SHA1:
- 54de7992a0e19e0bd329ea867437808588bf4f61
An Android Trojan which is a JAR file. It is a component of the malicious application Android.RemoteCode.106.origin, which downloads and automatically launches it.
This module obtains an address of a server and a list of browsers from a configuration file downloaded by Android.RemoteCode.106.origin. After its launch, the Trojan connects to the indicated address by adding it a value /sys/url/get/, and sends it information on the device and the first found browser from the list (in case of successful search). As a response, Android.Click.200.origin obtains a website address to automatically open it in the browser (any web browser can be used for this purpose).