Beautiful Virgin Islands

Wednesday, May 13, 2026

Delete these 17 iOS apps from your iPhone, researchers have found trojan malware on them

Delete these 17 iOS apps from your iPhone, researchers have found trojan malware on them

Researchers have found 17 iOS apps, all by one India-based app developer called AppAspect Technologies Pvt Ltd, which were infected by clicker trojan malware. Apple has removed the apps from the App Store.
Researchers have found 17 iOS apps, all by one India-based app developer called AppAspect Technologies Pvt Ltd, which were infected by clicker trojan malware. The apps have all been taken down by Apple from the App Store, but users who still have any of these apps on their iPhone should delete them given the security risk that they pose.

The results were revealed in a new research done at Wandera cybersecurity firm. These apps infected with clicker trojan malware are as follows: RTO Vehicle Information, EMI Calculator & Loan Planner, File Manager – Documents, Smart GPS Speedometer, CrickOne – Live Cricket Scores, Daily Fitness – Yoga Poses, FM Radio – Internet Radio, My Train Info – IRCTC & PNR (not listed under developer profile), Around Me Place Finder, Easy Contacts Backup Manager, Ramadan Times 2019, Restaurant Finder – Find Food, BMI Calculator – BMR Calc, Dual Accounts, Video Editor – Mute Video, Islamic World – Qibla and Smart Video Compressor.

Keep in mind the My Train Info – IRCTC & PNR is not the official IRCTC app. There’s no official iOS version of the app. Given the names of the apps, it looks like these were mostly targeted at users based in India.

According to the report, “the apps would communicate with a known command and control (C&C) server to simulate user interactions in order to fraudulently collect ad revenue.” The clicker trojan module in the apps is designed to carry out ad fraud-related tasks in the background, notes the report. The tasks include continuously opening web pages or clicking links without any user interaction.

The objective is to generate revenue for the attacker on a pay-per-click basis. The report also revealed that the app developer has a total of 51 apps published on the App Store. “We tested all of the free iTunes Applications of the developer and the results show that 17 out of the 35 free applications are all infected with the same malicious clicker functionality and are communicating with the same C&C server,” notes the report.

Apple “rigorously patrols the App Store to protect customers and to detect apps that may be trying to scam customers”. As per sources, when Apple suspects apps are not acting in conformance with its guidelines, they are immediately investigated, followed by action which might include removal from the Store. In this case, the sources added, 18 apps were removed but no Trojan malware was found. The apps apparently had code that allows for the artificial click-through of ads which is a violation of our guidelines.

As the report points out, the bad apps were able to bypass security checks because it activates a communication channel directly with the attacker and this is not within Apple’s view. Wandera also notified Apple’s team of the malware on all the apps, following which Apple has taken down all the compromised apps, except for two.

These are ‎My Train Info – IRCTC & PNR and Easy Contacts Backup Manager. However, searching for the My Train Info – IRCTC & PNR app on the store does not reveal any results, which means the app could have been removed.
Newsletter

Related Articles

Beautiful Virgin Islands
0:00
0:00
Close
The Great Western Exit: Why Best Citizens Are Fleeing the Rich World [PODCAST]
The New Robber Barons of Intelligence: Are AI Bosses More Powerful Than Rockefeller?
The End of the Old Order [Podcast]
Britain’s Democracy Is Now a Costume
The AI Gold Rush Is Coming for America’s Last Open Spaces [Podcast]
The Pentagon’s AI Squeeze: Eight Tech Giants Get In, Anthropic Gets Shut Out [Podcast]
The War Map: Professor Jiang’s Dark Theory of Iran, Trump, China, Russia, Israel, and the Coming Global Shock [Podcast]
Labour Is No Longer a National Party [Podcast]
AI Isn’t Stealing Your Job. It’s Dismantling It Piece by Piece.
Lawyers vs Engineers: Why China Builds While America Litigates [Podcast]
Churchill’s Glass: The Drunk, the Doctor, and the Myth Britain Refuses to Sober Up From
Apple issues an unusual warning: this is how your iPhone can be hacked without you doing anything
The Met Gala Meets the Age of Billionaire Backlash
Russian Oligarch’s Superyacht Crosses Hormuz via Iran-Controlled Route
Gunfire Disrupts White House Correspondents’ Dinner as Trump Is Evacuated
A Leak, a King, and a Fracturing Alliance
Inside the Gates Foundation Turmoil: Layoffs, Scrutiny, and the Cost of Reputational Risk
UK Biobank Breach Exposes Health Data of 500,000, Listed for Sale on Chinese Platform
KPMG Cuts Around 10% of US Audit Partners After Failed Exit Push
French Police Probe Suspected Weather-Data Tampering After Unusual Polymarket Bets on Paris Temperatures
News Roundup
Microsoft lost 2.5 millions users (French government) to Linux
Privacy Problems in Microsoft Windows OS
News roundup
Péter András Magyar and the Strategic Reset of Hungary
Hungary After the Landslide — A Strategic Reset in Europe
×