Android Security

Coronavirus tracking app for Android is a ransomware in camouflage

An android application which facilitates the coronavirus infection tacker appears to be a ransomware in disguise, as it locks the devices and asks for ransom. Named as CovidLock, the app locks the android devices and asks for a ransom of $100 in bitcoin and had to be credited at a BTC address mentioned in the ransom note.

Good news is that the app is not available in the Google Play Store, and can only be downloaded from the coronavirusapp website directly. First discovered by DomainTools, the CovidLock app is leveraging the pandemic buzz and distributing the ransomware in android devices.

Image source: DomainTools

How does this android ransomware work?

This app needs to be downloaded from the malicious coronavirus tracking website named ‘coronavirusapp[.]site ‘. Once downloaded and installed in the android device, the ransomware automatically locks your device with a passoword and leaves a ransom note asking the victims to pay the ransom. However, this ransomware does not work if the android device already has a password . 

The attacker gives just 24 hours for the victims to pay the ransom, if anything gets delayed or any sudden movements are absorbed through GPS (which attackers are tracking) then the documents, photos, and any social media data will be erased forever. 

Image source: DomainTools

How to prevent android threats?

Android users should make sure they have their passwords ON, and install an antivirus solution in their devices. They should avoid downloading APK files from unknown sources, and should disable ‘allow download from unknown sources’ in their android device settings. 

Cybercriminals are actively looking for ways to leverage on people’s anxiety and fear, to make money. It is individuals responsibility to ensure they keep their devices secured from APK threats like this. Organizations that are managing users device like CYOD, COPE and BYOD, please ensure you add this app into your blacklists. Furthermore, deploy policies to restrict downloads from Play Store only.

Subscribe to ‘The Cybersecurity Times’, for daily alerts on cyber events. You can also follow us on Facebook, Linkedin, Instagram, Twitter and Reddit

Share the article with your friends
John Greenwood

He has been working with Cybersec and Infosec market for 12+ years now. Passionate about AI, Cybersecurity, Info security, Blockchain and Machine Learning. When he is not occupied with cybersecurity, he likes to go on bike rides!

Recent Posts

Top 5 Best Project Management Tools for Your Business

Explore efficiency with the Top 5 Best Project Management Software – streamline tasks, boost collaboration,…

2 months ago

Top 5 Best Free Antivirus for Android Smartphones: Stay Protected

Explore the top 5 best free antivirus apps for Android smartphones – your essential defense…

2 months ago

What is India’s Digital Personal Data Protection (DPDP)Act? Understanding Rights, Scope, Responsibilities, and Penalties

Unlocking India's DPDP Act: Your Guide to Rights, Responsibilities, and Top 5 Tools for 2024.…

2 months ago

Top 5 Best Data Loss Prevention Tools for 2024

Uncover insights on advanced features, performance, and user experiences. Discover the top 5 best Data…

3 months ago

Top 5 Windows Server Patching Tools for 2024

Unlock efficient Windows Server patching with insights on top tools and vendors. Streamline your cybersecurity…

3 months ago

Software Deployment: What it is, Best Practices and Top 5 Tools

Software deployment is the process of rolling out an application, which could occur manually or…

4 months ago