s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-apk.agentsmith

📛 Threat Title

Malware family: Agent Smith

Category: Agent Smith First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `apk.agentsmith`. Printable name: Agent Smith.

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

domain apk.agentsmith VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.agentsmith

IOC database

Type
domain
Value
apk.agentsmith
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Extracted from Threat TF-MAL-apk.agentsmith

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.agentsmith

References (1)

Remediations (10)

  • web:antivirus.comodo.com

    Know about what is Agent Smith malware attack and how it is used to infect apps on android phones. Use Comodo antivirus to remove Agent Smith virus attack.

  • web:attack.mitre.org

    Agent Smith is mobile malware that generates financial gain by replacing legitimate applications on devices with malicious versions that include fraudulent ads.

  • web:blog.avast.com

    Bad actors have pushed variants of the Agent Smith malware to users through unofficial Android app stores, infecting up to 25 million devices, Bleeping Computer reported. Security analysts identified over 360 different dropper strains of the malware , being distributed in malicious game, photo, and adult content apps for over two years.

  • web:research.checkpoint.com

    The " Agent Smith " campaign is primarily targeted at Indian users, who represent 59% of the impacted population. Unlike previously seen non-GP (Google Play) centric malware campaigns, " Agent Smith " has a significant impact upon not only developing countries but also some developed countries where GP is readily available.

  • web:sensorstechforum.com

    During the third stage, the core part of Agent Smith malware will attack each installed application on the compromised Android device, according to its target list. "The core malware quietly extracts a given innocent application's APK file, patches it with extra malicious modules and finally abuses a further set of system vulnerabilities to silently swap the innocent version with a ...

  • web:www.bleepingcomputer.com

    Around 25 million devices have already been infected with what researchers have dubbed " Agent Smith ," after users installed an app from an unofficial Android store.

  • web:www.csk.gov.in

    It has been observed that a new malware named as " Agent Smith " targeting android devices is spreading widely. The malware has the capability to automatically replace the installed apps of the infected/targeted device to malicious versions without the user knowledge. It has also been counted that the malware has infected nearly 25 million mobile devices all over the world. The malware ...

  • web:www.independent.co.uk

    A new type of mobile malware that secretly replaces popular apps like WhatsApp on people's phones has already infected more than 25 million devices, security researchers have revealed.

  • web:www.manageengine.com

    Th ere's a new shapeshifting strain of Android malware in the mix. It replaces legitimate apps with compromised ones and is imaginatively named Agent Smith after the iconic villain in The Matrix. Yet another malware attack targeting Android—so what's the big deal? Agent Smith is similar to other malware campaigns such as Gooligan, HummingBad, and CopyCat with respect to the destruction ...

  • web:www.techjockey.com

    To add to the woes, mobile malware detection is not possible as the malware hides itself by taking the form of these applications. How Does the Agent Smith Malware Work? Taking advantage of its capability of becoming virtually invisible, this malware can easily navigate between apps and steal various types of app data and identities.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.