Skip to main content
Uncategorized

Dr.Web detects new Trojan stealing Specific Messages

1 min read0 views
Sharefin

Dr.Web has warned users about a new Trojan for Android that can intercept inbound short messages and forward them to criminals. Android.Pincer.2.origin is an addition to Android.Pincer malware family, as reported by Dr.Web. This Trojan poses a serious threat because stolen messages can contain sensitive information such as mTAN codes which are used to confirm online banking transactions.

This malicious program is spread as a security certificate that supposedly must be installed onto an Android device. If a user does install the program and attempts to launch it, Android.Pincer.2.origin will display a fake notification about the certificate's successful installation and will not perform any noticeable activities for a while.

Cybercriminals use the Trojan for targeted attacks and steal specific messages, for example, those received from banking services or other messages containing sensitive information.