New Delhi: Kaspersky Lab found another app which has a malicious module which either pushes ads or downloads apps secretly.
Researchers of the lab found it after users gave negative reviews about CamScanner, a document scanning app.
The lab cleared that the app has no malicious intension and the app displays ads for monetization and provide a facility for in-app purchases. However, the present version of the app contains a malicious module.
How this malicious module harms device
It is Trojan dropper which runs another module present in the app.
The lab found that when the app runs, the malicious code contained in ‘mutter.zip’ gets executed and then downloads code from ‘https://abc.abcdserver[.]com’.
Once everything is done, the owner of the malicious module can steel from infected mobile phone.
Module removed in the latest version of app
Google removed ‘CamScanner-Phone PDF Creator’ from play store after the lab disclosed the details. However, the researchers found that the developers of the app have removed the module in the latest version of the app.