Detect date
09/29/2015
Class
Trojan-SMS
Platform
AndroidOS

Parent class: TrojWare

Trojans are malicious programs that perform actions which are not authorized by the user: they delete, block, modify or copy data, and they disrupt the performance of computers or computer networks. Unlike viruses and worms, the threats that fall into this category are unable to make copies of themselves or self-replicate. Trojans are classified according to the type of action they perform on an infected computer.

Class: Trojan-SMS

Programs of this type are used to send text messages from infected mobile devices to premium rate numbers that are hard code into the Trojan’s body.

Read more

Platform: AndroidOS

Android is an open-source operating system developed by Google for mobile devices, such as tablets, smartphones, and watches. Based on a Linux kernel and the Dalvik virtual machine (older versions) / Android Runtime environment (newer versions).

Description

These malicious programs send SMS messages to premium-rate short numbers without the user's knowledge. The program configuration is stored in an encrypted JavaScript script. Notably, this malware family is widespread not only in the CIS countries (where most malware of this type is concentrated), but in other countries as well. Malicious programs of this family support a large number of premium-rate numbers in many countries.

Top 10 countries with most attacked users (% of total attacks)

1
Russia
85.88%
2
Kazakhstan
4.59%
3
Ukraine
3.34%
4
Belarus
1.55%
5
Uzbekistan
0.80%
6
Azerbaijan
0.63%
7
Kyrgyzstan
0.43%
8
Tajikistan
0.38%
9
Germany
0.35%
10
Moldova
0.19%

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.