The SharkBot banking Trojan appears to be back on the Google Play Store, disguised as an application protections from viruses and in cleaning application.
So think before you download such applications to clean your phones or "protect" them from viruses.
Η Fox-It είχε ανακαλύψει αρχικά το SharkBotDropper στο Google Play Store τον Φεβρουάριο του 2022. Το Trojan ήταν ξανά μεταμφιεσμένο σε ψεύτικο antivirus για Android. Τώρα οι ερευνητές ανακάλυψαν μια νέα version of this dropper in the Google Play Store.
The new dropper does not ask for permissions to automatically install the malware Sharkbot, the researchers report.
Instead, this new version of the Trojan asks the victim to install the malware as a fake antivirus update, to stay protected from threats.
Researchers discovered two SharkbotDopper apps on the Google Play Store, installed 10.000 and 50.000 times respectively. The apps in question are: “Mister Phone Cleaner” and “Kylhavy Mobile Security,”
The apps have a total of 60.000 installs by users in the UK, Italy, Spain, Australia, Poland, Germany, the US and Austria.