Trojan:Android/Kituri, Trojan:Android/Kituri.A


Trojan:Android/Kituri sends SMS messages to a list of premium-rate numbers retrieved from a remote location.


Automatic action

Once the scan is complete, the F-Secure security product will ask if you want to uninstall the file, move it to the quarantine or keep it installed on your device.

Find out more

Knowledge Base

Find the latest advice in our Community Knowledge Base.

User Guide

See the user guide for your product on the Help Center.

Contact Support

Chat with or call an expert for help.

Submit a sample

Submit a file or URL for further analysis.

Technical Details

Upon execution, Trojan:Android/Kituri sends the device.s International Mobile Equipment Identity (IMEI) number to a remote server, then connects to a remote location to obtain a list of premium-rate numbers. The app subsequently sends SMS messages to these numbers.

To distract the user from any indications of these activities taking place, Kituri.A displays a 'User Agreement' for the user's attention.


This malware is discussed in: Q1 2012 Mobile Threat Report (PDF).

Date Created: -

Date Last Modified: -