Android users are faced with a new threat spreading via WhatsApp. ESET Researcher Lukas Stefanko warned users to be wary of messages circulating on WhatsApp and other major messaging platforms suggesting a new WhatsApp color theme.
Android users are faced with a new threat spreading via WhatsApp.
ESET Researcher Lukas Stefanko warned users to be wary of messages circulating on WhatsApp and other major messaging platforms suggesting a new WhatsApp color theme.
Sends automatic replies
ESET Researcher Lukas Stefanko warned users by analyzing the malware spread by a fake Whatsapp update. Claiming to be an official update for the platform, the “WhatsApp Pink” theme actually sends automatic replies to messages on WhatsApp and other major chat apps.
A new version of the malware that appeared in January says “WhatsApp Pink is an updated version of the WhatsApp auto-reply worm that was uncovered in January. The updated version of the Trojan is not only sent to WhatsApp messages, but also to messages received in other instant messaging applications. This may be the reason for its significantly wider spread.The Trojan horse is an automatic response to messages received in applications such as WhatsApp, WhatsApp Business, Signal, Skype, Viber, Telegram and one of several unofficial, third-party versions of WhatsApp. It responds with a link to the website. “
It could be the beginning of the bad
The new version detected by ESET products as Android / Spams.V does not do much. However, Stefanko cautioned that this may just be a “test version” and that we can expect a more malicious variant in the future. Also, the website can be used to host various types of malware in the future.
According to Stefanko, in order to download and install the malicious application, users are not prompted to allow applications to be installed from outside of the official Google Play store and therefore disable the key and default-enabled security measure on Android devices. However, the malware is asking for permission to access the user’s notifications.
When the installation is complete and the user clicks on “WhatsApp Pink”, the application disguises itself claiming that it was never installed. The victim will then receive a message that it will unwittingly cause it to spread further, that it will have to reply.
What should those who download Pink WhatsApp do?
If you downloaded WhatsApp Pink, you can uninstall it via the Settings and Application Manager submenu or install a full-featured Android security solution that will scan your device and remove it automatically. The measures that can be taken in order not to be fooled by this and similar frauds in the future can be listed as follows.
Never click on links or attachments you receive from someone you do not know with an unsolicited message.
-Download apps only from official app stores as they have strict approval processes.
Always use a reputable mobile security solution.
Be careful of what kind of permissions you give to apps.
Source: Space Mag Turkey