Judy Malware spreads through the Google Play Store, full list of infected apps you should remove

Android's malware woes continue as a new malware named Judy spreads through apps on the Google Play Store

  1. Techook
  2. News
  3. Judy Malware spreads through the Google Play Store, full list of infected apps you should remove

Highlights

    • Malware found mostly in apps by Kiniwini
    • Generates large amounts of ad-clicks
    • does not steal personal data

If you’re a dog person, you would know that it is currently rampant tick season. Similarly, if you’re an Android user, it is the season of Malware. The latest attack on Android users is a new malware called Judy, which has infected anywhere between 8.5 to 36.5 million Android devices. Just last week, we mentioned how there was a new vulnerability discovered in Android that could let hackers completely take over an Android device, a vulnerability that couldn’t be fixed by a simple patch. The malware dubbed Judy by researchers at Check Point who discovered it say that the malware has been around for over a year and has spread through the Google Play Store thanks to certain apps. However, things may not be as dire as they seem as the Judy malware isn’t the same level of notorious as WannaCry.

What does Judy Malware Do and how it works
It is important to note that the Judy malware isn’t stealing your information. Instead, it is a malware that generates a lot of fraudulent clicks on advertisements to generate revenue. According to Check Point, the malware gets to work “Once a user downloads a malicious app, it silently registers receivers which establish a connection with the C&C server. The server replies with the actual malicious payload, which includes JavaScript code, a user-agent string and URLs controlled by the malware author. The malware opens the URLs using the user agent that imitates a PC browser in a hidden webpage and receives a redirection to another website. Once the targeted website is launched, the malware uses the JavaScript code to locate and click on banners from the Google ads infrastructure. Upon clicking the ads, the malware author receives payment from the website developer, which pays for the illegitimate clicks and traffic.”

How to protect yourself from Judy
Check Point promptly reported the malware to Google, which has gone ahead and removed all apps that were infected by the malware. Check Point listed out 41 apps with the malicious code and while they may have been removed, it is alarming to note that the malicious apps were able to get around Google’s Bouncer system. This system is designed to prevent malicious code from making its way onto the Play Store, but the fact that Judy was able to circumvent it means that caution should still be exercised while downloading apps.

What Apps to uninstall/not install
All that is known of the malware so far is that it spread through a portfolio of apps developed by a Korean company called Kiniwini and goes by the name ENISTUDIO on the Play Store. Interestingly, the company develops apps for both iOS and Android. Check Point points out that Kiniwini is not the only developer whose apps carry the malware, but they do state that it is entirely possible that one developer borrowed the malicious code from another. Now that we know which developers to avoid, here is a comprehensive list of apps that you must immediately remove from your phone (if you have them installed) or completely avoid installing altogether.

Full List of apps infected by Judy Malware
Fashion Judy: Snow Queen style
Animal Judy: Persian cat care
Fashion Judy: Pretty rapper
Fashion Judy: Teacher style
Fashion Judy: Teacher style
Chef Judy: Halloween Cookies
Fashion Judy: Wedding Party
Animal Judy: Teddy Bear care
Fashion Judy: Bunny Girl Style
Fashion Judy: Frozen Princess
Chef Judy: Triangular Kimbap
Chef Judy: Udong Maker – Cook
Fashion Judy: Uniform style
Animal Judy: Rabbit care
Fashion Judy: Vampire style
Animal Judy: Nine-Tailed Fox
Chef Judy: Jelly Maker – Cook
Chef Judy: Chicken Maker
Animal Judy: Sea otter care
Animal Judy: Elephant care
Judy’s Happy House
Chef Judy: Hotdog Maker – Cook
Chef Judy: Birthday Food Maker
Fashion Judy: Wedding day
Fashion Judy: Waitress style
Chef Judy: Character Lunch
Chef Judy: Picnic Lunch Maker
Animal Judy: Rudolph care
Judy’s Hospital:pediatrics
Fashion Judy: Country style
Animal Judy: Feral Cat care
Fashion Judy: Twice Style
Fashion Judy: Myth Style
Animal Judy: Fennec Fox care
Animal Judy: Dog care
Fashion Judy: Couple Style
Animal Judy: Cat care
Fashion Judy: Halloween style
Fashion Judy: EXO Style
Chef Judy: Dalgona Maker
Chef Judy: ServiceStation Food
Judy’s Spa Salon
Spring-It’s stylish, it’s sexy
Crafting Guide for Minecraft
Dog Music (Relax)