These 2 Android apps with over 200M downloads can steal your private videos — did you install any of 'em?

Android mini games containing SpinOK
(Image credit: Dr. Web)

Cybersecurity group Dr. Web and tech vertical Bleeping Computer made a grisly discovery in the Google Play Store. Over 100 apps hosted a nasty malware called SpinOK. The top two most popular infected apps attracted over 100 million downloads!

Which two apps were they? Noizz: video editor with music and Zapya – File Transfer, Share. With SpinOK crawling inside both apps, cybercriminals could access files, replace clipboard contents, and more gnarly, malicious actions that will make the hairs on your neck stand up.

What is SpinOK and what does it do?

Dr. Web categorized SpinOK as a spyware module that steals private data stored on victims' devices — and then sends the information to a remote server. SpinOK "demonstrates seemingly legitimate behavior," according to Dr. Web, rolling out minigames that lead to "daily rewards" to capture users' interest.

Behind the scenes, however, SpinOK is wreaking havoc on the device. It can search for particular files, upload data from the target's phone, and copy and replace clipboard contents. The latter is particularly nasty for crypto enthusiasts. Copying wallet addresses to send crypto from one wallet to another is a common practice in the crypto world. So if your copied wallet address gets swapped with a hacker's wallet address, you could lose your Bitcoin, or whatever digital asset you're sending, forever.

As mentioned, SpinOK can exfiltrate files, so victims' private photos and videos are at risk, too.

Where was SpinOK found?

As mentioned at the outset, the top two apps SpinOK infected was Noizz: video editor with music and Zapya - File Transfer, Share. Collectively, these apps attracted over 200 million uploads, but there's more where that came from.

SpinOK was found crawling around 101 apps via Google Play and they were all downloaded over 400 million times. You can find the complete list of the infected apps here.

Fortunately, all apps except were ousted from the Google Play Store except for Zapya - File Transfer, Share. Why did Google keep it around? Because the developer reportedly submitted a clean version of the app.

If any of these apps are lurking on your phone, it'd be in your best interest to delete them from your phone immediately. And don't forget to get one of the best mobile antivirus apps for your phone to dodge malicious threats like SpinOK (Bitdefender is a good one.)

Kimberly Gedeon

Kimberly Gedeon, holding a Master's degree in International Journalism, launched her career as a journalist for MadameNoire's business beat in 2013. She loved translating stuffy stories about the economy, personal finance and investing into digestible, easy-to-understand, entertaining stories for young women of color. During her time on the business beat, she discovered her passion for tech as she dove into articles about tech entrepreneurship, the Consumer Electronics Show (CES) and the latest tablets. After eight years of freelancing, dabbling in a myriad of beats, she's finally found a home at Laptop Mag that accepts her as the crypto-addicted, virtual reality-loving, investing-focused, tech-fascinated nerd she is. Woot!

Read more
Best 16-inch laptops lede image
The 9 most outlandish computing stories of 2024
DeepSeek whale logo in the style of the TikTok logo.
DeepSeek's success has painted a huge TikTok-shaped target on its back
A keyboard with a button that says "SCAM?"
A years-long scam that began with fake Windows pop-ups ends with PayPal payments
DeepSeek whale logo in the style of the TikTok logo.
The DeepSeek mania proves it's finally — finally! — time to talk about AI privacy
Microsoft Copilot logo with AI sparkle symbol, "Hi, how can I help?" is written below.
Microsoft Copilot just helped me pirate Windows 11 — Here's proof
DeepSeek AI chatbot on a phone
DeepSeek jailbreakers are tricking the chatbot into bad-mouthing the Chinese government
Latest in Antivirus & Cyber-security
TP-Link routers targeted by Chinese state-sponsored cyber attacks
TP-Link routers may face nationwide ban after 'significantly alarming' link to US cyberattacks
What is a VPN kill switch — and why you should use one
You need a VPN for school, here are 3 services we recommend
The AMD Ryzen and NVIDIA RTX stickers on the Acer Nitro 17
'You basically have to throw your computer away': Researchers explain AMD 'Sinkclose' vulnerability, but do you need to worry?
Google Search
This malware is posing as Google Authenticator using Google ads — here's how to protect yourself
Windows 10 BSOD saying "It's not you, it's me."
Microsoft reveals CrowdStrike outage could have a surprising long-term impact on everyday users
MANILA, PHILIPPINES - JULY 19: Long queues of passengers form at the check-in counters at Ninoy Aquino International Airport, amid a global IT disruption caused by a Microsoft outage and a Crowdstrike IT problem, on July 19, 2024 in Manila, Philippines. A significant global outage affecting Microsoft services, particularly Microsoft 365, has caused widespread disruptions across various sectors, including airlines, banks, and health systems. The outage was attributed to a glitch in CrowdStrike's "Falcon Sensor" software, which impacted Windows systems, leading to thousands of flight cancellations and operational chaos in multiple industries. Microsoft has reported that the underlying cause of the outage has been fixed, but residual effects continue to impact some users as the company works on full recovery. (Photo by Ezra Acayan/Getty Images)
The CrowdStrike outage spotlights major vulnerabilities in the global information ecosystem
Latest in News
WWDC 2025 could mark the beginning of the end for certain iPhone users
Error when installing Google Chrome on the Asus Vivobook 16 Flip, on a white desk against a blue background.
"This app can't run on your PC": Google's Chrome Installer broke on Windows, but there's a fix
Nintendo Switch 2 handheld gaming console
Nintendo Switch 2 preorder date: It might be a lot closer than you think, say tipsters
Microsoft Surface Laptop (7th Edition, 2024)
Windows-on-Arm woes: Amazon warns customers about Surface laptop returns
Apple Watch Series 8
Siri is the biggest obstacle to making the Apple Watch an AI hit
The Lenovo Legion Go S in hand running Death's Door in front of a wood table
The Lenovo Legion Go S is a Z1 Extreme trap you'll want to avoid — Here's why