Last updated on May 11th, 2017 at 05:40 pm EST
As per the description on the Google Play Store, Super Free Music Player is an app which you can use to discover new music. Along with that it also offers unlimited free songs from Soundcloud. We are not sure if it works as advertised or not, but what we are sure of is the fact that it’s a malware app.
Research done by SophosLabs points to the techniques used by the app to avoid detection by Google and security researchers. These techniques include :-
- Use of time bombs
- Domain and/or IP mapping
- Use of dynamic code loading and use of reflection
- Use of multiple layers
Once installed Super Free Music Player runs a service called com.hole.content.Erpbiobuft every hour. This service then downloads payloads onto your device which sends your information to hxxp://s1.deepcups.com/s2/ and hxxp://s1.deepcups.com/s1/.
The device information which is uploaded by the app to above mentioned remote servers includes installed applications, country, language, manufacture, model, SDK version etc. Super Free Music Player was released on the Google Play Store on March 31st 2017 and has 5,000-10,000 downloads already.
Our advice to you is to stay away from Super Free Music Player app on the Google Play Store.