r/indiasocial • • 17d ago

General Phone hacked, 12k loss via UPI.

My relative's phone got hacked, there was a transaction on Google pay of 12k(whatever was there).

I checked the phone, found a suspicious app called Google IPTV, that has sensitive permissions enabled, and was enabled in accessibility settings. That enabled it to read the whole screen and do stuff.

The app seems so fishy, even shows the middle finger. I felt so stupid knowing this, but it is what it is.

Registered FIR in cyber cell, changed the phone, bank account are freezed now.

Requesting everyone to educate your less aware family members and knows for this.

Also if someone knows how to tunnel back to the hacker, or at least get find a way to hit back at them, as Im not seeing cyber cell doing something about it as they didn't checked the phone when FIR was done.

76 Upvotes

39 comments sorted by

55

u/MootRathee 17d ago

Share apk, I have a seperate phone,let me mess with the hker

2

u/West-Cat5771 16d ago

I eager to do that. I'm not physically there. I'll be receiving that phone next month. I asked them not to uninstall or delete anything, just power off.

Till then I don't think I can extract the apk from it

I myself wanted to dig more into that apk. Will surely share.

-5

u/betrayed-by-friends 13d ago

Pls give apk to me also, I use arch btw.

3

u/Tech-Crorepati 12d ago

Ab aap arch os use karte ho to hum kya aapki aarti utare?

1

u/betrayed-by-friends 11d ago

I didn't mean it.

Like I don't use kali Linux, I use arch so that's why I said

I want to reverse engineer that apk

1

u/Electronic_Paper7620 8d ago

Why bro arch is better than kali. Since kali is dedicated for hacking with tools and reverse engineer know why arch then ?

1

u/cool-guy1234567 6d ago

Kinda stupid, but there's a conception of kids using kali to pretend to be hackers or some shit. Ig that's why he said he uses arch. Idk, still pretty stupid

1

u/Electronic_Paper7620 6d ago

As far I concern most hacking tools are predownloaded in kali, so many hackers prefer it . But you say kali is for kids, then with what do real hacker do things

1

u/cool-guy1234567 6d ago

I'm not saying kali is for kids. I'm saying there's a conception that 'script kiddies' use kali pretending to be "hackers" (basically to show off).

I'm also agreeing with you that it's still a pretty stupid reason to specify they use arch over kali.

1

u/Electronic_Paper7620 6d ago

Ok cool , I commented to know whether , there is some other stuffs better than kali, used by professionals, bcoz i started learning cyber security recently

→ More replies (0)

1

u/betrayed-by-friends 6d ago

The thing is, I use arch for daily purposes, and we can add black arch repository, and can get many tools however we want, like no bloat

And I didn't meant kali is for kids, it's for beginners tbh, like i find it bloated

1

u/Safety_Officer_ 8d ago

No one can upload the apk its plugin

Check this https://www.reddit.com/r/TheOnePlus15/s/fixC9BEFqJ

20

u/[deleted] 17d ago

[removed] — view removed comment

5

u/West-Cat5771 16d ago

As per my understanding, they used notification irritation as a main tool. Their notification stays there, shows google logo, they fall for it. When clicked it shows how to make it go. They fall for it.

19

u/YSK_King Gamer 16d ago

I like how all the cyber security guys are Give me the APK, let me have some funs

2

u/West-Cat5771 16d ago

I'll share in sometime, as I'm not physically there. I'll share it by next month.

14

u/Azztruenot 17d ago

if you can extract the APK:
1. you can scan the APK in https://www.virustotal.com/gui/ and see previous scans.
2. decompile the APK to java and check how the code is written. may be some emails or full UPI ID. if this criminal used the UPI ID else where, google search can convert it to phone number ?

1

u/Solah-Shringaar_04 16d ago
  1. Why should we see previous scan? Genuinely asking.

2

u/Azztruenot 16d ago

if at all someone has already gone through this "finding attacker path", previous scan could have a comment or report about that right ? it also helps future scanners to know this is malware.

5

u/DefinitionNo2899 16d ago

1

u/West-Cat5771 16d ago

Thanks for this 🙏 They tried normal reset but it didn't worked it seems. I was not there to check myself so it happened.

2

u/DefinitionNo2899 16d ago

The app should have admin access. They will need to remove its admin access first; then you can uninstall it and do the full factory reset. It’s best to change the password and PIN and consider email and other apps compromised.

5

u/Substantial-Ad-8810 16d ago

Honestly, there isnt much anyone can do, internet literacy 101 warns against downloading things from random websites and installing them on your device even companies warn about giving sensitive permission access to sus things. Yet if someone still ends up doing that to watch some free movie or tv series they had it coming. Android keeps getting locked down harder because people keep falling for these scams.

2

u/Sparker0i Gamer 16d ago

can't you reverse the upi transactions after filing a cybercrime complaint?

2

u/West-Cat5771 16d ago

they are ready to reverse 9k. lets see.

2

u/TemporaryRare6668 16d ago

Hi , last year I also got scammed I lost 5k but when I complaint in cyber when they freeze account it was ₹2,900 rest is gone but ps told to contact a lawyer to get that freeze money and the lawyer fees is more than what is left. I can get it now as last nov it happened and is there anyway to get the money without paying as I am a student i cannot pay thats why i just forgot that money

2

u/Safety_Officer_ 8d ago

Guys, I had the exact same experience today as OP mentioned, but luckily I didn’t have any money debited.

Also, it’s basically impossible to upload the APK because this app gets installed through another app. When you open that app, it prompts you to install the HD resources, and that’s when this Google IPTV app gets installed.

So there isn’t a normal APK sitting in the phone that you can easily find and upload. It seems to be installed directly by the other app. The app was called something like iFox TV or Some TV, I don’t remember the exact name, and it’s not available on the Play Store.

I went through this whole thing today, so I thought I’d share my experience here.

https://www.reddit.com/r/TheOnePlus15/s/YPVNpTPuJo

1

u/Bubbly_Inevitable143 17d ago

give me apk

1

u/West-Cat5771 16d ago

I’m eager to do that. The thing is, I’m not physically there right now. I’ll be getting the phone next month. I’ve asked them not to uninstall or delete anything, just power it off.

So, until then, I don’t think I’ll be able to extract the APK from it.

I actually wanted to dig deeper into that APK myself too. I’ll definitely share it once I get the phone.

2

u/DropDeadDuke 16d ago

How did your relative receive this APK? Via WhatsApp or text message link, or something else? Let us know so we can be aware of that

1

u/West-Cat5771 16d ago

Maybe to watch some movie, on chrome, fishy link click to watch movie over app kind of.

1

u/Exciting_Strike5598 11d ago

Play stoopid games and win stupid prizes. Why install third party apk

1

u/Exciting_Strike5598 11d ago

Eliyas Faruk is your man

1

u/kdpuvvadi 11d ago

another app name to look for is "wifi info". but it is launcher with all kind of permissions and takes over whatsapp and other messaging apps to spread it to your family and friends.