Fake antivirus for mobile platform spotted
Summary: Security researchers from CA have spotted a bogus mobile antivirus scanner using the Kaspersky brand.
Security researchers from CA have spotted a bogus mobile antivirus scanner using the Kaspersky brand. Spreading through social engineering, and relying on hardcoded results, the rogueware attempts to trick users into thinking they're malware-infected.
What about the monetization vector? SMS-based micro payments would have been the logical choice, however the hardcoded error message indicates an early stage experiment on behalf of the malicious attackers.
What do you think? Are we going to see a tremendous growth of scareware on mobile platforms, the way we're currently witnessing it on the Windows OS?
Talkback.
Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.

Talkback
RE: Fake antivirus for mobile platform spotted
but then that destroys the myth that iOS and Android are bulletproof
RE: Fake antivirus for mobile platform spotted
RE: Fake antivirus for mobile platform spotted
That said, malware that tells you the device's C: drive is infected, when the device has no C: drive, would only catch the gullible.
RE: Fake antivirus for mobile platform spotted
RE: Fake antivirus for mobile platform spotted
<a href="http://www.kecioyun.com/" rel="muse">oyun</a>
RE: Fake antivirus for mobile platform spotted
It doesn't matter anyway because it's just a message and has nothing to do with the file system.
RE: Fake antivirus for mobile platform spotted
if a user installed the malware means it succeeded.
just to see howmany users can be reached by a potential attack is almost just as valuable to people that want to steal identities. It's like fishing (the real fishing not phishing)eventually you will get a bite.
RE: Fake antivirus for mobile platform spotted
RE: Fake antivirus for mobile platform spotted
C:\ drive may not be available... But consider this.
That emulator is sun's J2ME emulator.
If write a j2ME app and point to C:\, most of the time J2ME points this to phone's built in memory's root. (E:\ points to SD Card .etc) This works on symbian OS very well.
Windows Phone 7 doesn't allow direct access to storage. All apps see an isolated folder and cannot write or read data from storage. If you need to load a media file, you have to go through the media API and use Music + Videos Hub.
Unless you jailbreak the phone, apps are not allowed access to the storage (which sometimes is a pain in the butt). So don't have to worry about WP7.
We should always look at what we allow an application to do when we install it. Most platforms shows what permissions the app requires before installing it.
RE: Fake antivirus for mobile platform spotted
This is doubly funny when you realized that Nokia's ditching the Symbian platform soon.
RE: Fake antivirus for mobile platform spotted
Recently was infected with a similar virus on my desktop, it appears to have infected Malewharebytes so could not operate it to remove the problem
too funny
- but hey, it could have changed for that wm6.5 & later.
Number of Socially-engineered Mobile Malware Will Skyrocket
I wondered when......
Thank you Microsoft.
Re: Thank you Microsoft
Why blame Microsoft for anything? Right?
Ms is viewed as the innocent victim. Where did that come from?
RE: Fake antivirus for mobile platform spotted
You might be better off if you just quit your bellying and grow up.