
Security experts have identified 4 malicious Android apps on the Play Store that hide a trojan capable of pushing ads and redirecting users to scam websites.
Unlike previous adware, this trojan uses a new attack method. Experts say it stays inactive for 72 hours after installation to avoid detection.
“Delaying the attack is a common hacker tactic to stay under the radar. After this initial period, these malicious apps automatically open scam websites in the Chrome browser. Some sites generate revenue through ad clicks, while others pose more serious threats,” explained Malwarebytes Labs.
This malware not only wastes users’ mobile data by loading ads but also drains battery life by running in the background for extended periods.
The 4 infected apps found by Malwarebytes Labs are:
– Bluetooth Auto Connect (about 1,000,000 downloads)
– Bluetooth App Sender (about 50,000 downloads)
– Driver: Bluetooth, Wi-Fi, USB (about 10,000 downloads)
– Mobile transfer: smart switch (about 1,000 downloads)
If you have any of these apps installed, uninstall them immediately.