How to protect your phone against Xafecopy malware that's stealing money from you

Around 40 per cent of target of the malware has been detected in India

Xafecopy Trojan: How to identify & protect your devices against malware
Smartphones
Khalid Anzar New Delhi
Last Updated : Sep 11 2017 | 3:02 PM IST
2017  has witnessed numerous ransomware and malware attacks. The new malware Xafecopy Trojan, which steals money from mobile phone users, has been recently detected by a Russia-based internet security firm Kaspersky.  What's alarming is that the penetration rate reveals  40 per cent of the malware's targets has been in India.

The Xafecopy Trojan is categorised as a malware because it gets side loaded along with other useful apps and then loads malicious code onto the device.

Here is how the Xafecopy Trojan works:

The major entry point for any malware or ransomware is the installation of unverified apps from unknown sources. While the default setting of most smartphones restricts installing any app from an unknown source, the setting can easily be changed by the user.

Once the unverified app affected with Xafecopy Trojan or any other malware is installed and activated in the mobile phone, they spread in the root files of the smartphone and operate discreetly.

The Xafecopy malware clicks on web pages with Wireless Application Protocol (WAP) billing - a form of mobile payment that required no credit/debit card information or CAPTCHA for security. The cost of purchases made through WAP billing is charged directly through the user’s bill.

How to identify if your device is affected

Because the malware works through WAP billing it requires a mobile data connection to operate and, therefore, the Trojan malware automatically disables the wireless connection. If you notice that your smartphone turns off the wireless connection randomly, there is a need to get your phone checked.
 
Also check your monthly bill for details. If you see any service activated other than what you know of, get in touch with telecom operator and seek information on it. Get the service cancelled and identify the app that raised the request to activate that service.

Run a background check of all the apps using Google Play protect to understand if all the apps are safe. If the phone fails to respond while scanning the app or if the list of apps shows fewer apps than what you have installed, look at the apps that do not feature in the Google Play app list and uninstall them at the earliest.

How to protect devices against such threats
  • Prohibit the installation of apps from unknown sources. This type of Trojan can be distributed through advertisements, and with this prohibition in place, you simply will not be allowed to install them.
  • Install a reliable mobile security anti-virus and internet security app that keeps a check on apps activity.
  • Most of the telecom operators provide the option to disable WAP billing from the backend. Get the service suspended by getting in touch with a telecom operator.

One subscription. Two world-class reads.

Already subscribed? Log in

Subscribe to read the full story →
*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

Next Story