Symantec 在 Android Market 發現三個開發商旗下的 Apps 都藏有 Android.Counterclank惡意程式。這個 Android.CounterClank 可接收指令並在手機內運行,另外亦可盜取手機內的資料。
Symantec has identified multiple publisher IDs on the Android Market that are being used to push outAndroid.Counterclank. This is a minor modification of Android.Tonclank, a bot-like threat that can receive commands to carry out certain actions, as well as steal information from the device
當這些惡意程式運行時,就會有一個名為 “apperhand” 的程序在機內運行。另外,受影響的手機亦會有一個搜尋圖示被自動加在 Home 畫面,若利用這不明圖示進行搜尋,會被帶至一個可疑網頁。
根據 Symantec 的資料,估計曾安裝這十多個問題 Apps 的用戶多達百萬人。
下面為有可疑的 Apps,大家要核對有否安裝。附有 * 號的,仍可在 Android Market 找到,大家要小心。
開發商 | 可疑 Apps | 分類 |
iApps7 Inc | CounterStrike Hit Enemy* | Arcade & Action |
iApps7 Inc | Heart Live Wallpaper* | Entertainment |
iApps7 Inc | Hit Counter Terrorist* | Arcade & Action |
iApps7 Inc | Stripper Touch girl | Entertainment |
iApps7 Inc | Counter Elite Force | Arcade & Action |
iApps7 Inc | Counter Strike Ground Force | Arcade & Action |
Ogre Games | 小兔子射氣球 Balloon Game* | Sports Games |
Ogre Games | 百萬富翁 Deal & Be Millionaire* | Sports Games |
Ogre Games | 野人 Wild Man* | Arcade & Action |
redmicapps | 漂亮女人內衣拼圖 Pretty women lingerie puzzle* | Photography |
redmicapps | 拼圖性感的女孩 Sexy Girls Puzzle* | Brain & Puzzle |
redmicapps | Sexy Girls Photo Game | Lifestyle |
redmicapps | Sexy Women Puzzle | Brain & Puzzle |
以下是三個可疑開發商在 Android Market 的連結
iApps7 Inc
https://market.android.com/developer?pub=iApps7+Inc
Ogre Games
https://market.android.com/developer?pub=Ogre+Game
redmicapps
https://market.android.com/developer?pub=redmicapps
資料來源:Symantec