This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.  > Find out more here

 
All the latest UK technology news, reviews and analysis

Google pulls malicious SMS Trojans from Android Market

by Phil Muncaster
13 Dec 2011
View Comments
  • Tweet this
Android Market logo

Google's Android platform suffered more bad publicity on Monday when the firm was forced to pull a series of malicious apps masquerading as legitimate titles such as Angry Birds, after they were discovered on the official Android Market apps store.

Irate Android customers and developers took to Reddit to vent their frustration with the apps, which appear to have been posted on the store by a developer named 'Logastrod'.

The malicious apps were disguised to look like Angry Birds, Cut the Rope and Where's My Water, among others, and attracted customers by being labelled as free.

However, even after Logastrod's account was deleted by Google, the rogue apps appeared elsewhere under the different name of 'Miriada Production', according to a blog post by Finnish security firm F-Secure.

"There could be several such accounts in Android Market, turning Google's security efforts into a game of Whac-A-Mole," said the firm. "If installed, the Trojans will attempt to send a premium rate SMS using short codes."

Apps that dial or text to premium rate numbers owned by the cyber criminal have become an incredibly popular way to make money from victims, who usually download the software onto their smartphones believing it to be legitimate.

The scam was highlighted by Get Safe Online and Trend Micro last month, the latter estimating that mobile malware has grown an astonishing 800 per cent in just four months.

F-Secure said that previously all of the premium rate SMS Trojans it had seen were targeted at Russian users, but the latest batch were aimed at people in 18 different countries.

The malicious apps have been deleted from the official Android Market, but may still remain on third-party app stores such as AppBrain.

"So how is the developer attempting to justify their apps? Well ... it's in the fine print," noted F-Secure.

"Included within the app's installation agreement is language that says the 'customer' will be subscribed to a premium service, and then the app, which is basically a wrapper, will then download the 'free' game."

Do you agree
blog comments powered by Disqus
Poll

Apple iOS 7 redesign poll

Will you be updating your iPhone to the new version of the operating system unveiled by Apple?
17%
2%
6%
2%
73%

Popular Threads

Powered by Disqus
HTC One vs Apple iPhone 5 head to head review

iPhone 5 v HTC One head to head video review

V3 pits top devices against one another ahead of Samsung Galaxy S4 launch

Updating your subscription status Loading
Connect with V3.co.uk

Sign up to our daily or weekly newsletters

newsletter sign-up button
mimecast

Postini migration – 5 easy steps

The clock is ticking for Postini users that don't want to move their email management to Google Apps.

acquia

How to keep up with the speed of the web through open source

Build great digital experiences at the speed of the web

Resourcer (IT Recruitment)

IT Resourcer (IT & Telecoms). Claremont Consulting...

SENIOR MOBILE NATIVE APPS TEST ANALYST

Key Words: Mobile Testing, Robotium, Eggplant, JIRA...

Senior SQL DBA / SQL Technical Architect

An exciting opportunity for a Senior SQL DBA to technically...

2nd Line Network Engineer

2nd Line Network Engineer, VC, Cisco, Tandberg, Polycom...
To send to more than one email address, simply separate each address with a comma.