News: Russian-Made Adware 'Ewind' Can Give Hackers Control Over Your Android Device

News: Russian-Made Adware 'Ewind' Can Give Hackers Control Over Your Android Device
Download a popular, legit app from the Google Play Store. Decompile it. Add malicious code. Repackage the app. Distribute the now trojan-ized app through third-party Android app sites. This is how advertising malware Ewind, what Palo Alto Networks calls "adware in applications' clothing," infects Android users.Researchers Yaron Samuel and Simon Conant at Palo Alto Networks have noticed multiple samples of the adware since 2016. Most recently, Ewind has been targeting the apps GTA Vice City, AVG cleaner, Minecraft Pocket Edition, Avast! Ransomware Removal, VKontakte, and Opera Mobile.Ewind is specifically injecting "adware monetization through displaying advertising on the victim's device," according to the researchers, but Ewind can also collect user's data, forward text messages to itself, and could potentially allow "full remote access to the infected device."The researchers believe the adware-infected applications, the sites where the apps are available to download, the promoted advertising that Ewind injects, and the attacker "are all Russian."Don't Miss: The Sensors in Your Phone Are Giving Hackers Your Passwords & Other Secret InformationUltimately, if an Android device becomes infected with Ewind, it can be instructed by the cyber criminal, noted below as "C2," to carry out almost any command:Ewind can be instructed using the 'smsFilters' command to forward to the C2 any SMS messages meeting a certain filter criteria. The filter includes matching a phone number or message text. If a message is received from a matching phone number or with matching text, Ewind sends the C2 a request with the event 'receive.sms', including the full SMS text and sending phone number. If both a phone number and text filter match, Ewind informs the C2 with event 'sms.filter'.
— Palo Alto NetworksThe researchers go on to suggest that the adware's ability to steal messages is likely being used to circumvent two-factor authentication by SMS, allowing full access to a user's current messages, contacts, and message history.Initially, the adware was observed by AutoFocus, a threat intelligence and security service. The researchers found a number of repackaged APKs that were all signed with the same unique certificate.Don't Miss: Project Zero Finds iPhone & Android Open to Bugs in Broadcom's Wi-Fi ChipsThe team went on to identify the suspicious certificate and found that many of the APKs "included the application name of Anti-Virus and other well-known applications."We have here an actor not only developing malware for monetization, but responsible for a network of Android App Store infrastructure which has over the years been used to serve tens of thousands of Android downloads in support of his advertising-supported monetization schemes.
— Palo Alto NetworksAdware is a constant threat for Android users. In 2015, Lookout discovered adware hiding in over 20,000 apps, including Facebook, Twitter, WhatsApp, and Snapchat. The apps were not downloaded from the Google Play Store, but from third-party Android app sites where the popular apps were repackaged with adware and then redistributed.The adware rooted users' smartphones after being installed, and then added itself as a system application. Users were not able to delete it, even after factory resetting their whole device.Palo Alto Networks concludes that Ewind currently lives at some apps available on mobincome.org and androwr.ru, and to consider these sites as "low-reputation." It's always a good idea to take caution when downloading apps through third-party sites. Google also recommends using Verify Apps to check if any of your apps are infected with malware.Don't Miss: What You Should Know About the New Chrysaor Malware Found on Android DevicesFollow Gadget Hacks on Facebook, Twitter, Google+, and YouTube Follow Android Hacks on Facebook, Twitter, and Pinterest Follow WonderHowTo on Facebook, Twitter, Pinterest, and Google+
Cover image via Markus Spiske raumrot.com/Pexels



Using a computer screen and a sheet of glass you too can create a hologram! As this video shows, simply use the correct monitor (depending on what you want to do) and a piece of glass positioned appropriately to create the holographic image.
DIY - CREATE AMAZING HOLOGRAPHIC 3D DISPLAY FROM - YouTube


Filmic Pro has a superb suite of professional settings — bit rate, frame rate, and mic choice, to name a few — which can enable you to capture the … Flipboard: How To: Save Custom Shooting Presets in Filmic Pro So You Don't Have to Adjust Settings Later for Similar Shots
Filmic Pro 101 « Smartphones :: Gadget Hacks


This is useful if you're looking to sort by date (and are on a Mac), but we've taken a look at how you can automatically organize your Windows or Mac desktop with Belvedere (Windows) or Hazel (Mac


50 VSCO Cam Filter Settings for Better Instagram Photos


Manage and Download Apps (.ipa) without iTunes When Apple released iTunes 12.7, they surprised many users by removing the iOS App Store from the iTunes Store. We had been accustomed to being able to buy apps on Macs and PCs with iTunes, as well as buying them directly on iPhones and iPads.
Tutorial to easily backup/extract ipa file of app from iPhone
techapple.net/2015/01/tutorial-easily-backupextract-ipa-file-app-iphoneipad-using-itools-macpc-windows-788-110/
Apple stores the apps as ipa packages here's a tutorial on how to easily backup/extra app ipa from iPhone/iPad, so as installing them becomes easier without downloading,even if you uninstall them. Tutorial to extract ipa file of an iPhone / iPad / iPod touch App -


The Facebook Phone proves that this is possible and I have been saying this for like 3 years but the OEM's change too much stuff with their skins in the Android Code that it isn't that simple


Gmail by default gives 11 font choices which are more than enough for an average user. But sometimes we would like to have stylish fonts used in our mails to impress our friends or standard font mail for business communication.
How to Add Different Fonts to Gmail | Your Business


This tutorial talks about how to change Slack theme and apply custom themes.After going through this tutorial, you'll be able to learn how to change the appearance of Slack by changing and customizing the theme. in this tutorial I will explain how to change the appearance of Slack interface by changing the default theme and also by applying custom themes.
How to Customize Desktop Background in Windows 7 - OS


The ultimate guide 15 tips to increase performance on Windows 10 If your PC is running slow, use these tips to help speed up and increase the performance of Windows 10.
How to speed up the Galaxy S6 Edge for faster performance


After years of user complaints, Samsung is finally letting us remap the Bixby button without the need of a third-party app. The new feature requires One UI a simple app update to Bixby, but there's one major downside: Samsung won't let you remap the button to open other digital assistants like Amazon Echo, Microsoft Cortana, and Google Assistant.
Everything You Need to Know About the Samsung Galaxy S7 & S7


Mobile phones are not only essential for work and communication, they're quickly becoming an integral asset to our health. Your iPhone can store valuable data about fitness, nutrition, heart health, and so much more. And since iOS 11.3, your iPhone can even import a list of allergies, medications
[Guide] Import your health records on your iPhone


How To: Hack a toy radar gun into a real one How To: Cheat five bucks from your friends with this flammable bar trick How To: Prank Your Friends with a "Magic" Light Bulb That Lights Up in Your Hand How To: Make a laser out of a lighter How To: Hack a megaphone into a bionic hearing spy device How To: Secretly record people with your own spy
How to Build a radar from cheap satellite dish parts or a toy


Luckily, there's an easy way to get the regular dock icons from your home screen in the new multitasking view. Disabling App Suggestions. To get your regular dock icons from your home screen to appear in Android Pie's new app switcher menu, you'll simply have to disable App Suggestions.
How to Use the New Multitasking Gestures in Android 9.0 Pie


In a previous how-to, I showed how to send and receive text messages by wirelessly syncing them from your phone to your Nexus 7 tablet. Some eagle-eyed users may have notice that the Nexus 7 with 3G actually has a SIM card slot.
How to hack a cell phone text messages from computer - gthq.org


Power off your old iPhone. Do so by holding the lock button on the right-top or upper-right side of your phone's housing until "slide to power off" appears on the screen, then swipe "slide to power off" to the right. If your iPhone uses a SIM card, remove the SIM card from the older iPhone, and insert it into the new iPhone.

0 comments:

Post a Comment