Malware that uses a sandbox(Droid plugin) to dynamically load and run an app, without actually installing the app, just like VirtualApp. This makes it harder for antivirus solutions for recognizing the malware as its malicious parts are not put away in the host application. The malware masks itself as Wandoujia, a well known Android application store in China, and uses Droid plugin to install modules by utilizing Droid plugin. This malware has been recognized by Avast as Android:Agent-MOK.”]

