The Register® — Biting the hand that feeds IT

Feeds

Windows Mobile Trojan frags gamers

Premium-rate calls on the sly

Regcast training : Hyper-V 3.0, VM high availability and disaster recovery

Scammers have hidden a nasty surprise for users who downloaded doctored copies of a Windows Mobile game.

Hackers adapted a demo version of 3D Anti-Terrorist Action to include a Trojan that makes premium-rate calls costing around US$6 a minute on the sly. Doctored copies of the Counter-Strike-alike game are designed to call premium-rate phone numbers in the Antarctic, the Dominican Republic and Somalia, leaving users none the wiser until they received whopper mobile phone bills.

The Terdial-A Windows-CE Trojan was first identified in March but has recently made its way onto several sites hosting Windows mobile apps, prompting a fresh warning from gaming site gamepron.com.

It adds that even legitimate versions of the application lack engaging gameplay.

Screenshots of the application, along with extracts from a UK victim's email, can be found in a blog post by Sophos here. The net security firm reckons a Russian-language speaker wrote the malware behind the attack. ®

Agentless Backup is Not a Myth

Brrrrrrr

"...premium-rate phone numbers in the Antarctic..."

Seriously?!? Is there much demand on the continent for penguin-based sexy chat?

2
0
Anonymous Coward

@Mark Eaton-Park

When I worked for a voip company we blocked certain country codes( these were counties that allowed any number that the owned to be used as premium numbers) and all premium rate numbers as we found very few of our customers need that kind of access it solved alot of problems. Also here in the US the phone company is just acting as billing agent for the company charing on the numbers. You can not have your phone turned off for not paying for premium rate numbers . The phone companies have even been know to remove that portion from your bill(provided you have no history of calling premium rate numbers ).

1
0

It's not like this is new.

Dodgy copies of things have always been a vector for malware, right back to ye olde floppy disks and tape drives. I think you could say "stupid prices and ridiculous DRM turned out to be the best malware-distribution solution created" and still be accurate. That's a far too inconvenient truth, though.

What I'm annoyed at is that the jump from dial-up to broadband put paid to rogue dialler software. Now we have mobile computers with phones attached to them, the old attacks are coming back. Seriously, how hard would it be to put a warning hook in the operating system? "This software is trying to dial a premium rate number. This could cost you an arm, leg and possibly a few teeth. Do you want to continue? (y|n)"

1
0

More from The Register

 breaking news
Number of cops abusing Police National Computer access on the rise
Only a telegram from the Queen can get you off it
 breaking news
NSA PRISM snoop-gate: Won't someone think of the children, wails Apple
10,000 things probed, mostly about missing kids, Alzheimer patients, we're told
Flash flaw potentially makes every webcam or laptop a PEEPHOLE
But it's a Google problem - Chrome only, insists Adobe
Internet fraud still stings suckers
Australians twice as gullible as Americans
 breaking news
NSA PRISM-gate: Relax, GCHQ spooks 'keep us safe', says Cameron
Whatever they are up to, it's all above board, we're told
 breaking news
Yahoo! joins! rivals! in! PRISM! data! request! admission!
Keep calm and carry on using American tech firms, folks
PRISM snitch claims NSA hacked Chinese targets since 2009
Snowden suddenly looks safer in Hong Kong after revelations
 breaking news
US chief spook: Look, we only want to spy on 6.66 BEELLLION of you
Americans assured they are not in the NSA's sights
Speech-to-text drives motorists to distraction
Will talking to you mean I crash into that car up ahead, Siri?
DHS warns of vulns in hospital medical equipment
Has your doctor's anasthesia machine been hacked?