

Moreover, some of these apps use optical character recognition (OCR) to recognize text from screenshots stored on the compromised devices, which is another first for Android malware.īased on the language used in the copycat applications, it seems that the operators behind them mainly target Chinese-speaking users. This was the first time ESET Research had seen Android clippers focusing specifically on instant messaging. All of them are after victims’ cryptocurrency funds, with several targeting cryptocurrency wallets. Most of the malicious apps we identified are clippers - a type of malware that steals or modifies the contents of the clipboard.

Articles and videos in the ESET Knowledgebase
