The TeaBot banking trojan was identified about a year ago on the Play Store, bundled into seemingly normal apps. Now there is a new report from Cleafy that a new malicious app has been installed on over 10,000 Android devices.
We are talking about a QR code reader available on the Google Play Store. If you have this app installed, now is the time to remove it from your smartphone.
TeaBot Banking Trojan on Android
As we unveiled in January 2021, the TeaBot Trojan is a powerful piece of malware capable of controlling the entire desktop remotely, through accessibility-level permission. Here are some of the actions allowed by the malware:
- Send and intercept SMS
- Read smartphone status
- Change audio options
- Show pop-ups to request more permissions
- Ability to delete apps
Technically, TeaBot hides behind names like DHL, UPS, VLC MediaPlayer or Mobdro, masquerading as other apps. In this case, the malware reappeared in the form of a very popular application, a QR code reader. These are apps that abound on the PlayStore and it's important to make sure that you don't opt for an unreliable app.
QR Code & Barcode - Scanner: uninstall now!
According to a new report from cybersecurity firm Cleafy, the QR Code & Barcode Scanner app available on the Google Play Store already had more than 10,000 installs and, as is normal in these cases, already had several comments with the rating the highest.
Once the equipment is infected with TeaBot, a new application appears on the smartphone called QR code scanner: add-on. This program runs automatically for the first time and asks for user permissions to capture screenshots among other permissions.
From now on, it will be thanks to these authorizations that the images will be captured during the process of access to the various services, in this case, directed to the banking services.
It is increasingly important to carefully evaluate the applications that you are going to install on your smartphone and above all to read the authorizations that you grant. If you think there is something too intrusive, it is better to look for an alternative or simply not to install it.
Currently, the app is no longer available on the Google Play Store, however, it may have already been captured on this website. Confirm that the QR code reader app you have installed on your smartphone does not match the one listed in the article.