Zitmo, which hit Android devices back in July 2011, refers to a version of the Zeus malware that specifically targets mobile devices.
Denis Maslennikov, a security researcher at Kaspersky Lab, also identified a new Zitmo variant for Android using the same command and control (C&C) numbers as the BlackBerry versions. While previous Android variants have been primitive, the latest.apk dropper, which shows up as an app "Zertifikat," looks "more similar to 'classic'" Zitmo, he said. When executed, it displays a message in German that the installation was successful, along with an activation code. The Android sample also included a self-issued certificate that indicates it was developed less than a month ago.