- Discovered:
- January 6, 2013
- Updated:
- January 7, 2013 9:38:43 AM
- Type:
- Trojan
- Infection Length:
- 41,728 bytes
- Systems Affected:
- Android
Android.Exprespam is a Trojan horse for Android devices that displays a fake message and steals personal information stored on the compromised device.
Android package file
The Trojan may arrive as a package with the following characteristics:
APK: frhfsd.siksdk.ujdsfjkfsd
Version: 1.1
Name: App for Android Devices (in Japanese)
Installation
Once installed, the application will display an icon with the text App for Android Devices (in Japanese).

Android package file
The Trojan may arrive as a package with the following characteristics:
APK: frhfsd.siksdk.ujdsfjkfsd
Version: 1.1
Name: App for Android Devices (in Japanese)
Installation
Once installed, the application will display an icon with the text App for Android Devices (in Japanese).

Antivirus Protection Dates
- Initial Rapid Release version January 6, 2013 revision 033
- Latest Rapid Release version February 19, 2013 revision 016
- Initial Daily Certified version January 7, 2013 revision 003
- Latest Daily Certified version January 19, 2013 revision 024
- Initial Weekly Certified release date January 9, 2013
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.
Threat Assessment
Wild
- Wild Level: Low
- Number of Infections: 0 - 49
- Number of Sites: 0 - 2
- Geographical Distribution: Low
- Threat Containment: Easy
- Removal: Easy
Damage
- Damage Level: Medium
- Payload: Steals personal information.
Distribution
- Distribution Level: Low
- Target of Infection: Android devices.
Writeup By: Masaki Suenaga