logo

Fake BatteryBotPro AdFraud, SMS & Downloader Trojan

ID: fd46f5f6-b4e3-512c-be2e-17f6c9c87bc7

STIX ID: report--fd46f5f6-b4e3-512c-be2e-17f6c9c87bc7

Feed Name: Zscaler Security Research Blog

Threat Score
70/100

Date Published: 2025-04-02

Date Updated: 2026-05-01

...
...

The report analyzes a malicious Android application spoofing BatteryBot Pro that requests elevated permissions (including device administrator), performs click/ad fraud, sends premium-rate SMS messages causing financial loss, silently downloads and installs additional APKs, and maintains persistence via a secondary package (com.nb.superuser); the fake app was uploaded to the Google Play Developer Console and was flagged/removed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.