
- #Realplayer virus install#
- #Realplayer virus update#
- #Realplayer virus android#
- #Realplayer virus download#
This is a work in progress, so sometimes we might define the word incorrectly, so feel free to skip this section! McAfee Mobile Security detects these malicious apps as Android/PhimSms.A and Android/PhimSmsDropper.A.Here we list some definitions for the words contained in your error, in an attempt to help you understand your problem.

We should be wary of social engineering techniques to drop malware, even the process is initiated by apps on Google Play. Users need to be very careful about installing apps, especially when they request more permissions than their expected features warrant. Installing this malware and others distributed from outside Google Play can be easily blocked if users disable the “installation of apps from unknown sources” option in the device settings. However, the Trojan could be updated to a more malicious version at the server’s request. So it just makes users take extra steps to disable it when uninstalling. The app does nothing special as a DeviceAdmin for now because the current implementation is empty.

Finally it removes its app icon from home screen to make it invisible to the user.įigure 4: The confirmation dialog to activate the fake app as a DeviceAdmin. It tries to persuade users by saying “Your boss told you to do this,” although that doesn’t really sound very persuasive. It requests users to activate it as a DeviceAdmin app.

The downloaded app also requests excessive permissions, including SMS-related ones.
#Realplayer virus update#
The malware downloads RealPlayer.apk if the user accepts.įigure.2: The dialog to trick users into downloading and installing a fake RealPlayer.Īfter installation, the user is prompted to accept the first app’s update because the downloaded app also has the same package name as the one that initiated the download.įigure.3: The confirmation dialog to update the original app with the downloaded one.
#Realplayer virus download#
Just after launch, they show a dialog offering to download the latest RealPlayer app for viewing adult movies in HD resolution. These apps look like adult-content viewers, yet at installation they request excessive permissions that are unnecessary for this kind of viewer app.
#Realplayer virus install#
The malware comes from a remote server and persuades careless users to install and activate it as a DeviceAdmin app.įigure.1: Malicious apps on Google Play that download an SMS Trojan. McAfee has found on Google Play two adult-oriented apps in Vietnamese that download a malicious SMS Trojan app impersonating RealPlayer. Nonetheless, we have recently seen SMS Trojans on Google Play.

#Realplayer virus android#
Such SMS-based malware apps are actively distributed via unofficial or malicious app stores, but it is rare to find them on Google Play, the world’s largest official Android app store. These include premium SMS fraud and SMS spying. Malware related to short message services occupies a large portion of today’s Android malware families.
