Increase in Android Malware Attacks in Q2 2025: Banking Trojans and Spyware Threats

Dr.Web Security Space has reported a significant increase in malware activity on Android devices during the second quarter of 2025. Adware trojans, particularly from the Android.HiddenAds family, remain the most common threat, despite an 8.62% decrease in user encounters.


Android.MobiDash adware trojans saw an 11.17% rise in attacks, embedding intrusive ad modules into apps. Meanwhile, Android.FakeApp programs, often linked to fraudulent online casinos, dropped by 25.17% in detection.
A notable concern is the 73.15% surge in Android.Banker banking trojan activity, posing a growing risk to users' financial security. In contrast, other banking trojan families like Android.BankBot and Android.SpyMax experienced declines of 37.19% and 19.14%, respectively.


Cryptocurrency Theft and Spyware Threats April saw the emergence of sophisticated threats, including Android.Clipper.31, a trojan embedded in modified WhatsApp versions that intercepts messages to swap legitimate crypto wallet addresses with fraudulent ones. This malware also uploads images to remote servers to extract mnemonic phrases, endangering cryptocurrency holders.
"NPAV recommends home users and organizations to maintain strong, up-to-date cybersecurity measures. Install NPAV on your desktop, laptop, and mobile devices to ensure world-class protection against fraud, malware, and ransomware attacks.
Choose NPAV and be a part of our mission to make the digital world safer for everyone."
- Other (43)
- Ransomware (154)
- Events and News (27)
- Features (45)
- Security (487)
- Tips (79)
- Google (30)
- Achievements (11)
- Products (36)
- Activation (7)
- Dealers (1)
- Bank Phishing (53)
- Malware Alerts (235)
- Cyber Attack (303)
- Data Backup (13)
- Data Breach (132)
- Phishing (165)
- Securty Tips (2)
- Browser Hijack (19)
- Adware (15)
- Email And Password (71)
- Android Security (78)
- Knoweldgebase (38)
- Botnet (17)
- Updates (4)
- Alert (71)
- Hacking (71)
- Social Media (8)
- vulnerability (76)
- Hacker (38)
- Spyware (12)
- Windows (8)
- Microsoft (26)
- Uber (1)
- YouTube (1)
- Trojan (5)
- Website hacks (10)
- Paytm (1)
- Credit card scam (2)
- Telegram (3)
- RAT (8)
- Bug (3)
- Twitter (2)
- Facebook (8)
- Banking Trojan (10)
- Mozilla (2)
- COVID-19 (5)
- Instagram (4)
- NPAV Announcement (9)
- IoT Security (2)
- Deals and Offers (2)
- Cloud Security (12)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (3)
- WhatsApp (6)
- Amazon (2)
- DMart (1)
- Payment Risk (5)
- Occasion (3)
- firewall (3)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (52)
- Impersonation phishing (1)
- DDoS (7)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)
- Fraud Protector (41)