Frequently asked questions
What is the ANDROIDOS_MOBSTSPY spyware discovered by Trend Micro?
It is spyware identified by Trend Micro that disguised itself as legitimate Android apps, including games and utilities, to steal users' personal information. It was downloaded more than 100,000 times by people in 196 countries before Google removed the malicious apps from Google Play.
What data can this malware steal from an infected smartphone?
The malware can access the user's location, SMS conversations, call logs, clipboard items, contact lists, and files stored on the device. According to Trend Micro, it can also steal and upload these files to a remote server depending on the command it receives.
How does the malware trick users into handing over their account credentials?
Besides collecting data directly from the device, the spyware displays fake Facebook and Google pop-up windows to phish for account details. When the victim enters their username and password, the fake pop-up simply says the login failed, but by then the credentials have already been stolen.