Android pulls two dozen virus-infected apps from the Market, over 30,000 users affected

Android pulls two dozen virus-infected apps from the Market, over 30,000 users affected
Is Android becoming a virus haven? More and more malware-infected applications appear on the Market raising this question once again after Google removed 58 apps containing viruses in March. Just over the last weekend the company pulled an additional two dozen of them in an attempt to clear its application storefront. Mobile security company Lookout estimates the number of affected users between 30,000 and 120,000.

"This weekend, multiple applications available in the official Android Market were found to contain malware that can compromise a significant amount of personal data. Likely created by the same developers who brought DroidDream to market back in March, more than 25 applications were found to be infected with a stripped down version of DroidDream we're calling 'Droid Dream Light' (DDLight)," the company commented.

A developer tipped Lookout to put them in the know about modified versions of his applications being distributed on the Android Market.

The list of virus-infected applications as presented by Lookout follows below:   
Developer: Magic Photo Studio

  1. Sexy Girls: Hot Japanese
  2. Sexy Legs
  3. HOT Girls 4
  4. Beauty Breasts
  5. Sex Sound
  6. Sex Sound: Japanese
  7. HOT Girls 1
  8. HOT Girls 2
  9. HOT Girls 3

Developer: Mango Studio

  1. Floating Image Free
  2. System Monitor
  3. Super StopWatch and Timer
  4. System Info Manager
Developer: BeeGoo

  1. Quick Photo Grid
  2. Delete Contacts
  3. Quick Uninstaller
  4. Contact Master
  5. Brightness Settings
  6. Volume Manager
  7. Super Photo Enhance
  8. Super Color Flashlight
  9. Paint Master

Developer: DroidPlus

  1. Quick Cleaner
  2. Super App Manager
  3. Quick SMS Backup
Developer: E.T. Team
  1. Call End Vibrate

Developer: GluMobi

  1. Tetris
  2. Bubble Buster Free
  3. Quick History Eraser
  4. Super Compass and Leveler
  5. Go FallDown !
  6. Solitaire Free
  7. Scientific Calculator
  8. TenDrip
The security company says that the listed application don’t require a manual launch for the virus to become active as it’s invoked on every phone action like a regular voice call. "The broadcast receiver immediately launches the .lightdd.CoreService which contacts remote servers and supplies the IMEI, IMSI, Model, SDK Version and information about installed packages,” the company detailed the security risks. "It appears that the DDLight is also capable of downloading and prompting installation of new packages, though unlike its predecessors it is not capable of doing so without user intervention."

It’s hard to protect yourself from malware on a mobile platform partly because virus-protection is not as wide-spread as on a regular PC, but there are a couple of steps which could help. Downloading apps from trusted sources, checking permissions required by the app, monitoring your phone for abnormal behavior and finally getting an app that would check your downloads for security are some of them.

source: Lookout, McAfee

Recommended Stories

Loading Comments...
FCC OKs Cingular\'s purchase of AT&T Wireless