SharkBot Android Banking Trojan Caught Installing Fake Antivirus Apps and Cleaners
The droppers will drop a brand new version of SharkBot dubbed \”V2\” by Dutch security company ThreatFabric. This version features a command-and control (C2) communication system, a domain-generation algorithm (DGA), as well as a completely refactored source code.
Fox-IT reported that it found a newer, 2.25 version on August 22, 2022. This version introduces a feature to siphon cookies from victims when they log into their bank accounts. It also removes the ability to reply automatically to incoming emails with links to the malicious software for propagation.