Discover a new kind of malicious code that can record the phone call to extort money
Researchers discovered a new malware that appeared on Android in 53 applications on third-party stores including computational applications, photo editors, and disk management tools. It has the ability to steal data, record conversations and background noise to blackmail victims.
This malware - dubbed RedDrop. When the application is infected, malicious code will be granted to allow it to run even if the device restarts. Meanwhile, 7 malicious applications are different from spy functions, extracting data will also be downloaded more. Once a user starts using a malicious application, a SMS message is sent to a paid service to use the victim's money without being detected.
RedDrop steals data types such as photos, IMEI and IMSI numbers, SIM card information, contact lists, nearby WiFi networks and recordings of sounds around the infected device and sends it to the Dropbox folder and developer Google Drive. He will use these data to extort money.
Researchers have discovered the malware for the first time on a Chinese server to entice victims to visit a domain containing sensitive content. But it is still unclear who is behind its development and distribution because he used more than 4,000 compromised domains to spread malicious applications.
Below is the screen shot shared by Wandera explaining the campaign using sensitive content to target victims.
The process used by hackers to spread malicious code.(Photo: According to Wandera).
RedDrop is one of the most sophisticated Android malware that researchers have ever seen spread widely. Therefore, in order to protect safety and avoid the risk of malicious code, Android users should download the application from Google Play Store or only from trusted websites.
See more:
- Detects two serious vulnerabilities on uTorrent that can help hackers execute malicious code or view download history on your computer
- Warning: A new code of virtual money training is spreading strongly in Vietnam
- Summary of effective Anti-Ransomware software
- Veil: anonymous browser deletes all traces, safer than Tor
- These are all the data about you that the websites you visit collect
You should read it
- 10 million Android devices are preinstalled with malicious code from the factory
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messenger
- Android apps contain malicious code that uses motion sensors to avoid detection
- Warning: Dangerous new malicious code spills over to Vietnam
- Threats and risks from malware on USB Flash
- After WannaCry, Petya's 'extortion' malicious code is raging, this is a remedy to prevent
- Detecting new malicious code capable of 'evading' most anti-virus software
- Researchers create malware based on artificial intelligence
May be interested
- Warning: a new variant of the virus that fills virtual money via Facebook Messenger will appear every 10 minutessecurity experts recommend users need to be more careful because every 10 minutes, a new variant of the virtual money digging virus appears on facebook messenger.
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messengerfrom yesterday (december 18, 2017), a new type of malicious code has appeared and raged in vietnam. this malicious code is not too sophisticated but is spreading very fast through facebook messenger because it is sent from the friends in the friend list.
- Smartphone can also be exploited by hackers to dig virtual money illegallyin recent years, experts have discovered that smart phones can also be used as an advantage to bad guys to exploit illegal virtual money.
- VNCERT issued an emergency alert warning malicious code exploiting Coinhive virtual moneythe malicious code will automatically run on the user's computer as an extension or directly in the browser to 'dig' bitcoin virtual money, monero ..., illegally use cpu, hard drive, memory ... and send it about hackers' electronic wallets.
- Call recording Android with Call Recorder - ACRcall recorder - acr is a free call recorder application on android, many options: record incoming calls with any phone number, arrange call recording by date, ... this is the way to record the call. call with call recorder - acr for you.
- What to do when the computer is infected with a virus that fights virtual money?experts from trend micro recommend users to update the latest operating system patches immediately, as well as upgrade trend micro security version 12 and set up high-level protection.
- Effective call recording applications on smartphonesrecord phone calls, listen to calls again, iphone 6 / 6s call record, iphone 7, android, samsung with these voice call recording apps you will feel satisfied.
- Discovered a group of hackers who use secret code to spy on 21 countriesa group of secret hackers specialized in using android malicious code and other sophisticated reconnaissance tools to steal messages, call history, documents of the press, military, corporation and many other targets at 21 newly discovered country in beirut.
- 10 million Android devices are preinstalled with malicious code from the factorybad guys have compromised with the manufacturer to install malicious code on the device.
- Ham hacked the game, the boy made the computer infected with virtual money and ruined itthe boy entered the middle school last year and was given a laptop by his mother to serve his studies. it is an old hp elitebook 8470p with core i5-3320m chip, 8gb of ram, 128gb ssd, quite stable configuration to perform office and study tasks.