Android Malware "DDSpy" Pretends to be Gmail, Steals Phone Logs
June 7, 2012 10:59 PM
comment(s) - last by
Users will not see an icon for DDSpy -- it simply hides in the Android-powered device's application list and runs silently
New malicious software has been detected on Android devices where a user's personal information is stolen by a fake Gmail program.
, called DDSpy, acts like a Gmail service in Android gadgets. However, users will not see an icon for DDSpy -- it works by hiding in the app list and waiting for commands from a remote server via SMS. These commands include "BOOT_COMPLETED," "SMS_RECEIVED," and "PHONE_STATE."
Once DDSpy is given these commands, the
malware can begin uploading the Android user's
SMS records, call log and vocal records. DDSpy is capable of configuring the uploading email address on the device and figuring out what content to steal. It also records calls when it detects outbound calls and when it's configured by SMS. From there, the recorded files are stored in SDCard/DCIM/.thumbnails/directory.
DDSpy has a default uploading mode coded into it where it sends its collected information to an email address at a certain time each day.
NQ Mobile's Security Research Center, which discovered DDSpy as a threat, is particularly worried about this malware because it uses a GPS-uploading interface "for future development," meaning it could turn into a more malicious version at some point.
NQ Mobile Security offered a few tips as to how to avoid getting DDSpy, such as only downloading apps from trusted sources, never accepting apps from unknown sources and keeping an eye on odd behavior.
NQ Mobile Security
This article is over a month old, voting and posting comments is disabled
...and how do you get it?
6/9/2012 11:18:43 AM
Is this something that a user has to install on their own? Side-loaded? On the Play Store? Is it something auto-loaded by browsing a website?
Total lack of any useful info.
RE: ...and how do you get it?
6/11/2012 12:07:58 AM
Apparently you side load it. The source article mentioned nothing of it being on the play store.
"We basically took a look at this situation and said, this is bullshit." -- Newegg Chief Legal Officer Lee Cheng's take on patent troll Soverain
Apple is Giving Android a Beatdown in Malware Prevention
August 24, 2011, 1:20 PM
Over 260,000 Android Users Infected, Google Fights Back
March 7, 2011, 10:08 AM
Buoyed by Strong iPhone Sales, Apple Reports Revenue of $42.1B, $8.5B in Profit for Fiscal Q4
October 20, 2014, 5:21 PM
Windows 8.1 + Android "Sell Mini PC" w/ Bay Trail Creates New PC Form Factor
October 20, 2014, 5:07 PM
OnePlus to Open Pre-orders on October 27
October 20, 2014, 1:34 PM
Apple Releases iOS 8.1; Adds Apple Pay Support, SMS Relay, Instant Hotspot
October 20, 2014, 1:00 PM
Quick Note: Android Gmail App to Gain Yahoo, Outlook Account Support
October 20, 2014, 9:15 AM
Forbes: Microsoft's Smartwatch to Launch Next Month
October 20, 2014, 8:36 AM
Most Popular Articles
Google Announces Android 5.0 “Lollipop”, Nexus 9 Tablet, and Nexus 6 “Phablet”
October 15, 2014, 12:41 PM
Cool Science Video of the Day: Carnivorous Leech Eats Giant Jungle Worm
October 16, 2014, 6:44 PM
Oops! Apple Outs iPad mini 3, iPad Air 2 via iTunes Store
October 15, 2014, 1:32 PM
HBO, CBS Lead Charge to Ditch Cable
October 16, 2014, 4:40 PM
Google Offers $99 Nexus Player w/$40 Controller for Android Set-Top Streaming, Gaming
October 15, 2014, 3:01 PM
Latest Blog Posts
The Surface Mini That Was Never Released Gets "Hands On" Treatment
Sep 26, 2014, 8:22 AM
ISIS Imposes Ban on Teaching Evolution in Iraq
Sep 17, 2014, 5:22 PM
Space Terrorism is a Looming Threat For the United States
Apr 23, 2014, 7:47 PM
Facebook Aims to Provide Internet to "Every Person in the World" with Drones, Satellites
Apr 1, 2014, 10:20 AM
Retail Mobile Sites Experience Outages in Light of Simplexity's Bankruptcy
Mar 14, 2014, 8:48 AM
More Blog Posts
Copyright 2014 DailyTech LLC. -
Terms, Conditions & Privacy Information