Necro Trojan Malware Compromises Android Apps, Users Urged to Uninstall

25 Sep 2024

Google's Commitment to Android Security Faces New Challenges

Google's ongoing commitment to enhancing the security of its Android operating system has been a focal point in its efforts to protect users from malicious threats. Despite the robust security measures implemented, a recent discovery has cast a shadow over the safety of certain applications available in the Google Play Store. A newly identified variant of the Necro Trojan malware has reportedly infiltrated several Android apps, raising concerns among users.

Among the affected applications are popular modded versions of well-known platforms such as WhatsApp and Spotify. This revelation serves as a cautionary reminder for users who frequently download modified apps from unofficial sources, urging them to exercise heightened vigilance. Before delving deeper into the specifics of the Necro malware, it is essential to understand its nature and implications.

Kaspersky Says Necro Trojan Malware is Back

First identified by Kaspersky's security researchers in 2019, the Necro Trojan malware has resurfaced, posing a significant threat to Android devices. The malware's modus operandi involves infecting a user's device upon the installation of a compromised application. Once activated, Necro discreetly downloads additional malicious payloads, employing steganography to conceal these payloads within seemingly innocuous messages. This tactic not only generates revenue for the attackers through invisible ad displays but also adversely impacts the device's battery life and overall performance.

Furthermore, the malware can enroll the infected device in subscription services without the user's consent. Notably, the Necro payloads possess the capability to download and execute arbitrary JavaScript and DEX files, amplifying the potential for harm.

In a recent investigation, Kaspersky researchers identified a modded version of Spotify, specifically Spotify Plus (version 18.9.40.5), available on a website deemed hazardous by the security firm. This site falsely claimed that the app was safe and certified, promoting features unavailable in the official Spotify application.

Image credit: Kaspersky

The Malware Also Infected Some Apps from the Google Play Store

In addition to modded applications, Kaspersky's findings revealed that several legitimate Android apps, boasting a combined total of 11 million downloads on the Google Play Store, were also compromised by the Necro Trojan malware. One notable example is the Wuta Camera app, which alone accounted for 10 million downloads. Another affected application, Max Browser, had over 1 million downloads and was identified as infected since the release of version 12.0.

Fortunately, Google has acted swiftly to remove both the Wuta Camera and Max Browser apps from the Play Store. However, users who previously installed these applications are strongly advised to uninstall them immediately. Additionally, a modified version of WhatsApp with the same package name available in the Play Store was found to harbor the Necro loader. Researchers have also detected the presence of Necro malware in various other modded gaming apps, including Minecraft, Stumble Guys, Car Parking Multiplayer, and Melon Sandbox.

The security firm suggests that the actual number of infected devices may far exceed current estimates, particularly as tech-savvy users often download modded applications from unverified sources, complicating tracking efforts. The Necro attack has predominantly impacted Android users in regions such as Russia, Brazil, and Vietnam. Users are encouraged to review the list of affected apps and their versions to ensure prompt removal and safeguard their devices against this persistent threat.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
5602682
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
998653
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
438821
downloads
Geometry Dash

Geometry Dash

Latest update Geometry Dash download for free for Windows PC or Android mobile

4
539 reviews
366009
downloads

News and reviews for Mobile Android

HereWeGo: A Privacy-Focused Alternative to Google Maps

HereWeGo offers a clean, ad-free mapping experience with features similar to Google Maps, prioritizing user privacy online and offline.

Read more

Password Manager Launched as Standalone App on Play Store

Google releases Password Manager as a standalone app, enabling easy access and management of passwords without relying on Chrome, despite some integration challenges with other browsers.

Read more

Shinkansen Tickets Now Available On Line App For Easy Access

Starting October 4, JR Central, JR West, and JR Kyushu will allow Shinkansen tickets to be purchased using the Line app, enhancing convenience and offering a discount.

Read more

Developer Verification to Be Mandatory for Android Apps by 2026

Google's 2026 developer verification policy requires app developers to verify identities. This aims to enhance security across Android, affecting both official and sideloading methods.

Read more

Samsung Introduces Bubble Emoji for Personalized Messaging

Samsung's Bubble Emoji feature adds a personal touch to texts, automatically assigning emojis based on message context. Now available in South Korea.

Read more

Elijah Wood Highlights Passion for Game Ventures

Elijah Wood shares his gaming favorites, from LucasArts classics to modern indie gems. The actor delves into his voice acting roles and involvement in upcoming projects, illustrating his deep connection with the gaming world.

Read more

Exclusive Deals on Android Apps and Google Pixel Devices

Discover the latest deals on Android apps and Google Pixel pre-orders, featuring cash discounts and significant savings on popular games and productivity tools.

Read more

Android Deals Lead to Big Savings on Apps and Devices

Discover incredible Android deals on apps, games, and Google Pixel devices. Don't miss out on these top discounts to boost productivity and enjoyment at unbeatable prices.

Read more

Uber to Pioneer Live Notifications in Samsung's One UI 8

Uber looks to integrate dynamic alerts with Samsung's One UI 8, aligning with Google’s Live Updates API on Android 16 devices to enhance real-time user experience.

Read more

Russia Mandates Pre-Installation of Max App on All Devices

From September, Russia requires all smartphones, tablets, and computers to come with Max pre-installed. The app supports text, voice, and video features integrating with government services. Restrictions on WhatsApp and Telegram align with this move amid privacy concerns and technical issues.

Read more