It's likely that the developer's computer was infected with a worm

Aug 3, 2013 22:41 GMT  ·  By
KFC WOW@25 Menu app icon / Developer's signature in Windows malware executable
   KFC WOW@25 Menu app icon / Developer's signature in Windows malware executable

McAfee researchers have come across an Android app that contains traces of Windows malware. The application in question, KFC WOW@25 Menu, has been spotted on Google Play and, although it doesn’t pose a threat to Android devices, it’s dangerous for Windows computers.

Experts found that the APK file contains a Windows worm that’s capable of spreading via network shares.

What’s interesting is that the malware is not capable of executing itself. Instead, it can infect a computer if the APK is opened and run.

Researchers believe that the malware most likely ended up in the KFC Menu app because its developer’s computer was infected and the software’s source code directory contained a copy of the worm.

Another similar example is an email application that’s preinstalled on many Android tablets. The program has an HTML file that contains a piece of malicious JavaScript code.

It’s likely that the malicious JavaScript infected all the HTML files on the developer’s computer, including the file that’s part of the Android email application.