Home » Android » Super Free Music Player : Android Malware on the Play Store

Super Free Music Player : Android Malware on the Play Store

Last updated on May 11th, 2017 at 05:40 pm EST

As per the description on the Google Play Store, Super Free Music Player is an app which you can use to discover new music. Along with that it also offers unlimited free songs from Soundcloud. We are not sure if it works as advertised or not, but what we are sure of is the fact that it’s a malware app.

Super Free Music Player

Research done by SophosLabs points to the techniques used by the app to avoid detection by Google and security researchers. These techniques include :-

  • Use of time bombs
  • Domain and/or IP mapping
  • Use of dynamic code loading and use of reflection
  • Use of multiple layers

Once installed Super Free Music Player runs a service called com.hole.content.Erpbiobuft every hour. This service then downloads payloads onto your device which sends your information to hxxp://s1.deepcups.com/s2/ and hxxp://s1.deepcups.com/s1/.

The device information which is uploaded by the app to above mentioned remote servers includes installed applications, country, language, manufacture, model, SDK version etc. Super Free Music Player was released on the Google Play Store on March 31st 2017 and has 5,000-10,000 downloads already.

Our advice to you is to stay away from Super Free Music Player app on the Google Play Store.