Skip to content

Export page to PDF
ANDROIDOS_FAKEZOMB.A

Overview


Infection Channel: Downloaded from the Internet, Via app stores

This mobile malware presents itself as a fake copy of certain game apps. It displays advertisements. It can also navigate the app store to install other unrelated apps.

Technical Details


File size: 10,404,731 bytes
File type: APK
Memory resident: Yes
Initial samples received date: 17 Jul 2013
Payload: Displays ads, Downloads files

Mobile Malware Routine

Upon installation, it poses as the following application(s):

  • Temple Run 4
  • MineCraft 2013
  • Plants vs. Zombies 2

NOTES:
This adware presents itself as a fake copy of certain game apps, such as:

  • Plants vs. Zombies
  • Temple Run 4
  • MineCraft 2013

Should the user attempt to play the game, he will instead be asked to view advertisements and/or install certain apps.

Accomplishing either does not let the user play his desired game, but rather simply exposes him to more adware and advertisements.

This mobile malware displays advertisements. It can also navigate the app store to install other unrelated apps.

One of the unauthorized apps downloaded presents itself as a System App (SystemUi) and once installed, it conceals its icon while continuing to run in the background and pushing ad notifications.

Solution


Minimum scan engine: 9.300
Trend Micro Mobile Security Pattern Version: 1.519.00
Trend Micro Mobile Security Pattern Release Date: 18 Jul 2013

Step 1

Remove unwanted apps on your Android mobile device

[ Learn more ]

Step 2

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android smartphones and tablets from malicious and Trojanized applications. The App Scanner is free and detects malicious and Trojanized apps as they are downloaded, while SmartSurfing blocks malicious websites using your device's Android browser.

Download and install the Trend Micro Mobile Security App via Google Play.


Did this description help? Tell us how we did.
Analysis By: Veo Zhang

Connect with us on