Security firm Sophos has discovered 15 dodgy Android apps on the Google Play store that have been downloaded more than 1.3 million times. Once installed, the adware-riddled apps do not show up as icons in the launcher making it difficult to find and eradicate them. Here’s the full list.
According to a security report on Sophos’ blog, the 15 offending “utility” apps are really adware that generate frequent, large, intrusive ads onto users’ devices. As mentioned above, they also hide their app icons in the launcher with several disguising themselves in the phone’s App settings page as well.
Some of the apps display the deliberately misleading message: “This app is incompatible with your device” when the user attempts to launch it. In reality, it continues to run in the background, serving up obtrusive ads.
In addition, nine of the discovered apps used deceptive application icons and names to fool the user into thinking they were important system apps. For example, one app posed as a Google Play Store icon. (See below.)
The 15 apps include QR code readers, image editors, backup utilities, a phone finder and even an app designed to scrub your phone of private data. In reality, their chief purpose is to deliver unwanted adware.
The 15 apps have since been removed from the Google Play Store, but with over 1.3 million downloads between them, there’s a chance you might have one or two lurking on your phone.
Here are the apps as they originally appeared on the Play Store:
And here’s the full list of Android package names to check for:
- free.calls.messages (1,000,000+ installs)
- com.a.bluescanner (10,000+ installs)
- com.bb.image.editor (10,000+ installs)
- com.cc.image.editor (100,000+ installs)
- com.d.bluemagentascanner (10,000+ installs)
- com.doo.keeping (1,000+ installs)
- com.e.orangeredscanner (10,000+ installs)
- com.hz.audio (10,000+ installs)
- cos.mos.comprehensive (10,000+ installs)
- com.garbege.background.cutout (10,000+ installs)
- com.hanroom.cutbackground (50,000+ installs)
- com.jiajia.autocut.photo (100,000+ installs)
- com.jiakebull.picture.background (50,000+ installs)
- com.fruit.autocut.photo (10,000+ installs)
- com.huankuai.autocut.picture (10,000+ installs)
Sophos warns there are likely many similar apps on the Google Play Store that have yet to be detected. It recommends carefully reading user reviews before installing new Android apps. If there are no user reviews, let someone else be the guinea pig first.