iYogi
Phone Only Special Call 1-877-854-6889 to Save More Today.
Antivirus
Chat Now
Your search for information on Antivirus ends here:
  • Start a chat with our Tech Experts on Antivirus and get instant answers, help, and expert advice related to Antivirus. Chat Now
  • Experience Great Tech Support for your computer & all popular antivirus / antispyware applications.
  • If you're in the mood for some D-I-Y troubleshooting, navigate this site and you'll find some very helpful videos and solutions.
  • Call: 1-877-854-6889
Want to resolve Antivirus issues?
CHAT NOW WITH iYOGI TECH EXPERTS
Get started
IYOGI IS AN INDEPENDENT SERVICE PROVIDER OF REMOTE TECH SUPPORT FOR THIRD PARTY PRODUCTS. ANY USE OF THIRD PARTY TRADEMARKS, BRAND NAMES, PRODUCTS AND SERVICES IS ONLY REFERENTIAL AND IYOGI HEREBY DISCLAIMS ANY SPONSORSHIP, AFFILIATION OR ENDORSEMENT OF OR BY ANY SUCH THIRD PARTY. IYOGI RECOMMENDS READING THE FULL DISCLAIMER.

Android™ malware that uses blog platform detected

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
 Need professional help? Call 1 877 854 6889

Unscrupulous elements are increasingly targeting Android users, and the latest malware application to have been detected uses the blog platform to communicate with cyber criminals.

Trend Micro Inc. has unearthed a new Android malware that uses a blog in China as a C&C (Command and Control) system. Researchers at Trend Micro, the Japan-based leading computer security firm, have claimed that they have detected a unique, first-of-its-kind malware that uses encrypted content on a blog site to communicate with cyber criminals. Writing for the Trend Micro malware blog, Karl Dominguez, a threat response engineer, noted, “Malware targeting the Android platform are continuously improving in performance as well as using new techniques to thwart analysis and to avoid detection.”

Apparently, this new malware, detected by Trend Micro as ANDROIDOS_ANSERVER.A, assumes the form of an e-book reader app and tricks the user into downloading it from a third-party app store located in China.

Once installed, this malware app requests for a few permissions. When these permissions are granted by the user, they could be used by the malware to carry out the following tasks:

• Access network settings.
• Access the Internet.
• Control the vibrate alert.
• Disable key locks.
• Make a call.
• Read low-level log files.
• Read and write contact details.
• Restart apps.
• Wake the device.
• Write, read, receive, and send SMS.

Karl also revealed how the malware works, “From our analysis, we found that this malware has two hardcoded C&C servers to which it connects in order to receive commands and to deliver payloads. The first server is just like the usual remote site to which the malware posts information to and gets commands from. The second C&C server, however, caught our attention more. This is a blog site with encrypted content, which based on our research, is the first time Android malware implemented this kind of technique to communicate.”


Call now 1 877 854 6889 for instant access to Tech Experts