Analysis of Malware Families on Android Mobiles: Detection Characteristics Recognizable by Ordinary Phone Users and How to Fix It — Oak Academic Publishing
Research ArticleOpen AccessGoogle Scholar indexed
Analysis of Malware Families on Android Mobiles: Detection Characteristics Recognizable by Ordinary Phone Users and How to Fix It
School of Computer Science and Technology, Huazhong University of Science and Technology, Wuhan, China
1 School of Computer Science and Technology, Huazhong University of Science and Technology, Wuhan, China
The sale of products using the android Operation System (OS) phone is increasing in rate: the fact is that its price is cheaper but its configured hardware is higher, users easily buy it and the approach to this product increases the risk of the spread of mobile malware. The understanding of majority of the users of this mobile malware is still limited. While they are growing at a faster speed in the number and level of sophistication, especially their variations have created confusion for users; therefore worrying about the safety of its users is required. In this paper, the author discussed the identification and analysis of malware families on Android Mobiles. The author selected the recognizable characteristics from ordinary users with their families collected from 58 malware families and 1485 malware samples and proposed solutions as recommendations to users before installing it with the ultimate desire to mitigate the damage in the community that is on the android phone, especially the ordinary users with limited understanding about potential hazards. It would be helpful for the ordinary users to identify the mobile malware in order to mitigate the information security risk.
KeywordsMobile SecurityAndroid Malware Families
UK, “Worldwide Mobile Device Sales to End Users by Operating System in third Quarter of 2012,”2012. http://www.gartner.com/it/page.jsp?id=2237315
R. Thurner, “A Breakdown by Country of the Most Popular App Download Services to Help Make the Business Case,” 2012. http://www.smartinsights.com/mobile-marketing/app-marketing/app-down load-statistics/
Kaspersky Lab, “The overall statistics for 2012,” 2012. http://www.securelist.com/en/analysis/ 204792255/Kaspersky_Security_Bulletin_2012_The_overall_statistics_ for_2012#1
“Number of the Week: 40% of Modern Smartphones Owners Do Not Use Antivirus Software,” 2012. http://www.kaspersky.com/about/news/press/2012/number-of-the-week-40-percent-of-modern-smartphones-owners-do-not-use-antivirus-software
Y. J. Zhou and X. X. Jiang, “Dissecting Android Malware: Characterization and Evolution,” Proceedings of the 33rd IEEE Symposium on Security and Privacy (Oakland 2012), San Francisco, 20-23 May 2012, pp. 95-109.
US-CERT/NIST, “Vulnerability Summary for CVE-2009-1185,” 2009. http://web.nvd.nist.gov/view/vuln /detail?vulnId=CVE-2009-1185
X. X. Jiang, “Security Alert: New Sophisticated Android Malware DroidKungFu Found in Alternative Chinese App Markets,” 2011. http://www.cs.ncsu.edu/faculty/jiang/DroidKungFu/
X. X. Jiang, “Security Alert: New DroidKungFu Variants Found in Alternative Chinese Android Markets,” 2011. http://www.cs.ncsu.edu/faculty/jiang/DroidKungFu2/
X. X. Jiang, “Security Alert: New DroidKungFu Variant AGAIN! Found in Alternative Android Markets,” 2011. http://www.csc.ncsu.edu/faculty/jiang/DroidKungFu3/
X. X. Jiang, “Security Alert: AnserverBot, New Sophisticated Android Bot Found in Alternative Android Markets,” 2011. http://www.csc.ncsu.edu/faculty/jiang/AnserverBot/
M. Balanza, “Android Malware Acts as an SMS Relay,” Trend Labs, 2011. http://blog.trendmicro.com/ trendlabs-security-intelligence/android-malware-acts-as-an-sms-relay/
X. X. Jiang, “Security Alert: New Sophisticated Android Malware Droid KungFu Found in Alternative Chinese App Markets,” 2011. http://www.cs.ncsu.edu/faculty/jiang/DroidKung Fu/
X. X. Jiang, “Security Alert: Be Cautious with Android Spyware—GamblerSMS,” 2011. http://www. cs.ncsu.edu/faculty/jiang/GamblerSMS/
Y. Takash, “Beta Version of Spytool App for Android Steals SMS Messages,” i, TrenLabs, 2012. http://blog.trendmicro.com/trendlabs-security-intelligence/beta-version-of-spytool-app-for-android-steals-sms-messages/
A. Apvrille, “QR Code and Mobile Malware: It Happened!” FortiBlog, 2011. http://blog.fortinet.com/qr-code-and-mobilemalware-it-happened/
M. Ballano, “Android Threats Getting Steamy,” 2011. http://www.symantec.com/connect/blogs/ android-threats-getting-steamy
X. Jiang, “Security Alert: New Stealthy Android Spyware—Plankton—Found in Official Android Market,” 2011. http://www.csc.ncsu.edu/faculty/jiang/Plankton/
X. Jiang, “Security Alert: New Rogue App RogueLemon Found in Alternative Chinese Android Markets,” 2011. http://www.csc.ncsu.edu/faculty/jiang/RogueLemon/
X. Jiang, “New Rogue Android App—Ro-gueSPPush—Found in Alternative Android Markets,” 2011 http://www.cs.ncsu.edu/faculty/jiang/RogueSPPush/
Zimry, Irene, Raulf and Leong-F-Secure, “On Android threats Spyware: Android/SndApps.A and Trojan: Android/SmsSpy.D,” 2011. http://www.f-secure.com/weblog/archives/00002202.html
Forensic Blog, “Detailed Analysis of Android.Spitmo,” 2011, http://forensics.spreitzenbarth.de/ 2011/12/06/detailed-analysis-of-android-spitmo/
T. Strazzere, “Security Alert: Zsone Trojan Found in Android Market,” 2011. https://blog.lookout.com/ blog/2011/05/11/security-alert-zsone-trojan-found-in-android-market
L. Arsene, “Android SMS Bot Uses Twitter to Hide C&C Server,” 2012. http://www.hotfor security.com/blog/android-sms-bot-uses-twitter-to-hide-cc-server-2602.html
I. Asrar, “Android.Dropdialer Identified on Google Play,” 2012. http://www.symantec.com/connect/ blogs/androiddrodialer-identified-google-play
B. Botezatu, “From China with Love: New Android Backdoor Spreading through Hacked Apps,” 2012. http://www.hotforsecurity.com/blog/from-china-with-love-new-android-backdoor-spreading-through-hacked-apps-1317.html
I. Asrar, “Scam Proves Privacy Concerns on Mobile Devices,” 2012. http://www.symantec.com/ connect/blogs/scam-proves-privacy-concerns-mobile-devices-0
AV-TEST, “Test Report: Anti-Malware solutions for Android,” 2012. http://www.av-test.org/en/tests/ mobile-devices/android/
Open Source Database of Android Malware (links + signatures), 2012 https://code.google.com/p/ androguard/wiki/DatabaseAndroM awares#Open_Source_database_of_android_malwares