CamScanner

CamScanner is a Chinese mobile app first released in 2010 [1][2] that allows iOS and Android devices to be used as image scanners.

The advertising library decrypts a Zip archive which subsequently downloads additional files from servers controlled by hackers, allowing the hackers to control the device, including by showing intrusive advertising or charging paid subscriptions.

[4][5] An updated version of the app with the advertising library removed was made available on the Google Play Store as of September 5, 2019.

[6] Kaspersky later acknowledged "We appreciate the willingness to cooperate that we've seen from CamScanner representatives, as well as the responsible attitude to user safety they demonstrated while eliminating the threat…The malicious modules were removed from the app immediately upon Kaspersky's warning, and Google Play has restored the app.

[9] The Trump administration explained this act by saying that this move helps prevent personal information such as text, phone calls and photos collected from rivals.