Android.SpyEye.1 is a banking Trojan for Android mobile devices. It is designed to steal such confidential information as mTAN codes received in text messages from online banking applications after a money transaction is made.
The Trojan is disguised as an application that is necessary for performing any money operations.
Once installed, the malware can be detected only in the system menu where the Trojan resides under the name of “System” or “Система” (System).
Once launched, Android.SpyEye.1 starts intercepting all incoming messages forwarding them to a remote server whose address the malware extracts from an XML configuration file.