Post Now
Image

In capsule:

  • Researchers from McAfee has discovered a ransomware in Android Apps.
  • It claims to have the unauthorized backup of your phone’s sensitive information.
  • It does not encrypt user’s files, but locks down the device and demands a ransom.
  • The apps are Wallpapers Blur HD and Booster &Cleaner Pro.
  • These have been removed from the Play Store now, and users are advised to check your phone and remove these apps.
An Android ransomware Dubbed LeakerLocker was found on Google Play Store by Researchers. It doesn’t use encryption for locking down the user files, but demands money so that your data is not leaked online. identity-and-privacy-leak LeakerLocker ransomware is exposed to android smartphones through two apps in google play store, namely Wallpapers Blur HD and Booster & Cleaner Pro. The first app was downloaded between 5000-1000 times and second was downloaded between 1000-5000 times while both these apps were rated as 3.6 and 4.5 in google play store Both apps hide malicious payload inside it even though these apps function normal and seem useful. When executed, Booster & Cleaner Pro it acted like a normal android booster app. As it is a cleaner app,  the Android user agrees to grant almost any permission to access mobile data. After the boot, the malicious activity is initiated in your phone. After the boot is complete, the receiver com.robocleansoft.boostvsclean.receivers.BoorReceiver initiates AlarmManager and which along with other conditions starts the malicious activitycom.robocleansoft.boostvsclean.AdActivity and locks the device. According to Mcafee researchers, when the victim enters the credit card details and hits pay, the malicious code sends a request to the payment URL. If the payment is success, the message is displayed “our [sic] personal data has been deleted from our servers, and your privacy is secured.” If the payment is not successful, it shows “No payment has been made yet. Your privacy is in danger.” Mcafee has already informed about infected apps, and they were removed from the Play Store immediately. Users are advisers to check your phone and try not to download unnecessary apps and use a reliable antivirus to scan your device.