detection icon

Short bio

Android/Trojan.Spy.Vultur is Malwarebytes’ detection name for a family of banking Trojans that target Android devices.

Type and source of infection

Android/Trojan.Spy.Vultur apps spy on Android devices using mostly screen-streaming and keylogging to obtain information about the victim’s financial apps.

Android/Trojan.Spy.Vultur is usually installed by dropper Trojans created by the Brunhilda Project crew. These droppers can be found in Play Stores posing as legitimate apps.


Malwarebytes for Android protects against Android/Trojan.Bankbot.


These apps can be uninstalled using the mobile devices uninstall functionality, but these apps can be made available under many names. That is where Malwarebytes for Android can help you, by identifying these apps and removing them.

Associated threats

  • Android/Trojan.Spy.Vultur.acrp
  • Android/Trojan.Spy.Vultur.zfsx