MalAware
What is MalAware?
The latest Vaipn Android update includes MalAware, an opt-in feature, allowing users to be notified by Vaipn if their tunneled device attempts to communicate with IP addresses or domains documented to be involved with the distribution, or function of malware.
How does Vaipn protect my device security?
Unfortunately, there are bad-actors on the internet who have designed malicious applications and web services with intentions such as stealing user data, locking up your device and data, or using your device for other purposes without your consent.
Vaipn already protects your device from sending and receiving potentially malicious traffic. Once connected to the Vaipn network, your network traffic is tunneled through Vaipn servers. These servers have been configured to identify malicious IP addresses or domains documented to be involved with the distribution, or function of malware, according to threat intelligence feeds updated daily.
When tunneled, Vaipn servers are able to block these connections, and now with MalAware, Vaipn can notify you in real-time if a malicious connection is attempted.
If a device connected to Vaipn attempts contact with a known malware-associated IP address or domain, the user will receive a notification from our servers to the Vaipn app, indicating the detection of malware network activity, and the type of malware suspected.
Important: Vaipn is not scanning your device for malicious applications, nor is Vaipn able to remove malicious applications.
We consider User Activity Data the most sensitive category of data.
For more information on what User Activity Data is retained by Vaipn, please refer to our Privacy Policy.
What does it mean if I get a MalAware alert?
If you receive an alert in the Vaipn Android app, traffic tunneled through the Vaipn servers, contacted, or attempted to contact IP address(es) and URLs associated with known malware.
The MalAware notification will display additional information under the “Detected Malware” section, indicating the type of malware connection that was detected. To find out more about the various types of malware that can be detected, see the table below.
Malware Type and Description
RAT C&C (Async, Bit, DC,Orcus, etc.)
Command and Control (C&C) server, family of backdoors and Trojans, usually unknowingly downloaded
(common ‘malspam’ ‘malvertisements’)
qakbot
backdoor, commonly spreads through removable drives, downloads
dircrypt
family of backdoors and Trojans, usually unknowingly downloaded
(common ‘malspam’ ‘malvertisements’)
goz
zeus / ZBOT variant, downloads (malspam)
Gozi C&C
Spyware C&C server, usually unknowingly downloaded
kraken
ransomware, downloaded or engaged by another instance of malware
mirai
botnet commonly used for DDoS attacks from linux boxes
murofet
zeus variant (with dgs), downloads (malspam)
proslikefan
backdoor, commonly spreads through removable drives, downloads
bedep
family of backdoors and Trojans, usually unknowingly downloaded
(common ‘malspam’ ‘malvertisements’)
ramnit
backdoor, commonly spreads through removable drives, downloads
RedLineStealer C&C
trojan spy C&C server. commonly spreads through malspam + downloads.
ServHelper
trojan spy C&C server. commonly spreads through malspam + downloads.
sinkhole
Historical C&C server. Should be treated as a potential or active threat.
sphinx
zeus variant, injects, keylogging, FTP grabber (common ‘malspam’ ‘malvertisements’)
vawtrak
networked backdoor (spam, info stealer), “crimeware as a service”
What should I do if malware is detected?
If you happen to receive a MalAware alert, be very cautious. Use a third party service to scan your device for malicious software before using it further.
There are many resources and applications available that contain additional information about prevention and mitigation of malware attacks. Security In A Box provides recommendations to protect your device from malware and what to do if malicious activity is detected.
How do I opt-in to MalAware?
After updating to the latest version of Vaipn Android, upon first launching the application you will be presented with the option to receive MalAware alerts. Select “Yes” to opt-in.
If for any reason you want to check if you are opted-in or disable alerts, you can enable MalAware by navigating to the “Options” tab under “More Options.”
How do I make the most of MalAware?
For the best performance of MalAware, use the "Tunnel all apps" option found in the Options tab under “VPN settings.” This ensures that the network activity for applications installed on your device will also be tunneled, and subject to network-level malware detection.
Disclaimer
Vaipn gives no warranty for the use of, or reliance of, and does not accept any liability or responsibility for the accuracy, inaccuracy and completeness of information contained within the malaware.io website.
Under no circumstances will Vaipn be held responsible in any way for any and all claims, damages, expenses, losses or liabilities as a direct or indirect result of your use and interpretation of the malaware.io website.
malaware.io Privacy Policy
malaware.io is committed to protecting the privacy interests of its customers, end users, distributors and suppliers. This privacy policy is intended to provide you with general information on how malaware.io collects, uses, stores, and shares information.
All data processed through this site is controlled by SHM Tech LLC.
For a more detailed list of Vaipn’s policies, please refer to our Privacy Policy
Cookies
malaware.io only uses cookies and similar tracking technologies to carry out activities that are essential for the proper operation of the website.
What data is collected and by who?
Google Analytics:
We use Google Analytics to collect information about usage. The information collected by Google Analytics will only be used for statistical analysis related to your browsing behaviour on this specific site. The information we obtain from Google Analytics is not personally identifying, nor is it combined with information from other sources to create personally identifying information.
Google Analytics plants a permanent cookie on your web browser to identify you as a unique user the next time you visit the site, but this cookie cannot be used by anyone except Google, and the data collected cannot be altered or retrieved by services from other domains.
Google's ability to use and share information collected by Google Analytics about your visits to this site is restricted by the Google Analytics Terms of Service ( https://www.google.com/analytics/terms/us.html) and the Google Privacy Policy ( https://www.google.com/policies/privacy).
You may choose to opt out by turning off cookies in the preferences settings in your web browser. You can also visit Google’s Opt Out Tool ( http://tools.google.com/dlpage/gaoptout)
How is the collected data used?
malaware.io aggregates all coarse data and does not store any personally identifiable information. The aggregated data is used to measure traffic to the website, time spent on the website, and activities taken while on the website, including engagements with advertising. For more information about how data is collected and used, please view our Cookie Policy.
What else do I need to know?
Links to Other Websites:
malaware.io may contain links to other websites of interest. However, once you have used these links to leave our site, you should note that we have no control over any other website. Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites, and such sites are not governed by this privacy statement.