Top 10 Android Fee-Charging Viruses

The original poster: Eternal Glory@〖Shuaihong〗 Views: 464 Replies: 9 Posted in: 2013-04-10 16:56:24
Alright, this time I won't hide it, everyone bear with it! \←←←←←← For splitting use only →→→→→→\ First Place: Virus Name: a.payment.dg.a.[System Killer] Virus Description: This virus is built into the ROM and has the highest system privileges. It cannot be uninstalled through normal methods, can prevent certain security software from being installed, sends a large number of premium-rate SMS, and deletes messages sent from specified numbers, causing some economic loss to users.\ Second Place: Virus Name: a.payment.keji.[Thirsty Fee Absorbing Demon] Virus Description: This virus is bundled with legitimate game software to induce users to install it. After the main program is installed, it prompts for an upgrade. Once the user confirms the upgrade, the virus subpackage is installed; at the same time, the virus attempts to exploit system vulnerabilities to gain root privileges for silent installation. After activation, it sends messages to number 106***56 every few minutes, blocks messages from 10086, and dials specified numbers in the background, which are remotely set through a server and may consume a lot of the user's funds; additionally, the virus terminates certain security apps, posing a security risk to the user's phone.\ Third Place: Virus Name: a.payment.live.a.[Fake Google Service Framework] Virus Description: This virus disguises itself as a critical system program (Google** Framework). It mainly installs on the user's phone via other malicious software. Once activated, it fetches billing port numbers, IVR phone numbers, and other information from the virus server in the background, sends SMS to 100*** without notification, possibly subscribing to high-fee SP services, and deletes receipt messages; it also makes unauthorized IVR calls, leaking user privacy and causing economic loss.\ Fourth Place: Virus Name: a.payment.ryengine Virus Description: After installation, this virus automatically runs on startup. Once launched, it secretly sends premium-rate SMS, collects SMS information, silently downloads software, and performs other rogue behaviors in the background, threatening the security of the user's phone.\ Fifth Place: Virus Name: a.payment.jz.[Transforming Peeping King] Virus Description: This virus often attaches itself to tampered popular software, especially puzzle games. Once activated, it sends messages in the background and leaks user privacy; it also executes background calls according to commands from the server, consuming user funds without their knowledge.Through cloud control, it installs unknown software on users' phones and uninstalls other software that interferes with virus operations; it quietly runs in the background, automatically recording all local SMS content and call logs, storing them in files named zjphone*.txt and zjsms.txt, and regularly uploading them to the designated server lebar.gicp.net, leading to the leakage of users' privacy. (Due to word limit, this post will continue)

Sixth place: Virus Name: a.payment.pmx. [Flashing and Charging Thief] Virus Description: This virus has no startup icon after installation. Once activated, it sends billing messages to certain SP numbers at specific times, deletes related feedback messages, causing users to suffer serious economic losses unknowingly; at the same time, the virus automatically connects to the network in the background, reads and uploads user information, causing leakage of personal privacy.

Seventh place: Virus Name: a.payment.paojapp. [*Jiao] Virus Description: This virus tricks users into downloading and installing it under the guise of common software. After the virus is installed and running, it subscribes to a service called '**Service, Pay * Yuan/Month'. At the same time, the virus will block operator subscription reply messages, preventing users from promptly knowing about the subscription. Without users' knowledge, it maliciously charges fees, causing economic losses.

Eighth place: Virus Name: a.payment.rootsmart.a Virus Description: This virus spreads through other malicious apps, disguising itself as a critical system program, controlled in the background by other malicious apps, sending billing SMS and intercepting receipts. It also automatically dials IVR calls, consuming user charges and posing a significant threat to the security of mobile users.

Ninth place: Virus Name: a.payment.webcool. [Beautiful Wallpaper] Virus Description: This virus often disguises itself as a wallpaper application to induce users to download it. After installation, it regularly forces advertisement windows to pop up at the top of the screen, periodically sends billing SMS, and deletes specified receipt messages, causing direct economic loss to users. At the same time, it collects users' privacy information and sends it to designated mailboxes or servers, leaking users' privacy.

Tenth place: Virus Name: a.payment.fish Virus Description: This virus frequently disguises itself as normal software to deceive users into downloading it. Once launched, it secretly sends billing SMS, causing some financial loss to users.
reply 🤍 0 📤 share collect
( ̄. ̄) Not a single one hit
Thank you to the original poster for sharing...
Wishing the second floor to win a few soon...
Pure top..
It might be better to have one per page.
Bump the original poster
It's still better not to download things recklessly.
Java machine passing by
Support the original poster.
— All replies loaded —

Leave a Reply