Google vs Chamois: end to the largest family of malware for Android

Google has announced that it has managed to remove a huge family of malicious Android applications called Chamois. According to the company, these applications may have contaminated millions of devices.

Chamois malware, named after an egg-tree, seems to be an attempt to massively infect Android devices for advertising. In the past, Hummingbad malware had infected about 10 million devices, and attackers were earning around 300.000 dollars a month.Google vs. Chamois

“We discovered Chamois during a routine assessment of ad traffic quality. We analyzed the malicious applications that used Chamois and found that different methods are used to avoid detection and to trick displaying misleading graphics. This sometimes resulted in other apps being downloaded or fake SMS being sent.”

"That's why we blocked the Chamois family of apps using app verification and blocked agents trying to play with our ad system," the Google post said.

According to the company, Chamosis was one of the biggest malware apps that the Android platform has seen so far, and was distributed through multiple channels.

The Chamois family of applications could evade detection with obfuscation and anti-analysis techniques. In addition, the applications used, custom to save files for their configuration files, and additional code that required deeper analysis to see if it was hiding anything dangerous.

Google says it looked at more than 100.000 lines of advanced code to understand the Chamοis.

The company did not reveal any of the infected apps.

More information

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).