HT TECH wants to start sending you push notifications. Click allow to subscribe

Simply updating this barcode scanner app may have infected 10 million users with malware

While Google has removed the app from the Play Store, it remains installed on devices that already have the app installed. Malwarebytes alleges that the developer of the app intentionally added the malicious code in the update.

By: HT TECH
Updated on: Aug 21 2022, 15:04 IST
Malwarebytes says that they added the ‘Android/Trojan.HiddenAds.AdQR’ detection for the app, which means users with their malware scanner will be alerted that the app is unsafe and must be removed. (Pixabay)

In what can clearly be labelled a sneaky move pulled on unsuspecting app users, a simple app update to a barcode scanner app on the Google Play Store has potentially infected over 10 million users, according to a reputable security software company.

In a blog post, Malwarebytes stated that in December last year, their users had reported a sudden appearance of ads in their default browser - all of a sudden, and with no interaction whatsoever. Security experts usually tell users to list out the most recently installed apps to identify any bad actors, but these users had not downloaded any new apps, especially not from outside the Play Store.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
21% OFF
Acer Swift Go SFG14 41 NX KG3SI 002 Laptop
  • Pure Silver
  • 8 GB RAM
  • 512 GB SSD
₹58,990₹74,999
Buy now
39% OFF
Acer Aspire 5 A515 57G Laptop
  • Gray
  • 16 GB RAM
  • 512 GB SSD
₹54,949₹89,999
Buy now
22% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹33,499₹42,999
Buy now
39% OFF
Asus VivoBook 15 X515JA BQ322WS Laptop
  • Transparent Silver
  • 8 GB RAM
  • 512 GB SSD
₹31,490₹51,990
Buy now
34% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,299₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,790₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹14,999
Check details

Also read: Facebook-based malware from 2016 is back, here are some tips to avoid it

The company said that one of its users, Anon00 identified that the infection was originating from an app that was installed a long while ago - Barcode Scanner by Lavabird LTD. The app was last updated on December 4. According to Malwarebytes, the app didn’t lie dormant waiting for users to keep their phone aside, it activated itself within minutes of installing the update.

Users who had updated their app saw their default browsers open on their own, without any interaction and load a webpage that asked users to install a “cleaner” app on the Play Store, which ironically, also contains ads. The user would also see popups as well as messages styled like notification requests on the page, as illustrated in the image below.

The user would also see popups as well as messages styled like notification requests. (Malwarebytes)
The user would also see popups as well as messages styled like notification requests. (Malwarebytes)

How did this happen? For starters, most apps on the Play Store are monetised with the help of advertisements, which means they need to have various ad SDKs inside. While these ad SDKs allow the existence of free apps, it also means that when the SDK updates the app could also show more aggressive ads. Malwarebytes alleges that the developer of the app has intentionally added the functionality and has identified the app as a trojan due to “malign” intent.

Read more: Suspected Russian hackers targeted cyber firm Malwarebytes

Malwarebytes says that they added the ‘Android/Trojan.HiddenAds.AdQR’ detection for the app, which means users with their malware scanner will be alerted that the app is unsafe and must be removed. Google has also removed the app from the Play Store, but it will remain installed on devices that already have the app. Users are advised to remove the app, if they do have it installed as their devices will most certainly be affected by this malicious app.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 09 Feb, 12:45 IST
Tags:

Sale

Mobiles Tablets Laptops
4% OFF
Samsung Galaxy S24 Ultra
  • Titanium Black
  • 12 GB RAM
  • 256 GB Storage
₹129,999₹134,999
Buy now
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
11% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹79,800₹89,900
Buy now
57% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹19,999₹47,000
Buy now
38% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹28,999
Buy now
11% OFF
Samsung Galaxy Tab S9 5G 256GB
  • Graphite
  • 8 GB RAM
  • 256 GB Storage
₹83,999₹93,999
Buy now
38% OFF
realme Pad 2 WiFi
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹28,999
Buy now
23% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹22,990₹29,990
Buy now
25% OFF
Asus TUF Gaming F15 FX506HF HN076W Laptop
  • Graphite Black
  • 16 GB RAM
  • 512 GB SSD
₹56,390₹74,990
Buy now
22% OFF
Asus ROG Strix G15 G513QC HN088TS Laptop
  • Black
  • 8 GB RAM
  • 1 TB SSD
₹70,990₹90,990
Buy now
30% OFF
Asus VivoBook S14 OLED S3402ZA KM502WS Laptop
  • Indie Black
  • 16 GB RAM
  • 512 GB SSD
₹64,990₹92,990
Buy now
NEXT ARTICLE BEGINS