SHA1:
1706ae6b3d27b50cf891924e5ecbf3f3728079f9
Malicious program for Android mobile devices. Cybercriminals incorporated it into a player application, which does not initially pose any threat. The Trojan version of the player was named as AnonyPlayer.
Once launched Android.Spy.510 sends the following information to the command and control server:
- Login and password to the Google Play user account;
- Mobile device model;
- SDK version of the operation system;
- Availability of root access on the device.
Then it attempts to install an additional hidden program package that is, in fact, Adware.AnonyPlayer.1.origin advertising module. To do that, the Trojan displays the text message on the screen offering a user to install AnonyService application, supposedly in order to assure the user`s anonymity: