Android/GGTrack [Threat Name]

Detection created2011-09-02
Short description

Android/GGTrack is a trojan that steals sensitive information. The trojan attempts to send gathered information to a remote machine.

Installation

The trojan must be downloaded and manually installed.

Information stealing

Android/GGTrack is a trojan that steals sensitive information.


The following information is collected:

  • telephone number
  • network operator name
  • operating system version
  • SMS messages

The trojan attempts to send gathered information to a remote machine.


The trojan contains a list of (4) URLs. The HTTP protocol is used.

Other information

The trojan intercepts incoming SMS messages from certain numbers.


The trojan intercepts SMS from the following numbers:

  • 96512
  • 33335
  • 00033335
  • 00036397
  • 36397
  • 55991
  • 55999
  • 41001

The trojan can send SMS messages to following phone numbers:

  • 41001

The messages may contain any of the following texts:

  • YES

Please enable Javascript to ensure correct displaying of this content and refresh this page.