PROBLEM
STATEMENT ON SECURITY
ADVANCED ETHICAL HACKING
WHAT HAPPENED WITH CAMSCANNER
Kaspersky researchers discovered that recent versions of the
CamScanner app for Android shipped with a malicious Trojan
Dropper module that had the potential to show intrusive ads and
signed users up for paid subscriptions. Before being removed,
CamScanner had more than 100 million downloads.
WHAT IS TROJAN-DROPPER
Software that injects Trojans, viruses, worms and other malware into
a computer. When run, it typically decompresses the malware
components hidden within the dropper file and executes them,
sometimes without saving them on disk to avoid detection. The
Trojan dropper may appear to users as legitimate software that they
want to install. To avoid detection, droppers may also include images
and other benign data in their package.
SOURCES OF INFECTION
Most of the time, the user gets infected by using some
unauthenticated online resources. Infections are often consequences
of activities like:
1.Clicking malicious links or visiting shady websites
2.Downloading unknown free programs
3.Opening attachments sent with spam
4.Plugging infected drives
5.Using Infected proxy (like in case of OnionDuke)
PREVENTION METHOD
Malwarebytes protects users from Trojan.Dropper by using real-time
protection.
REMEDIATION
Malwarebytes can detect and remove Trojan.Dropper without further user
interaction.
1.Please download Malwarebytes to your desktop.
2.Double-click mb3-setup-consumer-{version}.exe and follow the prompts to
install the program.
3.Then click Finish.
4.Once the program has fully updated, select Scan Now on the Dashboard. Or
select the 5.Threat Scan from the Scan menu.
6.If another update of the definitions is available, it will be implemented
before the rest of the scanning procedure.
7.When the scan is complete, make sure that All Threats are selected, and
click Remove Selected.
8.Restart your computer when prompted to do so.

problem statement on security

  • 1.
  • 2.
  • 3.
    WHAT HAPPENED WITHCAMSCANNER Kaspersky researchers discovered that recent versions of the CamScanner app for Android shipped with a malicious Trojan Dropper module that had the potential to show intrusive ads and signed users up for paid subscriptions. Before being removed, CamScanner had more than 100 million downloads.
  • 4.
    WHAT IS TROJAN-DROPPER Softwarethat injects Trojans, viruses, worms and other malware into a computer. When run, it typically decompresses the malware components hidden within the dropper file and executes them, sometimes without saving them on disk to avoid detection. The Trojan dropper may appear to users as legitimate software that they want to install. To avoid detection, droppers may also include images and other benign data in their package.
  • 5.
    SOURCES OF INFECTION Mostof the time, the user gets infected by using some unauthenticated online resources. Infections are often consequences of activities like: 1.Clicking malicious links or visiting shady websites 2.Downloading unknown free programs 3.Opening attachments sent with spam 4.Plugging infected drives 5.Using Infected proxy (like in case of OnionDuke)
  • 6.
    PREVENTION METHOD Malwarebytes protectsusers from Trojan.Dropper by using real-time protection.
  • 7.
    REMEDIATION Malwarebytes can detectand remove Trojan.Dropper without further user interaction. 1.Please download Malwarebytes to your desktop. 2.Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program. 3.Then click Finish. 4.Once the program has fully updated, select Scan Now on the Dashboard. Or select the 5.Threat Scan from the Scan menu. 6.If another update of the definitions is available, it will be implemented before the rest of the scanning procedure. 7.When the scan is complete, make sure that All Threats are selected, and click Remove Selected. 8.Restart your computer when prompted to do so.