BeanBot.A forwards device's data to a remote server and sends out premium-rate SMS messages from the infected device.
Find the latest advice in our Community Knowledge Base.
See the manual for your F-Secure product on the Help Center.
Submit a file or URL for further analysis.
Upon launching, BeanBot.A prompts an 'update' option that would connect to a command and control (C&C) server when clicked on. It then forwards the following information to the server:
Additionally, BeanBot.A also sends out premium-rate SMS messages from the infected device, leaving the user with a hefty bill charged to his or her account.
BeanBot.A listed as 'BlowUp,' and the permissions it requested upon installation