1. /
  2. Security Response/
  3. Android.Fakenotify


Risk Level 1: Very Low

January 12, 2012
January 13, 2012 11:07:41 AM
Infection Length:
Systems Affected:
Android.Fakenotify is a Trojan horse for Android devices that sends SMS messages to premium-rate phone numbers, collects and sends information, and periodically displays Web pages. It also downloads legitimate apps onto the compromised device.

Antivirus Protection Dates

  • Initial Rapid Release version January 11, 2012 revision 021
  • Latest Rapid Release version February 19, 2013 revision 016
  • Initial Daily Certified version January 11, 2012 revision 033
  • Latest Daily Certified version December 2, 2014 revision 033
  • Initial Weekly Certified release date January 18, 2012
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment


  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy


  • Damage Level: Low
  • Payload: Sends SMS messages to a premium-rate number.
  • Releases Confidential Info: Steals the device's IMEI data.


  • Distribution Level: Low
Note: On May 14, 2015, modifications will be made to the threat write-ups to streamline the content. The Threat Assessment section will no longer be published as this section is no longer relevant to today's threat landscape. The Risk Level will continue to be the main threat risk assessment indicator.
Writeup By: Beannie Cai

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
Internet Security Threat Report