively installed roughly two million times.
The apps were pretending to be games, messengers, and wallpaper apps, among others, and were mostly distributing three known malware families – FakeApp, Joker, and HiddenAds.
A million downloads
Upon installing one of these apps, they would immediately change their icon on the device, to something the user would reluctantly remove, such as the Chrome browser. In some cases, the researchers added, the trojans would simply remove their icons altogether, to seem as if there is an empty space in the app drawer.
The apps would then launch in the background, and deliver ads to the victim via their browser. That way, they would generate significant profits for the developers. The ads included things like casino websites, fake investments, and similar – all of which are in violation of Google’s policies.
The biggest trojan that managed to move past Google’s defenses and into the Play Store is Super Skibydi Killer, a game app with a million downloads. Other notable mentions include Agent Shooter (500,000 downloads), Rubber Punch 3D (500,000 downloads), and Rainbow Stretch (50,000 downloads).
There are also apps that subscribe the victim to premium services without their knowledge, including Love Emoji Messenger (Korsinka Vimoipan) with 50,000 downloads, and Beauty Wallpaper HD (fm0989184) with 1,000 downloads.
While Google removed all of the apps from the Play Store before this article was published, that only protects future potential victims. Those that have already downloaded the apps can only be safe if they remove them from their endpoints. If you suspect your device was compromised, besides the abovementioned apps, look for these:
Eternal Maze (Yana Pospyelova)
Jungle Jewels (Vaibhav Wable)
Stellar Secrets (Pepperstocks)
Fire Fruits (Sandr Sevill)
Cowboy’s Frontier (Precipice Game Studios)
Enchanted Elixir (Acomadyi)
Via BleepingComputer
More from TechRadar Pro
Cybersecurity researchers from Dr.Web discovered a handful of Android apps that were pushing ads and stealthily subscribing people to premium services. The reserachers reported that these trojan apps, all found on Google’s official Play Store app repository, were cumulatively installed roughly two million times. The apps were pretending to be…
Recent Posts
- Comcast’s StreamSaver bundle will put Netflix, Apple TV Plus and Peacock all under the same roof – and for a ‘vastly reduced price’
- Amazon to produce a live-action Tomb Raider series
- Senua’s Saga: Hellblade II highlights the next round of May Game Pass titles
- AMD RDNA 4 graphics cards could be imminent, as huge driver-related hint is dropped
- Ancient trees show how hot summers have gotten
Archives
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- December 2011