Identify more than 30 malware applications in Iranian app market

Identify more than 30 malware applications in Iranian app market

mci-pages-sharing

According to Bitbaan security experts, 35 android applications published in Iranian app market contain malware. These programs have been active in the field of meteorology and have been installed more than 130,000 times by subscribers.

The table below shows information about these programs:

Row Name Address in Market
1 هواشناسی https://cafebazaar.ir/app/com.weather.afg
2 هواشناسی پیشرفته https://cafebazaar.ir/app/ir.behnam.havashenasi
3 اب و هوای ایران https://cafebazaar.ir/app/com.mobin.weather
4 هواشناسی مناطق https://cafebazaar.ir/app/com.havashenasiii2.amitis
5 هواشناسی پیشرفته https://cafebazaar.ir/app/iran.weather
6 هواشناسی https://cafebazaar.ir/app/ir.weather.saeed
7 هواشناسی پیشرفته https://cafebazaar.ir/app/com.weather.turbosoft
8 هواشناسی پیشرفته https://myket.ir/app/com.weather.turbosoft
9 آب و هوا https://myket.ir/app/ir.abohava.weatherfarsi
10 هواشناسی 2018 https://cafebazaar.ir/app/com.example.android.azaranweb
11 هواشناسی پیشرفته https://cafebazaar.ir/app/com.nbnb.weatherapp
12 هواشناسی پیشرفته https://cafebazaar.ir/app/com.havashenasi.hushmand
13 هواشناسی https://cafebazaar.ir/app/com.alfaa.havashenasi
14 هواشناسی پیشرفته https://cafebazaar.ir/app/net.weather.u2p
15 هواشناسی پیشرفته https://cafebazaar.ir/app/ir.classicgroup.havashenasi
16 هواشناسی فوق پیشرفته دقیق https://cafebazaar.ir/app/com.nswheather.appss
17 هواشناسی هوشمند https://cafebazaar.ir/app/com.hava.oooo
18 هواشناسی فوق پیشرفته https://cafebazaar.ir/app/ir.appdirac.havashenasi
19 هواشناسی هوشمند https://cafebazaar.ir/app/ir.pazelapp.havashenasipazel
20 هواشناسی پیشرفته و دقیق https://cafebazaar.ir/app/ir.benissweb.Meteorology
21 هواشناسی https://cafebazaar.ir/app/com.weather.fooladi
22 هواشناسی پیشرفته و دقیق https://cafebazaar.ir/app/ir.accogroup.havashenasi
23 هواشناسی پیشرفته https://cafebazaar.ir/app/ir.appniuz.havashenasi
24 هواشناسی پیشرفته https://cafebazaar.ir/app/ir.hava.senasim
25 هواشناسی https://cafebazaar.ir/app/ir.ayrik.havashenasi
26 هواشناسی نسیم https://cafebazaar.ir/app/com.phd.weather.nasim
27 پیش بینی دقیق آب و هوا https://cafebazaar.ir/app/com.abtination.pishbinidaqiqabohava
28 هواشناسی پیشرفته https://cafebazaar.ir/app/com.havashenasi.app
29 هواشناسی https://cafebazaar.ir/app/net.weather.u2q
30 هواشناسی پیشرفته و هوشمند https://cafebazaar.ir/app/com.taranebaran.weather
31 هواشناسی پیشرفته https://cafebazaar.ir/app/ir.rashgroup.havashenasi
32 تقویم و هواشناسی https://cafebazaar.ir/app/com.pars.hanista
33 هواشناسی اپلکس https://cafebazaar.ir/app/com.applex.forecastie
34 هواشناسی https://myket.ir/app/ir.hnmr.weather
35 هواشناسی پیشرفته و دقیق https://myket.ir/app/ir.benissweb.Meteorology
36 هواشناسی پیشرفته https://myket.ir/app/ir.tooskagroup.havashenasi

These programs can take unwanted and sometimes destructive actions using push notification sending services. These activities include:

  • Open the link
  • Download and install other applications
  • Display dialog
  • Open specific pages on messengers and social networks such as Telegram and Instagram
  • View image
  • Hide the app

If the above applications are installed on your mobile phone, proceed to remove the applications.
Following security recommendations plays an important role in preventing contamination of this or other malware:

  • Install the required programs from reputable sources such as Google Play Store and App Store
  • Install valid anti-malware tools and continuously update them
  • Activate the Google Play Protect feature in the Android operating system
  • Pay attention to the accesses obtained by the programs installed on the mobile phone and match the accesses with the type of activity of the programs
  • Pay attention to the description of the program, the number of installed and other users' comments before installing the programs