Tuesday, September 20, 2011

Beware, your android targeted "Trojan HongTouTou!"




The leading telecommunications equipment companies are flocking to Android with their products. However, you must be vigilant, because now it is reported, the orientation of their lists of Troy Android! 

This is not the first time, back in action, also known as Trojan HongTouTou SARD now repackaged and injected into popular applications and the Android application is distributed in the App Store and forums, particularly in the community speaking Mandarin users. 

Tim reports Strazzera Lookout Mobile Security, this malware in the request for additional user licenses for Android and hidden executions carried out directly on the run without your knowledge. Including mimic a search or click on something. 

"If you open programs that were infected by trojans HongTouTou started, this application sends the encrypted data with the IMEI and IMSI information from your phone to the remote machine. On the other hand HongTouTou receive a response to a search and the at a specific URL to imitate the search terms and send it as a question. "Strazzera said. 

"HongTouTou and then did a search with the keyword and then shows as if the search results and keyword-based and automatically clicks on the link. For the search engine seems to search to made by the owners phone through a Web browser as UCWEBUser-Agent ". 

Not only that, the Trojans are also able to execute a command to download the APK file (File Android package). 

"Although we have not seen this trojan is installed GER, but GER is apparently used to monitor the content of SMS and add content Related content on SMS spam." 

Currently HongTouTou Trojans broke into the application market in China. Normally, if you want to install third party applications, Android is the owner will be notified to allow the installation of the "unknown sources". 

"Today HongTouTou 14 applications for Android has infected as RoboDefense one. This application has been packaged and injected a Trojan for the original version that was not infected would be better if it fired directly into the Google Android Market". 

If you download directly from trusted sources, such as a leader in the App Store, reduces the risk of a trojan. Or if you still want to try the application from, you should check again that publishernya, comments from users of this application, classification, and functions. If you suspect it might have been attacked by a trojan application.

0 comments:

Post a Comment

Popular Posts