Pornography-Based Android Ransomware App Discovered by Researchers

Advertisement
By Ketan Pratap | Updated: 8 September 2015 15:35 IST
Security researcher firm Zscaler has discovered a new Android ransomware that is said to use pornography to snare users.

The security firm claims that the app named "Adult Player" clicks an image of the user secretly from the front-camera of the device and starts displaying it on the ransomware screen along with a message demanding $500 (approximately Rs. 33,250). The malware reportedly locks the device and only unlocks when it receives the ransom from the user. The firm explains that many users download such apps considering them video players for pornography content.

Zscaler details that on opening the app for the first time, it asks for admin rights from users. On getting the permission, it asks users to "Activate" the app, which the researcher claims is a fake update page.

"The malware then loads another APK named test.apk from its local storage using a technique referred to as a reflection attack. Reflection is the ability of a program to examine and modify the behaviour of an object at run time, instead of compile time. The ransomware checks whether front camera is available or not. If available, it clicks photo of the victim while he/she is using the app and displays the image on ransom page," notes Zscaler.

Advertisement

It's worth noting that the Adult Player app is not available via Google Play and is only available via third-party stores and needs to be side-loaded.

Advertisement

"The ransom screen is designed to stay persistent even at reboot. It does not allow the user to operate the device and keeps the screen active with ransom message," writes security firm.

It adds that there is no way ransomware can be deleted from device's Settings as the malware is designed to stay "stagnant on screen" and does not allow uninstallation.

Advertisement

Zscaler suggests some ways to get rid of such ransomware, including booting the device into safe mode after which users should first remove administrator privilege. Once done, users can uninstall the app via Apps in Settings. To avoid such ransomware, the security firm suggests users download apps only from trusted app stores.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Android, Apps, Google, Ransomware, Zscaler
Advertisement

Related Stories

Popular Mobile Brands
  1. New Images of Interstellar Object 3I/ATLAS Show a Giant Jet Shooting Toward the Sun
  1. New Images of Interstellar Object 3I/ATLAS Show a Giant Jet Shooting Toward the Sun
  2. NASA’s Europa Clipper May Cross a Comet’s Tail, Offering Rare Glimpse of Interstellar Material
  3. Newly Found ‘Super-Earth’ GJ 251 c Could Be One of the Most Promising Worlds for Alien Life
  4. New Fossil Evidence Shows Dinosaurs Flourished Until Their Final Days
  5. Flattened Dark Matter May Explain Mysterious Gamma-Ray Glow at Milky Way’s Core, Study Finds
  6. NASA Telescopes Capture First-Ever Companion Star Orbiting Massive Red Supergiant Betelgeuse
  7. Scientists Caution That Artificial Cooling of Earth May Disrupt Monsoons and Weather Systems
  8. Carnegie Mellon’s AI Drones Can Build Mid-Air Structures With 90 Percent Success Rate
  9. Baai Tuzyapayi OTT Release Date: When and Where to Watch Marathi Romantic Drama Online?
  10. Maxton Hall Season 2 OTT Release Date: When and Where to Watch it Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.