The following Yara rule can be used to detect the malware:
The following link was used to download the malicious shortcut file: play gspace shortcut file download for android link
The MD5 hash of the malware is:
https://www example.com/play-gspace-shortcut-file.apk The following Yara rule can be used to