Skip to main content

Google Play Store malware hits 42 apps with 8 million downloads

Another day, another batch of Play Store apps found to contain malware.

This time, the 42 adware-infected apps received 8 million downloads in a campaign that lasted more than a year.

Recommended Videos

ESET, the long-established cybersecurity firm that discovered the adware, said that Google has now removed all of the offending apps, though it added that the software remains available on third-party app stores.

Please enable Javascript to view this content

While many apps show ads legitimately, adware is considered a more sinister presence in that it, for example, serves up scam ads, gathers users’ personal information, drains a phone’s battery, and can be annoyingly persistent.

In this case, the malicious software served full-screen ads at random intervals and made it difficult for the user to know which app was responsible for the ads.

It also gathered data from the user’s handset that included device type, OS version, language, number of installed apps, available storage space, battery status, whether the device is rooted and developer mode enabled, and whether Facebook and Facebook Messenger are installed.

The apps were able to remain available on the Play Store for many months because the adware was designed to function in a way that gave it a greater chance of evading detection by Google’s security systems.

The alleged perpetrator

An extensive investigation detailed in its blog post led ESET to conclude the adware is the work of a college student in Vietnam. According to the cybersecurity firm, the developer started out by creating legitimate apps, but later included the adware to boost his income.

“The various stealth and resilience techniques implemented in the adware show us that the culprit was aware of the malicious nature of the added functionality and attempted to keep it hidden,” ESET said.

The most popular of the offending apps was Video Downloader Master, which received 5 million downloads before it was removed from the Play Store. Here are the apps that ESET reported to Google:

Image used with permission by copyright holder

If you have any of the above apps on your Android handset or tablet, the advice is to delete them immediately. Some of the apps were also found in Apple’s App Store but contained no adware, ESET said.

Choosing apps

ESET’s discovery is a timely reminder to take care when choosing apps to download to your device. If the app is new or isn’t well known, it’s worth spending a little time researching reviews or looking online for information on the developer.

Malicious apps have always been an issue for the Play Store, though Google said earlier this year that it’s working constantly to improve its abuse detection technologies and machine learning systems to deal with the issue, and employs a team of human reviewers, too.

In further efforts, the Google Play Protect security platform scans 50 billion apps on users’ devices on a daily basis to check the safety of the installed software.

In 2017, Google deleted 700,000 malicious apps from the Play Store, and banned 100,000 developers from submitting new ones.

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Your Google Photos app is about to look different. Here’s what’s changing
The Google Photos app on the Google Pixel 9 Pro Fold.

Google is implementing a small yet significant change to its popular Google Photos app. As first noted by 9to5Google, the app's "Memories" tab is being removed. Memories is an auto-organizing, scrapbook-like feature that utilizes artificial intelligence to create an AI-powered feed.

Since its release, the Memories tab has been in the bottom bar of the Google Photos app. The Memories tab is being replaced by Moments, which will reside inside the app's Collections tab. This is where you can find People & pets, Albums, Documents, and Places.

Read more
The Google Messages app is getting a few important safety features
google messages scam identity fraud package delivery spam features detect

Google’s software theme for 2024 has been safety. With the arrival of Android 15, the company added a host of anti-theft measures for phones, and later locked the Find My system behind biometric check. Next in line is the Messages app.

Earlier today, the company announced enhanced scam detection, putting special focus on package delivery scams and job frauds. Package delivery frauds have been on the rise lately, and they are being used for everything from brushing scams to those extorting money in the name of fake package delivery problems.

Read more
The Google Home app is getting a long-overdue feature
The Google Home logo on a Pixel phone.

According to the sleuths over at Android Authority, the Google Home app is about to get a much-needed feature that I'm honestly shocked hasn't been added yet: a search bar.

If you've never used the Google Home app before, it's sort of the command center for all things smart home in the Google smart home ecosystem. If you only have a few smart home devices, it's easy enough to navigate — but if you have an extensive smart home setup, you could have upwards of 50 devices listed in the app. If you don't take time to organize and label them, it gets unwieldy fast.

Read more