Vietnamese Hackers Using ‘Maorrisbot’ to Target Indians in WhatsApp e-Challan Scam: CloudSEK

Scammers are reportedly sending fake eChallan messages over WhatsApp impersonating the Parivahan Sewa or Karnataka Police.

Advertisement
Written by Akash Dutta, Edited by David Delima | Updated: 17 July 2024 19:35 IST
Highlights
  • A new malware called Maorrisbot is reportedly infecting Android devices
  • The malware is said to have affected more than 4,400 devices
  • Maorrisbot is capable of intercepting OTPs and other messages

WhatsApp fake e-Challan scams have reportedly led to fraudulent transactions exceeding Rs. 16 lakh

Photo Credit: Reuters

WhatsApp e-Challan scams are targeting users India using Maorrisbot, a new form of technical malware, according to a cybersecurity firm. This is a relatively new type of scam that is reportedly backed by a large, organised effort. So far, the malware is said to be affecting only Android devices, and no impact has been seen on iOS or other Apple devices. The scam begins like a typical phishing scam, but once the malware is deployed on the victim's device, it acts as a trojan.

WhatsApp e-Challan Scams Using Maorrisbot to Target Indian Users

A new CloudSEK report details how the new malware dubbed Maorrisbot is used by hackers based in Vietnam. The firm states that a highly technical Android malware campaign is currently being uses to target users in India through fake traffic e-Challan messages disseminated via WhatsApp.

At the onset, the scammers impersonate the Parivahan Sewa or Karnataka Police and send messages to people asking them to pay their challan (traffic violation fine). These messages contain details of a fake e-Challan notice and a URL or an attached APK file.

Advertisement

The scammers trick the victim into clicking the link to pay the fine, and once that is done, the Maorrisbot is gets downloaded on the device. However, the report states that it is disguised as a legitimate application, which could mislead unwary users.

Advertisement

The fraudulent message sent to victims by the hackers
Photo Credit: CloudSEK

Advertisement

 

After being installed, the malware begins requesting multiple permissions such as access to contacts, phone calls, SMS, and even to become the default messaging app. If the user allows these permissions, the malware begins intercepting OTPs and other sensitive messages. It can also use the data to log in to the victim's e-commerce accounts, purchase gift cards, and redeem them without leaving a trace.

Advertisement

The cybersecurity firm also found that the scammers use proxy IP and maintain a low transaction profile to avoid detection. The researchers believe the attackers are Vietnamese based on conversations and IP location — the purported hacker's IP address was traced to Bắc Giang Province in Vietnam.

CloudSEK claims that 4,451 devices are known to be compromised after installing the malware. The hackers have reportedly used 271 unique gift cards to steal more than Rs. 16 lakh from victims. Gujarat and Karnataka have been identified as the most affected region.

The security firm recommends Android users use well-known antivirus and anti-malware software, limit app permissions and regularly review them, and install apps only from trusted sources. Further, the firm also highlights monitoring suspicious SMS activity, regularly updating the device, and enabling alerts for banking and sensitive services.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 3a Lite Launched With Glyph Light At This Price
  2. Vivo X300 Series Price, Key Features Leaked Ahead of Global Launch
  3. Oppo Announces Release Schedule for ColorOS 16 in Global Markets
  4. Moto G67 Power 5G India Launch Date, Key Features Announced
  5. TRAI, DoT Approve Presentation of Caller Names During Incoming Calls
  6. The Family Man Season 3 OTT Release: Know When and Where to Watch it Online
  1. NASA’s X-59 Supersonic Jet Takes Historic First Flight, Paving Way for Quiet Supersonic Travel
  2. ASIC Clarifies Crypto Rules; Stablecoins, Tokenised Assets Flagged as Financial Products
  3. SpaceX Launches 28 Starlink Satellites, Lands Falcon 9 Booster in Pacific
  4. Idli Kadai, Starring Dhanush, Now Streaming on Netflix: What You Need to Know
  5. Ideabaaz Now Streaming on ZEE5: Everything You Need to Know
  6. Grey’s Anatomy Season 22 OTT Release: Know Where to Watch it Online?
  7. Bad Girl OTT Release Date: When and Where to Watch Tamil Drama Online?
  8. Adobe Partners With Google Cloud to Integrate Frontier AI Models Across Its Platforms
  9. Vivo X300, Vivo X300 Pro Price and Key Specifications Leaked Ahead of Global Launch
  10. OnePlus 15 India Launch Date Announced; to Debut as First Snapdragon 8 Elite Gen 5 Phone in India
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.