Malware Trojan Found in Google Play Apps, Affecting Over 11 Million Devices

24 Sep 2024

In a concerning development for Android users, recent findings reveal the presence of a malware Trojan, known as the Necro Trojan, embedded within two applications on the Google Play Store. This malicious software has reportedly compromised over 11 million devices, and the actual number of affected users could be significantly higher due to its distribution through unofficial channels.

Modified Apps

Researchers at Kaspersky have traced the origins of the Necro Trojan to two primary sources. Firstly, it has infiltrated legitimate applications available on the Play Store. Secondly, it has been found in modified versions of popular apps, such as custom iterations of Spotify and Minecraft, which users often download from unofficial sources, a practice known as sideloading.

Kaspersky’s investigation began with a modified version of Spotify called Spotify Plus, which falsely advertised itself as providing Spotify Premium features at no cost. Despite its claims of being “Security Verified,” Kaspersky’s analysis debunked these assertions, revealing that the app serves as a conduit for the Trojan to infect devices. The researchers also identified the Trojan in altered versions of WhatsApp, specifically “GBWhatsApp” and “FMWhatsApp.”

Moreover, the Necro Trojan has been detected in various game modifications, including those for Minecraft, Stumble Guys, Car Parking Multiplayer, and Melon Sandbox. Kaspersky emphasizes the challenge in estimating the total number of victims stemming from these unofficial sources, as the focus remains on the download counts from the affected apps on the Play Store.

Play Store Apps

Among the apps identified on the Play Store, the Wuta Camera app stands out, having been downloaded over 10 million times. Initially, this app was not malicious; however, the Trojan made its debut in version 6.3.2.148. Fortunately, this version has since been removed, rendering the app safe for download once again.

Additionally, the Max Browser app was found to contain the Trojan, with over one million downloads. The first version to harbor the malware was 1.2.0, and following Kaspersky’s report, Google has since removed Max Browser from its app store entirely.

What Necro Does

Once installed, the Necro malware can execute a range of harmful functions. According to BleepingComputer, its payloads can activate malicious plugins that run adware, open links in invisible windows, execute various scripts, initiate fraudulent subscriptions, and route malicious traffic through the infected device.

Essentially, whether through an unofficial app download or a compromised official app like Max Browser or Wuta Camera, users inadvertently contribute to the attackers’ profits by engaging with advertisements and running fraudulent subscriptions in the background.

How to Protect Your Device

To safeguard your Android device, it is crucial to conduct a thorough scan for any of the aforementioned Play Store apps. If you have the Wuta Camera app, ensure that you update it immediately or remove it from your device. For those with Max Browser, it is advisable to delete the app entirely, as there are no safe versions available.

Furthermore, if you possess any of the modified apps mentioned earlier, it is prudent to delete them from your smartphone. Moving forward, exercise caution with unofficial downloads. While sideloading can expand your app options, it also increases the risk of inadvertently downloading malicious software due to the lack of stringent checks and regulations.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
5613118
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1001268
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
439075
downloads
Geometry Dash

Geometry Dash

Latest update Geometry Dash download for free for Windows PC or Android mobile

4
539 reviews
366512
downloads

News and reviews for Mobile Android

PDF Scanners: Exploring Alternatives to Microsoft Lens

With Microsoft retiring Lens, discover alternative PDF scanners for Android, each offering unique features like OCR, automatic scanning, and cloud integration.

Read more

KaijuNo8 Game Launches Globally on Mobile Platforms

KaijuNo8, a new turn-based RPG, goes live worldwide on iOS and Android. Developed by Akatsuki Games, the game features three story modes and renowned anime characters. Pre-registrations exceeded 1.1 million, offering extensive rewards to players.

Read more

Resolving Common Gmail Issues on Android Devices

Users may face Gmail issues like sync errors and connection problems on Android. Solutions include checking connections, updating the app, and adjusting settings.

Read more

Google's New Identity Policy Impacts Android Developers

Google's new Android policy requires developer identity verification, sparking debate over cybersecurity and user freedom amid malware concerns.

Read more

HereWeGo: A Privacy-Focused Alternative to Google Maps

HereWeGo offers a clean, ad-free mapping experience with features similar to Google Maps, prioritizing user privacy online and offline.

Read more

Password Manager Launched as Standalone App on Play Store

Google releases Password Manager as a standalone app, enabling easy access and management of passwords without relying on Chrome, despite some integration challenges with other browsers.

Read more

Shinkansen Tickets Now Available On Line App For Easy Access

Starting October 4, JR Central, JR West, and JR Kyushu will allow Shinkansen tickets to be purchased using the Line app, enhancing convenience and offering a discount.

Read more

Developer Verification to Be Mandatory for Android Apps by 2026

Google's 2026 developer verification policy requires app developers to verify identities. This aims to enhance security across Android, affecting both official and sideloading methods.

Read more

Samsung Introduces Bubble Emoji for Personalized Messaging

Samsung's Bubble Emoji feature adds a personal touch to texts, automatically assigning emojis based on message context. Now available in South Korea.

Read more

Elijah Wood Highlights Passion for Game Ventures

Elijah Wood shares his gaming favorites, from LucasArts classics to modern indie gems. The actor delves into his voice acting roles and involvement in upcoming projects, illustrating his deep connection with the gaming world.

Read more