SharkBot Malware Targeting Banking, Crypto Apps Resurfaces on Google Play Store: All Details

Once installed, the malware cancels ‘log-in with your fingerprint’ prompts forcing users to enter their password and username.

Advertisement
Written by Radhika Parashar, Edited by David Delima | Updated: 5 September 2022 17:17 IST
Highlights
  • Google has not yet commented on the matter
  • Mister Mobile Cleaner app shows on Play Store in India
  • Kylhavy Mobile Security does not show on Play Store in India

Crypto scammers have been choosing mobile apps as a way to enter phones and laptops

Photo Credit: Reuters

Banking and crypto-related apps are at risk of being infected by a malware, that is making the round on Google Play wrapped as apps — Mister Phone Cleaner and Kylhavy Mobile Security. The malware is capable of stealing cookies from accounts and while bypassing authentication methods that require user input, such as fingerprints. The malware, known as the SharkBot dropper is used to infect users' devices once it is installed. Alberto Segura, a malware analyst tweeted about this resurgence of the malicious software on Twitter to alert Android users.

Once installed, the malware cancels the ‘log-in with your fingerprint' dialogs so that the users are forced to enter the password and username, according to Segura. The SharkBot malware is capable of bypassing two-factor authentication.

As per public Google Play store statistics, the Mister Phone Cleaner app has over 50,000 downloads. It is depicted by a blue logo showing a white and blue broom. While this app is available on the Play Store in India, the Kylhavy Mobile Security app does not show up in India, but it reportedly has over 10,000 downloads.

Advertisement

“This new Sharkbot dropper asks the victim to install the malware as a fake update for the antivirus to stay protected against threats,” Segura said in a blog post.

The main goal of the SharkBot malware was “to initiate money transfers from the compromised devices via Automatic Transfer Systems (ATS) technique bypassing multi-factor authentication mechanisms,” Cleafy Labs, an online fraud management firm had explained when the malware was first identifed.

Advertisement

Since mobile apps are an easy way to take control of smartphones, several scammers have been exploiting these apps to target victims.

Back in July, tech giants Apple and Google received letters from US lawmakers, asking for details on crypto-related apps that are available on the App Store and Play Store respectively. In these letters, Senator Sherrod Brown, the chair of the Senate Banking Committee also asked the companies to provide information on the ways they tackle potentially dangerous apps that may be promoting crypto scams.

Advertisement

Cyber criminals have stolen company logos, names, and other identifying information of crypto firms and then created fake mobile apps. It is imperative that app stores have the proper safeguards in place to prevent against fraudulent mobile application activity,” Brown wrote in his letters to the tech giants.

Last year, Google Play removed eight deceptive cryptocurrency apps after they were discovered to be crypto scam apps. These apps were BitFunds – Crypto Cloud Mining, Bitcoin Miner – Cloud Mining, Bitcoin (BTC) – Pool Mining Cloud Wallet, Crypto Holic – Bitcoin Cloud Mining, Daily Bitcoin Rewards – Cloud Based Mining System, Bitcoin 2021, MineBit Pro - Crypto Cloud Mining & BTC miner, and Ethereum (ETH) - Pool Mining Cloud.

Advertisement


With the next Apple event due very soon, we dive into all the leaks and rumours surrounding iPhone 14 on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Announces Offers on Phones, Wearables During Flipkart Sale
  2. Oppo F31 Series Launched With 7,000mAh Battery: Check Price, Features
  3. Samsung Galaxy S25 FE With 50-Megapixel Camera Launched in India: See Price
  4. Vivo Y31 Series With 6,500mAh Battery Launched in India: See Price
  5. Xiaomi 17 Pro Max Tipped to Come With a Secondary Display
  6. iOS 26 Update for iPhone Releases Today: Everything You Need to Know
  7. Realme P3 Lite 5G With 6,000mAh Battery Launched in India at This Price
  8. iOS 26 Releases Today: Check Out the Notable Features
  9. Nothing Phone 3 Price Will Drop to Rs 34,999 on Flipkart, But There's a Catch
  10. Flipkart Big Billion Days Sale: Discounts on Motorola Phones Announced
  1. Samsung Galaxy S25 FE Launched in India With 6.7-Inch AMOLED Screen, 50-Megapixel Camera: Price, Features
  2. iPhone 18 Series Tipped to Feature Smaller Dynamic Island, Might Launch Without Under-Display Face ID
  3. OnePlus 15 Leaked Image Hints at Redesigned Camera Module, Three Colourways
  4. Xiaomi 17 Pro Max Leaked Image Reveals Rear Display in a Nod to the 11 Ultra Ahead of September Debut
  5. Treasure Hunters Season 1 Now Streaming on JioHotstar: Everything You Need to Know
  6. London Stock Exchange Completes First Blockchain-Powered Fundraising via DMI Platform
  7. Zepto Fastest Sale Ever: Apple AirPods 4 Price Drops to Rs 9,999; Check Top Deals on Electronics, Accessories
  8. War 2 OTT Release Date Reportedly Revealed Online: When and Where to Watch it Online?
  9. MeitY Proposes 20-Year Tax Holiday for Data Centres to Boost Investment: Report
  10. Resident Evil Requiem, Resident Evil 7: Biohazard and Resident Evil Village Are Coming to Switch 2 Next Year
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.