News

Flubot Malware arrives on Android phones in Australia – and Telstra is on the case

The unending battle against scammers and malware continues, with Telstra today publishing details of a new piece of malware called FluBot.

The issue is affecting Android users globally, with the FluBot first showing up in Europe and more recently here in Australia. The malware is spreading via a poorly worded SMS which mentions either a missed call, or voice mail and offers a shortened link which links to a legit looking web page which prompts users to install an app. 

The malware is isntalled as an app, relying on users having enabled the ‘Install from Unknown Sources’ option in settings. This setting allows unsigned APKs (Android apps) to be installed from sources which aren’t Google Play.

Once you’re infected FluBot then has access to your personal information, including banking details and your contact list which allows the malware to propogate. According to Telstra, Flubot is sending itself to random phone numbers as well as contacts from your contacts list.

The issue is fairly wide-spread affecting a large number of customers, with a number of EFTM readers advising on the ManCave group that they too have received the SMS’ as well.

Telstra has advised of a couple of ways you can tell if you’ve been infected with FluBot, advising:

  • In your apps is a new app called “Voicemail” with a blue cassette in a yellow envelope. If you try to uninstall you receive an error message “You can not perform this action on a system service.”
  • You receive text messages or telephone calls from people complaining about messages you sent them but you did not know about the messages.
  • Telstra may detect you sending very high volumes of messages and send you an SMS, saying: “Your phone is sending many SMS and may be infected with malware/virus. Please remove the malware app or we may suspend your ability to send SMS. Search FLUBOT on Telstra website or call us for help.”

If you have been infected by FluBot, there’s steps you can take including checking out security sites ESET and FSecure for details on how to remove it or you can of course always just factory reset the phone, however you should be careful restoring any backups unless they’re older than the date your phone was infected. 

It’s a timely reminder that leaving the Install from Unknown Sources option checked is a bad idea, and having some antivirus software on your phone definitely can’t hurt.

Telstra is continuing to work with security researchers, but if you do see one of these messages delete it and do not click the link. 

Recent Posts

  • Tech

Google Unveils Pixel 11 Lineup with ‘HiLight’ glow notifications and improved Gemini Intelligence

At their event in the US, Google has announced the next generation of Google Hardware…

12 hours ago
  • Tech

Google announces the Pixel Watch 5, its most advanced fitness and health device yet, and a finder tag, the Pixel Tag

Alongside the Google Pixel 11 devices overnight, Google has announced the Pixel Watch 5, its…

12 hours ago
  • Tech

Insta360 Marks 10 Years of 360-photography innovation with the All-New X6 Camera

Marking the tenth anniversary of the Nano, Insta360’s first foray into 360 photography with a…

13 hours ago
  • Motoring

BYD updates the EV that started it all for them in Australia – The Atto 3 evolves into the Atto 3 EVO

After bursting onto the Australian motoring scene almost 4 years ago with their first for…

18 hours ago
  • Tech

Samsung Galaxy Z Fold8 Review – Love the form factor, still not perfect

There's a lot of pressure on this device, Samsung has re-imagined the smartphone entirely -…

18 hours ago
  • Tech

The EFTM podcast – ISP recommendations, Free to Air reception issues, Mesh dramas and Optus Soccer Data blitz

This week Lori is back with questions about her email and the new laptop. Marty…

2 days ago