Symantec 在 Android Market 發現 Malware, Android.Counterclank

Symantec 發現 Malware Android.Counterclank

Symantec 在 Android Market 發現三個開發商旗下的 Apps 都藏有 Android.Counterclank惡意程式。這個 Android.CounterClank 可接收指令並在手機內運行,另外亦可盜取手機內的資料。

Symantec has identified multiple publisher IDs on the Android Market that are being used to push outAndroid.Counterclank. This is a minor modification of Android.Tonclank, a bot-like threat that can receive commands to carry out certain actions, as well as steal information from the device


當這些惡意程式運行時,就會有一個名為 “apperhand” 的程序在機內運行。另外,受影響的手機亦會有一個搜尋圖示被自動加在 Home 畫面,若利用這不明圖示進行搜尋,會被帶至一個可疑網頁。

根據 Symantec 的資料,估計曾安裝這十多個問題 Apps 的用戶多達百萬人。

下面為有可疑的 Apps,大家要核對有否安裝。附有 * 號的,仍可在 Android Market 找到,大家要小心。

開發商 可疑 Apps 分類
iApps7 Inc CounterStrike Hit Enemy* Arcade & Action
iApps7 Inc Heart Live Wallpaper* Entertainment
iApps7 Inc Hit Counter Terrorist* Arcade & Action
iApps7 Inc Stripper Touch girl Entertainment
iApps7 Inc Counter Elite Force Arcade & Action
iApps7 Inc Counter Strike Ground Force Arcade & Action
Ogre Games 小兔子射氣球 Balloon Game* Sports Games
Ogre Games 百萬富翁 Deal & Be Millionaire* Sports Games
Ogre Games 野人 Wild Man* Arcade & Action
redmicapps 漂亮女人內衣拼圖 Pretty women lingerie puzzle* Photography
redmicapps 拼圖性感的女孩 Sexy Girls Puzzle* Brain & Puzzle
redmicapps Sexy Girls Photo Game Lifestyle
redmicapps Sexy Women Puzzle Brain & Puzzle

以下是三個可疑開發商在 Android Market 的連結
iApps7 Inc
https://market.android.com/developer?pub=iApps7+Inc

Ogre Games
https://market.android.com/developer?pub=Ogre+Game

redmicapps
https://market.android.com/developer?pub=redmicapps

資料來源:Symantec