The company “Doctor Web” has discovered a new Trojan family Android.SmsBot, capable unbeknownst to the owners of Android-smartphone and tablets to send an SMS to costly premium rooms and many of them are able to steal money from bank accounts.
Android.SmsBot.459.origin transmits to the management server information about the infected device, including its IMEI-ID information about the operator, as well as the version of the operating system. Immediately after that, the Trojan receives a command to verify that you are connected to the telephone number of the victim service mobile banking several credit institutions and queries the current balance of the subscriber account and the balance of the account of one of the most popular in the Russian payment systems.
With this the purpose of malicious application sends a specially crafted for each of these services, SMS, while all incoming messages in response Android.SmsBot.459.origin hides from the user and redirect to the remote node. It is worth noting that the Android OS version 4.4 or higher by the introduction of measures of additional security to hide the SMS-messages from the user the Trojan will not succeed, so he just temporarily disables all audible notification system, including the vibrating alert, and deletes entered correspondence.