April 29, 2024

App Store 'Find and Call' App Identified as Trojan

Posted July 5, 2012 at 5:53pm by iClarified · 16443 views
Kaspersky researchers have identified an app called 'Find and Call' as a trojan that uploads your phonebook and spams your contacts.

Yesterday we were contacted by our partner MegaFon, one of the major mobile carriers in Russia. They notified us about a suspicious application, which was found in both the Apple App Store and Google Play. At first glance, this seemed to be an SMS worm spread via sending short messages to all contacts stored in the phone book with the URL to itself.

However, our analysis of the iOS and Android versions of the same application showed that it's not an SMS worm but a Trojan that uploads a user's phonebook to remote server. The 'replication' part is done by the server - SMS spam messages with the URL to the application are being sent from the remote server to all the contacts in the user's address book.


Kaspersky says that this is the first case of malware they've seen in the Apple App Store. They've contacted both Apple and Google on the matter.

Read More [via Shihuy]