Skip to main content

Google Removed 21 Malware Apps. Remotely Removing from Affected Android Devices

Last week, the Android team was made aware of a number of malicious applications published to Android Market. Within minutes of becoming aware, they removed the malicious applications. According to the company, the apps are malware aimed at getting root access to the user’s device, gathering a wide range of available data, and downloading more code to it without the user’s knowledge.

 

image

 

The following 21 malware apps have already been downloaded by at least 50, 000 Android users.

  • Falling Down
  • Super Guitar Solo
  • Super History Eraser
  • Photo Editor
  • Super Ringtone Maker
  • Super Sex Positions
  • Hot Sexy Videos
  • Chess
  • 下坠滚球_Falldown
  • Hilton Sex Sound
  • Screaming Sexy Japanese Girls
  • Falling Ball Dodge
  • Scientific Calculator
  • Dice Roller
  • 躲避弹球
  • Advanced Currency Converter
  • APP Uninstaller
  • 几何战机_PewPew
  • Funny Paint
  • Spider Man
  • 蜘蛛侠

Google claimed that the applications took advantage of known vulnerabilities which don’t affect Android versions 2.2.2 or higher. For affected devices, the only information the attacker(s) were able to gather was device-specific (IMEI/IMSI, unique codes which are used to identify mobile devices, and the version of Android running on your device).

As per the official blog post from Google Mobile blog, following steps are taken to protect the users -

  1. We removed the malicious applications from Android Market, suspended the associated developer accounts, and contacted law enforcement about the attack.
  2. We are remotely removing the malicious applications from affected devices. This remote application removal feature is one of many security controls the Android team can use to help protect users from malicious applications.
  3. We are pushing an Android Market security update to all affected devices that undoes the exploits to prevent the attacker(s) from accessing any more information from affected devices. If your device has been affected, you will receive an email from android-market-support@google.com over the next 72 hours. You will also receive a notification on your device that “Android Market Security Tool March 2011” has been installed. You may also receive notification(s) on your device that an application has been removed. You are not required to take any action from there; the update will automatically undo the exploit. Within 24 hours of the exploit being undone, you will receive a second email.
  4. We are adding a number of measures to help prevent additional malicious applications using similar exploits from being distributed through Android Market and are working with our partners to provide the fix for the underlying security issues.

Android Market is open unlike App Store which can be great and unfortunate in different instances; and users are encouraged to read user reviews before downloading any app. Always, play it safe!

Comments

Popular posts from this blog

Your Google Apps Account is Changing

Google is about to make more of its services available to organizations with Google Apps accounts. This is an early adopter phase, and all domains may not get this option to move to the new infrastructure. What this means for you: In addition to the core suite of messaging and collaboration applications, Google Apps users may now access many more Google services with their Google Apps accounts.     Those who are eligible for this early adoption, Google Apps administrator will be presented with the above banner to start with the migration. In your organization, you can transition selected pilot users and admins, or you can start the transition now for all your users. The transition for pilot users can be reverted if necessary. After successful transition, your users will now be able to use other Google popular products like AdSense, AdWords, Alerts, Analytics, Android, Blogger, Finance, Google Desktop, News, Orkut, Reader, Voice, YouTube (Full list here ). Als...

How to Turn Your Android Phone into a Fully-Automated Superphone

What if your phone automatically went silent when you step into the movie theatre? Texted your significant other when you finished your long commute? Or automatically turned down the volume when a particularly loud friend called? It can; here's how. Android application Tasker gives you total rules-based automation for your Android phone. It's not free, but it offers a free 14-day trial download. Tasker can do nearly anything on your phone. It's mostly limited by your imagination. Here are some up-front ideas about neat automations that come to mind: • Set preferences for each application: Give the Kindle app a longer screen time-out. Make Maps or Foursquare automatically turn on GPS, and have a file browser launch when you trade out SD cards. Have your music and other audio apps lower the volume to 50 percent when you plug in headphones, so you never get a way-too-loud moment. • Time of day automation: Make your phone go into airplane mode overnight, but re-conne...

Google Wallet: The Future Innovative Mobile Payments

Earlier few months, Google unveiled future innovative way of payment technology – Google Wallet. Today, Google released its first version of the Android app with Sprint Nexus S 4G phones through an over the air update. Google Wallet is an app that lets you pay for things using your phone, either by tying your credit card or gift or pre-paid cards. It works using an near field communication (NFC) embedded chip and there is no swiping required.   According to Techcrunch , Google Wallet will not work everywhere your credit card will. It won’t work everywhere there’s an NFC-friendly card reader, either. Wallet requires an NFC reader based on a new-ish specification, and only a select bunch of retailers have gotten around to updating. The post also had some great review and walkthrough in real life. This app is now available to Samsung Nexus S owners on Sprint, through PayPass sensors at Radio Shack, Foot Locker, Peet’s Coffee & Tea, Sunoco, CVS/pharmacy, etc. retailers. ...