Skip to main content

Users can now remove xHelper, the irremovable malware


Hooray! You can now remove the unremovable android malware. Yes, it is xHelper, the unremovable android malware. After 10 months of research and hard work, the cybersecurity experts have finally found a way to remove xHelper from your smartphones, which was not possible earlier. According to cybersecurity experts, the method is reliable and effective.


What is xHelper?
xHelper caused a lot of troubles across the globe to android users for a very long time, 10 months to be specific. It first appeared in March last year, when smartphone users complained about the malware came on the internet that certain apps couldn't be uninstalled from their smartphones, even though the users did a factory reset. Though the apps were not malicious or harmful, they, however, sent annoying ads or popups to the users all the time. As time passed, xHelper kept on targeting more and more devices until it was spread almost everywhere around the world. Last year, until August, xHelper infected merely 32000 smartphones, but by the end of October, the numbers climbed up to 45,000. Malwarebytes and Symantec, both a cybersecurity company, published this information in their reports.

How it spread? 
Cybersecurity experts say that the malware redirected the users to android hosting websites, and this is how the malware spread. These websites allowed users to download apps from them, without the user needing to go to the play store. However, the apps contained hidden HTML coding that released the malware in the smartphones once downloaded. Finding the source of the malware and how it spread was easy, however, the cybersecurity experts had trouble removing it through traditional methods like factory resets or uninstalling the xHelper app. Even after the factory resets, the malware would reappear by itself after some time, installing the app by itself without asking the user permissions.

How to remove xHelper?
According to Collier, users can follow these 6 steps to remove xHelper from their smartphones:

  1. Install a file manager application from the google play store. The app should be able to find directories and search files. 
  2. Disable Google play store (temporarily)
  3.  Run a scan in the Malwarebytes. Try searching for fireway, xHelper, and settings (in case 2 settings are shown) 
  4. In the file manager, search for com.mufc. 
  5. If the file manager shows results, sort the result by 'date found.' Delete anything with com.mufc. 
  6. Enable google play after doing the necessary changes.


source https://www.ehackingnews.com/2020/02/users-can-now-remove-xhelper.html

Comments

Popular posts from this blog

Betting and Gambling Websites under Cyberattack from Chinese Hackers

Since last year's summers, Chinese hackers have been targeting South Asian companies that own online gambling and betting websites. The gambling companies in South Asia have confirmed the hacks, whereas rumors of cyberattacks on betting websites have also emerged from Europe, and the Middle East, however, the rumors are yet to confirm, says the reports of cybersecurity group Trend Micro and Talent-Jump. Cybersecurity experts claim that no money was stolen in these hacks against the gambling websites. However, hackers have stolen source codes and databases. The motive of the attack was not a cybercrime, but rather espionage intended attack to gain intelligence. According to the experts, a group named ' DRBControl ' is responsible for the cyberattack. According to the reports of Trend Micro, the hacking techniques used in this particular cyberattack incident is similar to methods done by Emissary Panda and Winnti. All of these hacking groups are from China that has launc...

Github Escapes from Octopus Malware that Affected its 26 Software Projects

Github, a platform where every malicious software report is equally different in its place, manages to escape from a malware threat.  Github, an organization that united the world's largest community of coders and software developers, revealed that hackers exploited an open-source platform on its website to distribute malware. The hackers used a unique hacking tool that enabled backdoors in each software project, which the hackers used to infiltrate the software systems. "While we have seen many cases where the software supply chain was compromised by hijacking developer credentials or typosquatting popular package names, a malware that abuses the build process and its resulting artifacts to spread is both interesting and concerning for multiple reasons," said Github on its security blog. Fortunately, the hackers attempt to exploit the open-source platform was unsuccessful. Still, if it were, on the contrary, hackers could've secured a position in the softwares, ...

Maze Ransomware Operators Leaked 2GB of Financial Data from Bank of Costa Rica (BCR)

Bank of Costa Rica (BCR) has been receiving threats from the threat actors behind Maze ransomware who have stolen credit card details from the bank, the ransomware gang started publishing the encrypted financial details this week. The Banco de Costa Rica is one of the strongest state-owned commercial banks operated in Costa Rica, starting from humble origins of mainly being a private commercial bank, it expanded to become a currency issuer and one of the most renowned baking firms in Central America contributing largely in the financial development of the nation. The hacker group behind the data leak have demanded a ransom from Banco de Costa Rica at various occasions, however, to their dismay they observed a lack of seriousness in the way the bank dealt with these previous leaks and it served as a primary reason that motivated the latest data leak, according to an interview with Maze ransomware operators. As per the claims made by the attackers, Banco de Costa Rica's netw...