Russian phone Trojan tries to ring up charges

Anti-virus companies are warning of new malicious software that can infect any mobile phone capable of running Java applications, not just feature-rich smart phones.

The Trojan horse was first spotted by Moscow-based Kaspersky Lab, which calls it RedBrowser. The malicious code poses as an application that promises people the ability to visit mobile Internet sites using text messages instead of an actual Net connection, Kaspersky said in a statement on Tuesday.

Instead, the Trojan sends messages to certain premium rate numbers that charge between US$5 and US$6 per message, Kaspersky said. That could drive up the text message bill for mobile phone users in Russia on the Beeline, MTS and Megafon networks.

So far, Kaspersky has received only one sample of RedBrowser. It is a proof-of-concept Trojan and has not actually infected any handsets in the wild.

"However, other versions of RedBrowser, or similar programs, may well be circulating on the Internet," Kaspersky said. "RedBrowser is a sign that virus writers are extending their reach and no longer only targeting smart phones."

Other experts agreed, pointing out that previous mobile phone pests targeted mostly smart phones.

Security and wireless industries disagree about how to fend off the emerging threat.

"The [RedBrowser] threat itself is low risk and very specific to the Russian market, but it is an important proof of concept in the mobile space," a McAfee representative said in a statement. "It is the first threat aimed at feature phones using Java and therefore independent of either the Symbian or Microsoft operating systems for mobile phones."

The Trojan is a Java application, a JAR format archive. The file, called "redbrowser.jar", can be downloaded to the handset from the Internet, via Bluetooth or a PC link, Kaspersky said. The file can easily be removed from a phone using the standard application removal utilities.

Mobile phone users should be careful not to download or launch unknown programs, antivirus companies suggested.

Like this article? Click below to send it to your mobile for free!

Talkback 0 comments


Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Renai LeMay StartupCamp Melbourne: The review
    StartupCamp Melbourne looks to have produced just as interesting ideas as the Sydney event which immediately preceded it, but the Victorian start-ups appear to have stumbled during execution. Sydney 1, Melbourne 0.
  • Array Google should come clean on datacentres
    It's nice that Google says it has put an effort into making its datacentres more energy efficient, but the search giant's pledges won't mean much until it discloses just how many of the beasties it's actually running.
  • Array US shows what OPEL could have been
    Sprint's WiMAX roll-out in Baltimore will prove the Australian government's decision to worm its way out of the Opel WiMAX contract was a short-sighted, and ultimately damaging, political stunt that has benefited nobody.
  • More blogs »

Tags

Back to top

Featured