I’m analysing #KevDroid samples the new #Android #malware discovered several days ago by #ESTSecurityhttp://blog.alyac.co.kr/1587
-
Show this thread
-
Articles on the same subject by
@PaloAltoNtwks and@TalosSecurity https://researchcenter.paloaltonetworks.com/2018/04/unit42-reaper-groups-updated-mobile-arsenal/ … http://blog.talosintelligence.com/2018/04/fake-av-investigation-unearths-kevdroid.html …1 reply 2 retweets 10 likesShow this thread -
The samples are available on
@koodous_project and@virusbay_io 28c69801929f0472cef346880a295cdf4956023cd3d72a1b6e72238f5b033aca 679d6ad1dd6d1078300e24cf5dbd17efea1141b0a619ff08b6cc8ff94cfbb27e 990d278761f87274a427b348f09475f5da4f924aa80023bf8d2320d981fb32091 reply 2 retweets 12 likesShow this thread -
In the 1st downloader, in the OnCreate method of the MainActivity, they checked if the package called http://com.cool .pu is installed. If not, they display a message prompting the user to update the applicationpic.twitter.com/oFNCjDyCCT
2 replies 0 retweets 9 likesShow this thread -
Replying to @fs0c131y @PaloAltoNtwks and
Hello Sir, Are you Android developer too. Right?
1 reply 0 retweets 0 likes
Yes, I am!
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.