Trojan attacks - SpyEye Trojan Variant Targets Android Devices - eWeek Security Watch

SpyEye Trojan Variant Targets Android Devices

Sep 14, 2011
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

The SpyEye Trojan has evolved yet again, as the latest version can intercept Short Message Service texts from compromised Android smartphones.

Dubbed “Spitmo,” the new variant is currently being distributed from compromised Spanish banking Websites and targets Android devices, Ayelet Heyman, a senior malware researcher at Trusteer, wrote on the company’s blog. This is the first SpyEye variant for Android. Previous versions targeted mobile devices running Nokia’s Symbian and Research in Motion’s BlackBerry OS.

Users on the compromised Websites are prompted to download and install the malicious app onto their Android device via the mobile browser. After the app is installed, the victims call a telephone number to receive an “activation code,” Heyman said. It’s a cumbersome process to compromise the user, but once installed and activated, the app can then intercept all SMS texts sent to and from the device. The messages are forwarded to command-and-control servers operated by the malware gang.

Ironically, the user is told the app is supposed to protect text messages from being intercepted and is required before accessing the bank’s online services from mobile devices.

SpyEye is a highly sophisticated malware family that can compromise user accounts and steal personal information. Typically spread from infected Websites, SpyEye also has a number of Zeus features because it merged with the banking Trojan’s source code late last year. Available as a toolkit on underground forums, a cracked version was released recently, making it more likely that more SpyEye variants will be discovered over the next few months.

While the latest version is currently in Europe and Australia, Trusteer researchers expect it to come to the United States soon.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.