1. /
  2. Security Response/
  3. Android.Malebook

Android.Malebook

Risk Level 1: Very Low

Discovered:
July 11, 2012
Updated:
July 12, 2012 7:41:54 AM
Type:
Trojan
Infection Length:
Varies
Systems Affected:
Android
Android.Malebook is a Trojan horse for Android devices that steals information from the compromised device.

Android package file
The Trojan may arrive as one of the following APK packages:
Package name: com.couple.ebook.ydyt
Version: 2.0.2

Package name: com.couple.ebook.mlyy
Version: 2.0.2

Package name: com.couple.ebook.tgewj
Version: 2.0.2

Package name: com.couple.ebook.wsm
Version: 2.0.2

Package name: com.couple.ebook.wkz
Version: 2.0.2

One of the following icons may be displayed on the device once the application is installed:

Antivirus Protection Dates

  • Initial Rapid Release version July 11, 2012 revision 002
  • Latest Rapid Release version July 11, 2012 revision 002
  • Initial Daily Certified version July 11, 2012 revision 003
  • Latest Daily Certified version July 11, 2012 revision 003
  • Initial Weekly Certified release date July 11, 2012
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Medium
  • Payload: Steals potentially sensitive information.
  • Releases Confidential Info: Sends potentially sensitive information to a remote location.

Distribution

  • Distribution Level: Low
  • Target of Infection: Android devices.
Writeup By: Zhicheng Zeng

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
Internet Security Threat Report
Symantec DeepSight Screensaver