1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Trojan:Android/BeanBot.A

Category:Malware
Type:Trojan
Platform:Android

Summary

BeanBot.A forwards device's data to a remote server and sends out premium-rate SMS messages from the infected device.

Disinfection

F-Secure's Mobile Security product blocks installation of this program with default settings.

Additional Details

Upon launching, BeanBot.A prompts an 'update' option that would connect to a command and control (C&C) server when clicked on. It then forwards the following information to the server:

  • International Mobile Equipment Identity (IMEI) number
  • International Mobile Subscriber Identity (IMSI) number
  • Phone number

Additionally, BeanBot.A also sends out premium-rate SMS messages from the infected device, leaving the user with a hefty bill charged to his or her account.



BeanBot.A listed as 'BlowUp,' and the permissions it requested upon installation