Wednesday, July 31, 2013

Published 8:53 AM by

New Android-malware is stealing money in a new way

New Android-malware is stealing money in a new way

      Today it is no surprise in this way steal money from owners of Android-smartphone as sending short messages to premium numbers. Many users are well informed about these threats and are used to keep track of your mobile account. However, those "Kaspersky Lab" have discovered a fundamentally new scheme of mobile malware, which allows hackers to quickly and quietly steal from unsuspecting victims of a significant amount of money. feature of the current scheme of SMS-Trojan that sends messages to premium numbers is the fact that by monetizing the stolen money, much of the money goes "intermediaries" are often nothing to suspect that your service provider, content provider and the organizers of the affiliate program.

     Therefore, most malware tries to send the right message to 2-3 expensive weighty amount, for example, 1000 rubles, which attracts the attention of the victim. In such a situation, the emergence of new ways of obtaining money from the population was only a matter of time. experts in July "Kaspersky Lab" found a Trojan whose purpose was to carry out the instructions received from the remote command server. This is a typical behavior for malicious programs such class, however, further investigation revealed that a new SMS-malware provided its owners the opportunity to steal your money with no mobile, and c is the bank account of the victim.

     This Trojan is dependent and by communicating with the management server only transmits commands attacker , sending the result back. Specialists "Kaspersky Lab" managed to intercept some incoming commands. In the course of one of these Trojan sent SMS with the word «BALANCE» to the number of service "Mobile Bank" Sberbank of Russia.

     After receiving a response from the bank with information about the connected account and the balance sheet, the malware transferred it to criminals. Such behavior Trojan suggests that the next step is to translate any of the available "Mobile Bank" amounts to a mobile number intruders. Next, the stolen money can be used or cashed. For example, the big three mobile operators can transfer the money from the mobile account on QIWI purse, from which they can subsequently lead to a bank card and cash. And to sacrifice as long as possible in the dark, the Trojan carefully covering his tracks its activities by intercepting SMS and calls from the bank.
      edit