#FvncBot observed in the wild
Discovered in November 2025 by Intel 471 researchers, FvncBot #Android banking trojan has been spread in a #malware campaign targeting major Polish financial institutions.
Dive into the analyses and access the malware samples on our platform!
CSIRT KNF discovered a campaign of the FvncBot malware described in our blog: https://t.co/zIE0ekNsjB
The FvncBot features include keylogging, web-inject attacks, screen streaming and remote control capabilities.
Explore the samples in https://t.co/EMfXosbb8n
Meet #Albiriox - a new #Android#botnet to watch
First released in October 2025, Albiriox is a rapidly evolving Android banking trojan. Since launch, its developers have rolled out multiple upgrades, including latest version 1.5 released on Jan 25th, 2026.
๐Indicators of Compromise (IoCs)
Phishing domains:
livenettvtv[.]com
infofedex[.]com
updateproximus[.]com
Find the #malware samples and their analyses on Apkdetect platform. ๐
2/2 To play with Apkdetect API immediately, we prepared a ready-to-use Python client script available on GitHub: https://t.co/nQrQOx7lTG
Happy hunting!๐
1/2 Now it's time to automate your #Android#malware hunting!๐ฅEach Apkdetect user has been granted API access that allows to upload and download APK files, search for malware samples by hash and get analysis reports with malware configs! ๐ฅณ
@Intel471Inc For our users everyday usage will remain the same and we will continue to improve the platform.
Important to note that there is no plan to commercialize our service and sample privacy will be respected.
We are excited to share that Apkdetect has partnered with @Intel471Inc, the premier provider of cyber threat intelligence! ๐ฅ
Apkdetect will expand Intel 471 Malware Intelligence with Android malware coverage.
Apkdetect lets you analyze and download APKs free of charge! ๐ฅ
Our community is growing really fast and many features will be released in the nearest future, including:
* Public API access to automate your stuff ๐ค
* Yara hunting with your own rules ๐ฏ
โก๏ธStay tuned!โก๏ธ
We're up and running! ๐ฅ
Check out new features, including:
* Quick search for APKs with different attributes ๐
* Download APK files from URL โฌ๏ธ
* App icon extraction ๐
* ... and many more improvements!
Happy hunting!
Apkdetect will be in maintenance mode starting tomorrow 11 am CET. During this period, new file submissions will be unavailable.
We will notify you as soon as the service is back fully operational.
New 5.0 version of #Flubot#Android#malware ๐ง
Full analysis and configuration available in the platform.
SHA256: 08d8dd235769dc19fb062299d749e4a91b19ef5ec532b3ce5d2d3edcc7667799
Package: com.tencent.qqmusic
@alberto__segura@0xabc0@malwrhunterteam
Now you can quickly grab configs of recent #Android#malware banking trojans: ERMAC and S.O.V.A ! ๐ They were reported in September by @ThreatFabric
Have fun!
Catching up with latest #Android#malware variants.
Recent improvements include better payload decryption and #Flubot extraction. Still a lot more to come.
Recent update includes config extraction for the new variant of #Flubot and #Anatsa#Android#malware .
Thanks to all users that helps keeping the content up-to-date ๐