Maleware Scam
Malware Scam
What You Need to Know
Cybercriminals are using fake apps to mimic real banking tools and steal your sensitive information.
How It Works:
The malware disguises itself as a legitimate app, then uses your device's permissions to simulate your real banking app—secretly capturing your login credentials, PIN, and transactions.
How it Spreads:
Criminals may disguise this malware inside apps that impersonate legitimate tools—like utilities or music apps—and distribute them through unofficial app stores or deceptive links. When the app is installed, accessibility permissions give malware deep access to run real apps virtually, hiding its activity from detection.
Warning Signs:
-
An app asks for accessibility or device admin permissions during installation.
-
Your banking app behaves unusually—like showing a maintenance screen before you log in.
-
You notice new apps installed that you didn’t authorize.
-
You see unusual wallet or app behavior when using mobile banking.
How to Stay Protected:
-
Install apps only from trusted sources (e.g. Google Play, Apple App Store).
-
Enable Google Play Protect or equivalent, and keep it updated.
-
Avoid clicking links from unknown emails or text messages.
-
Don’t grant accessibility or other high‑level permissions unless you fully trust the app.
-
Activate multifactor authentication for banking and app logins.
-
Regularly review installed apps—remove anything unfamiliar—and scan your device frequently.
Suspect Fraud?
If you believe you have been the victim of this scam or other fraud, please contact our Customer Connection Hub at 800.355.0641, then visit reportfraud.ftc.gov and report the scam as well. You may also want to:
-
Remove suspicious apps immediately.
-
Reset your banking passwords and security PINs.
-
Switch your device to factory‑reset mode as needed and reinstall apps carefully.
Your security is our priority, and together, we can keep your accounts safe.