How to detect if your phone is infected with the uupay.A Trojan


android infected

With reports of certain Chinese phones coming with infected ROMS it would be a good idea to detect if your phone has been compromised with uupay.A here is how.

Thankfully there is a simple way to see if your phone or tablet is infect with uupay.A and that is to simply install ESET Mobile Security and Antivirus from the Google Play store to your phone. Once installed you can run the apps virus and security checker to see if you have anything to worry about.

What if my phone is infected?

After testing your device and learning that you have been infected then we hope you can do the following:

Gizchina News of the week


  1. Indicate the device you have and the version of the ROM you are using (found in settings > about phone) and post the details in the comments below.
  2. Let us know which malware was detected.
  3. Let us know if this is an official or unofficial ROM

How to remove the malware?

Removing the malware or trojan should be as simple as installing a new ROM. Hopefully the official manufacturers ROM will be the best bet if not try one of the 3rd party ROMs designed for your device.

Also, please note that most Antivirus or security apps see that ROOT is a threat. Do not worry if this is the only problem your phone has as ROOT is normal and nothing to worry about.

If you have any other concerns about your phone, the ROM you are using or have some security tips and tricks please feel free to share them in the comments below.

Read Also:  Android users get three new security features in Apple style
[ GizChina.es ]
Disclaimer: We may be compensated by some of the companies whose products we talk about, but our articles and reviews are always our honest opinions. For more details, you can check out our editorial guidelines and learn about how we use affiliate links.

Previous iOcean X8 Giveaway Part 4 and 5
Next Unistar X7 4G, Mid-range quad-core LTE with MT6582 processor

115 Comments

  1. June 20, 2014

    Scanned my Vivo Xplay 3S ROM is fine but ESET did not like Baidu music, Tudou or Youku apps

    • desponent
      June 20, 2014

      Andi I think you should let any post with link to your own site, gizchina, to be automatically approved. Some kind of whitelist maybe.

      • June 20, 2014

        Sounds good will look in to it

  2. iANDROID8.1
    June 20, 2014

    is this even real? or another campaign for an app?

    • desponent
      June 20, 2014

      Well why don’t you check ebay if there are any Star N9500 left?

      https://www.gizchina.com/2014/06/20/star-n9500-sales-ebay-device-banned-spyware-report/

      • Brooklyn701
        June 20, 2014

        That does not mean it is a real threat and not another Hoax against Chinese mobiles. There is so much money in the European market, especially the German one. Since the EU has decided to fuck that empire those crap companies called providers used to have, things have become rough. Hard to please your shareholders when you can’t rip off your clients as well any more.

        Suddenly it’s not the NSA but the Chinese mobiles who are causing all this spying. 😉 And especially the copies…. And there especially the dual sim ones…. and those who won’t colaborate with the big companies so they get thier share… oooops…

        Really dude wake up. If you think it’s coincidental then you are just as blind as darkness is.

        • Airyl
          June 20, 2014

          Did not get what you’re trying to say. Simplify please?

          • Brooklyn701
            June 21, 2014

            Easy Logic. EU clamping down on phone providers, china phones becoming more popular = bad times for providers. Then suddenly…. A flash of light….. a German security firm finds a trojan virus (bad quality of china phones didn’t seem to scare people enough, so now we need a virus….)….

            LOL guys don’t run after this ghost like lemmings.

        • desponent
          June 21, 2014

          I entertain this conspiracy theory more than the simple notion that a shady phone maker include shady apps on their phone.

  3. Dietrich
    June 20, 2014

    JiaYu G5 ROM is also fine.

  4. Norman
    June 20, 2014

    Zopo c2 custom ROM lewa os fine.

  5. Dietrich
    June 20, 2014

    A friend of mine found UUPAY.F on his clone of s4, but can’t recall where he bought it. Is this some kind of variant?

    • Dietrich
      June 20, 2014

      Sorry it is a clone of an s3. The file is called dataService.

      G3000
      model number: e1920_v77_zlh_9p017_asx
      Android-version: 4.1.1

      Any other rom he can install, or should he just delete the file?

      • Norman
        June 20, 2014

        http://forum.xda-developers.com/showthread.php?t=2395007
        Read up this thread. It teaches how to remove without new ROM flashed. Basically a root is required with root explorer. For those of u that want a simple root download the app framaroot . it allows u to root your phone without a computer. Works with mtk6589 tested with my zopo c2. But as for spyware removal follow that guide.

  6. Zami
    June 20, 2014

    My Huawei Ascend P6 is clean .

  7. June 20, 2014

    Star S7589 with latest stock ROM is Uupay.D positive. Well, nothing happened to me so far.

  8. Γιάννης
    June 20, 2014

    STAR W007 iphone clone is clear

  9. Mihnea Perianu
    June 20, 2014

    Zopo C2 Platinum, stock ROM -> clean

  10. Andi Sykes
    June 20, 2014

    Scanned my Vivo Xplay 3S ROM is fine but ESET did not like Baidu music, Tudou or Youku apps

    • desponent
      June 20, 2014

      Andi I think you should let any post with link to your own site, gizchina, to be automatically approved. Some kind of whitelist maybe.

    • Andi Sykes
      June 20, 2014

      Sounds good will look in to it

  11. iANDROID8.1
    June 20, 2014

    is this even real? or another campaign for an app?

    • desponent
      June 20, 2014

      Well why don’t you check ebay if there are any Star N9500 left?

      http://www.gizchina.com/2014/06/20/star-n9500-sales-ebay-device-banned-spyware-report/

    • Guest
      June 20, 2014

      That does not mean it is a real threat and not another Hoax against Chinese mobiles. There is so much money in the European market, especially the German one. Since the EU has decided to fuck that empire those crap companies called providers used to have, things have become rough. Hard to please your shareholders when you can’t rip off your clients as well any more.

      Suddenly it’s not the NSA but the Chinese mobiles who are causing all this spying. 😉 And especially the copies…. And there especially the dual sim ones…. and those who won’t colaborate with the big companies so they get thier share… oooops…

      Really dude wake up. If you think it’s coincidental then you are just as blind as darkness is.

    • Airyl
      June 20, 2014

      Did not get what you’re trying to say. Simplify please?

    • Guest
      June 21, 2014

      Easy Logic. EU clamping down on phone providers, china phones becoming more popular = bad times for providers. Then suddenly…. A flash of light….. a German security firm finds a trojan virus (bad quality of china phones didn’t seem to scare people enough, so now we need a virus….)….

      LOL guys don’t run after this ghost like lemmings.

    • desponent
      June 21, 2014

      I entertain this conspiracy theory more than the simple notion that a shady phone maker include shady apps on their phone.

  12. Guest
    June 20, 2014

    JiaYu G5 ROM is also fine.

    • Andi Sykes
      June 20, 2014

      Great to hear 😀

  13. Guest
    June 20, 2014

    Zopo c2 custom ROM lewa os fine.

  14. Guest
    June 20, 2014

    A friend of mine found UUPAY.F on his clone of s4, but can’t recall where he bought it. Is this some kind of variant?

    • Guest
      June 20, 2014

      Sorry it is a clone of an s3. The file is called dataService.

      G3000
      model number: e1920_v77_zlh_9p017_asx
      Android-version: 4.1.1

      Any other rom he can install, or should he just delete the file?

    • Guest
      June 20, 2014

      http://forum.xda-developers.com/showthread.php?t=2395007
      Read up this thread. It teaches how to remove without new ROM flashed. Basically a root is required with root explorer. For those of u that want a simple root download the app framaroot . it allows u to root your phone without a computer. Works with mtk6589 tested with my zopo c2. But as for spyware removal follow that guide.

  15. Guest
    June 20, 2014

    My Huawei Ascend P6 is clean .

  16. Christopher Straßer
    June 20, 2014

    Star S7589 with latest stock ROM is Uupay.D positive. Well, nothing happened to me so far.

  17. HJ
    June 20, 2014

    Zopo C3 stock ROM is clean.

  18. Rob
    June 20, 2014

    Kingzone k1 stock rom is clean.

  19. Γιάννης
    June 20, 2014

    STAR W007 iphone clone is clear

  20. Mattijs Kattouw
    June 20, 2014

    I think it’s safe to say Star phones are unsafe. My Star S5 came up in ESET with
    pulid (AdDisplay.Ads.Wo.C) and a trojan MediatekData(Spy.Spynlh.A).
    And this on the stock rom. Both need root to uninstall. This is horrible,

  21. Mattijs Kattouw
    June 20, 2014

    My wife’s Jiayu G3 also has the MediatekData(Spy.Spynlh.A) app. Also stock rom. How do we know it came with the stock rom from the store and wasn’t installed with another app?

  22. Johann von Schadowitz
    June 20, 2014

    My Jiayu G3 (stock rom) has the UUPAY.F variant inside of dataservice.apk.

  23. Mihnea Perianu
    June 20, 2014

    Zopo C2 Platinum, stock ROM -> clean

  24. Airyl
    June 20, 2014

    Ascend P6, Zopo ZP990, ZP998, Newman K1, Newman N2, ThL W11, Vivo Xplay, Oppo N1, Goophone i9 and Coolpad F1 are all clean. My Jiayu G3 is it of commission, so can’t check that.

  25. Guest
    June 20, 2014

    Zopo C3 stock ROM is clean.

  26. Rob
    June 20, 2014

    Kingzone k1 stock rom is clean.

  27. Mattijs Kattouw
    June 20, 2014

    I think it’s safe to say Star phones are unsafe. My Star S5 came up in ESET with
    pulid (AdDisplay.Ads.Wo.C) and a trojan MediatekData(Spy.Spynlh.A).
    And this on the stock rom. Both need root to uninstall. This is horrible,

  28. Mattijs Kattouw
    June 20, 2014

    My wife’s Jiayu G3 also has the MediatekData(Spy.Spynlh.A) app. Also stock rom. How do we know it came with the stock rom from the store and wasn’t installed with another app?

  29. Johann von Schadowitz
    June 20, 2014

    My Jiayu G3 (stock rom) has the UUPAY.F variant inside of dataservice.apk.

  30. Airyl
    June 20, 2014

    Ascend P6, Zopo ZP990, ZP998, Newman K1, Newman N2, ThL W11, Vivo Xplay, Oppo N1, Goophone i9 and Coolpad F1 are all clean. My Jiayu G3 is it of commission, so can’t check that.

  31. pink
    June 20, 2014

    Feiteng i9300 s3 clone stock 4.1.1 safe,will check my mlais mx59 htc one clone stock 4.2.2 when I get it up and running again (accidentally pressed format instead of upgrade rom in flashtool can’t find the original rom to reflash it 🙁 )

    • Michael Strauss
      June 20, 2014

      You can find official and community ROMs in a site called “needrom”. Screenshot: this one is the official rom

  32. Guest
    June 21, 2014

    Feiteng i9300 s3 clone stock 4.1.1 safe,will check my mlais mx59 htc one clone stock 4.2.2 when I get it up and running again (accidentally pressed format instead of upgrade rom in flashtool can’t find the original rom to reflash it 🙁 )

    • Michael Strauss
      June 21, 2014

      You can find official and community ROMs in a site called “needrom”. Screenshot: this one is the official rom

  33. IST
    June 21, 2014

    Jiayu G4T is ok with original rom

  34. Xiaolu
    June 21, 2014

    Innos D10C original ROM, clean.

  35. Zymis
    June 21, 2014

    Infected Cubot a6589s rooted android 4.2.1 WITH UUPAY.F (variant) (in DATASERVICE) and UUPAY.D (in Play Store)

  36. IST
    June 21, 2014

    Jiayu G4T is ok with original rom

  37. Xiaolu
    June 21, 2014

    Innos D10C original ROM, clean.

  38. Ursus
    June 21, 2014

    Jiayu g2f custom rom clean

  39. Γιάννης
    June 21, 2014

    MLAIS MX59 AOSP (from pandawill) custom rom, also clean!

  40. Guest
    June 21, 2014

    Infected Cubot a6589s rooted android 4.2.1 WITH UUPAY.F (variant) (in DATASERVICE) and UUPAY.D (in Play Store)

  41. June 21, 2014

    BTW, if you guys want to remove the trojan: Root the phone, open a root explorer, navigate to /system/apps/ and search for the two APKs “uuplay.apk” and “uuairpush.apk”. Delete them, reboot, and you are done.

  42. Niels
    June 21, 2014

    Miz z3. Google play infected. Original rom.

  43. Guest
    June 21, 2014

    Jiayu g2f custom rom clean

  44. Γιάννης
    June 21, 2014

    MLAIS MX59 AOSP (from pandawill) custom rom, also clean!

  45. Christopher Straßer
    June 21, 2014

    BTW, if you guys want to remove the trojan: Root the phone, open a root explorer, navigate to /system/apps/ and search for the two APKs “uuplay.apk” and “uuairpush.apk”. Delete them, reboot, and you are done.

  46. Guest
    June 21, 2014

    Miz z3. Google play infected. Original rom.

  47. nick
    June 21, 2014

    SceneLauncher aoo with Agent.DK variant threat found on my Onn V8 Star.. not sure how hrmafull it is but i wont find a custom rom for this phone anywyay (very happy with the quality of the phone btw)

  48. Guest
    June 21, 2014

    SceneLauncher aoo with Agent.DK variant threat found on my Onn V8 Star.. not sure how hrmafull it is but i wont find a custom rom for this phone anywyay (very happy with the quality of the phone btw)

  49. sanjeev
    June 22, 2014

    Iocean x7hd was infected.. rooted and cleaned

  50. Guest
    June 22, 2014

    Iocean x7hd was infected.. rooted and cleaned

  51. buzz
    June 22, 2014

    Elephone P8 running official KitKat 4.4.2 shows uupay.d is installed.
    It was very easy to uninstall with ES File Explorer which is available on Play store for free.
    Gaining root access on the phone and rescanning with ESET returns a clean phone , no virus But , if you open the ES file explorer click on ” / ” then click the system folder , click app folder you will find the uupay.d apk still residing on your phone. Simply long tap on the uupay.d apk file and choose delete.

  52. buzz
    June 22, 2014

    Elephone P8 running official KitKat 4.4.2 shows uupay.d is installed.
    It was very easy to uninstall with ES File Explorer which is available on Play store for free.
    Gaining root access on the phone and rescanning with ESET returns a clean phone , no virus But , if you open the ES file explorer click on ” / ” then click the system folder , click app folder you will find the uupay.d apk still residing on your phone. Simply long tap on the uupay.d apk file and choose delete.

  53. Mike
    June 30, 2014

    Elephone P6 also infected. Easy to remove with root.

  54. Guest
    June 30, 2014

    Elephone P6 also infected. Easy to remove with root.

  55. Jimmy Gustafson
    July 3, 2014

    …so heres wat we’ll do…we’ll put a virus thats detectable by ANY security firm thats really worth a s**t on some phones(prolly china tablets also) and force everybody to root their phones to remove it, then, after everybody roots their phone we’ll have a liiittle less security and we’ll stick a virus in there thats is almost UNDETECTABLE and REALLY cause some damage! Ok, dont get me wrong its COMPLETELY feasible and probably more likely than any of us will admit,but, it think its more of a monetary issue,liste…it ALWAYS comes down to the bottom line..MONEY…and if you dont think thats this COULD be exactly as Brooklyn701 states it is…then you truly ARE as “blind as darkness is”.

  56. Katz
    July 9, 2014

    Hi , I am not sure if this is the right place to post but I have just bought a Cubot S208 and a scan with ESet & Avg both show Trojan COOEE MSLauncher as a threat . Can’t find much about this anywhere . Do I need to worry. Love the phone but worried about the Trojan. Don’t fancy rooting as I am a 65 year old female with limited knowledge. Help appreciated.

  57. Guest
    July 9, 2014

    Hi , I am not sure if this is the right place to post but I have just bought a Cubot S208 and a scan with ESet & Avg both show Trojan COOEE MSLauncher as a threat . Can’t find much about this anywhere . Do I need to worry. Love the phone but worried about the Trojan. Don’t fancy rooting as I am a 65 year old female with limited knowledge. Help appreciated.

  58. MJK
    August 2, 2014

    W.D.Fone W-5000 (STAR W-5000) – infected, rooted, deleted uuplay.apk and uuairpush.apk – now it seems OK in ESET… (but who knows)

  59. Guest
    August 3, 2014

    W.D.Fone W-5000 (STAR W-5000) – infected, rooted, deleted uuplay.apk and uuairpush.apk – now it seems OK in ESET… (but who knows)

  60. mel
    August 17, 2014

    just got a feiting 9500.. great cheap smartphone for me. AND yes when I read this I downloaded the recommended security ware and found that my Google play was infected with the virus. When prompted if i wanted it fixed, it could not be removed. Then I scanned it again and it reported not problem. Is that a lie too? Scanned it five time, still no malware? Is it hiding?

    • Marjan
      August 21, 2014

      Try to use deep scan option and you’ll probably see the malware again. It was the same with my phone. I will try what Christopher Strasser suggested to get rid of the pest.

  61. mel
    August 17, 2014

    just got a feiting 9500.. great cheap smartphone for me. AND yes when I read this I downloaded the recommended security ware and found that my Google play was infected with the virus. When prompted if i wanted it fixed, it could not be removed. Then I scanned it again and it reported not problem. Is that a lie too? Scanned it five time, still no malware? Is it hiding?

    • Guest
      August 21, 2014

      Try to use deep scan option and you’ll probably see the malware again. It was the same with my phone. I will try what Christopher Strasser suggested to get rid of the pest.

  62. Robert Morris
    September 3, 2014

    Phone : K47/C9_89
    Build : v89_jhgg_notv_20130502
    Android : 4.2.1

    Detecting software Avast Anti Virus, however I needed to manually activate ‘File Shield’ – To do this, load up Avast and you’ll see a long list, Virus Scanner, Anti Theft, Backup(install), Application Locking etc. etc. Top Left above Virus Scanner, click on the Avast Icon and then select File Shield, ensure you have a tick in the ‘File Shield’ Box.

    I had been running Avast for five or six months and only yesterday did I enable the file shield option, today I found that Google Play is infected with malware (alarm bells started ringing) so I read up on the problem. uuplay.apk was in my System applications folder.

    I simply renamed uuplay.apk to uuplay.dis and rebooted. Seemingly that has resolved the issue and now that I’m sure everything is working as expected I can delete uuplay.dis.

  63. Guest
    September 3, 2014

    Phone : K47/C9_89
    Build : v89_jhgg_notv_20130502
    Android : 4.2.1

    Detecting software Avast Anti Virus, however I needed to manually activate ‘File Shield’ – To do this, load up Avast and you’ll see a long list, Virus Scanner, Anti Theft, Backup(install), Application Locking etc. etc. Top Left above Virus Scanner, click on the Avast Icon and then select File Shield, ensure you have a tick in the ‘File Shield’ Box.

    I had been running Avast for five or six months and only yesterday did I enable the file shield option, today I found that Google Play is infected with malware (alarm bells started ringing) so I read up on the problem. uuplay.apk was in my System applications folder.

    I simply renamed uuplay.apk to uuplay.dis and rebooted. Seemingly that has resolved the issue and now that I’m sure everything is working as expected I can delete uuplay.dis.

  64. Kevin Wright
    September 4, 2014

    Kaspersky detects Uupay on the Zooz S5.5

  65. Kevin Wright
    September 4, 2014

    Kaspersky detects Uupay on the Zooz S5.5

  66. newbee
    September 24, 2014

    The 360 av on my newly bought tablet say that the ROM comes with 2 Trojans: system launcher and waterlocker trojans? Detailed instructions for cleaning or re flashing please. Do I have to root first?

  67. Guest
    September 24, 2014

    The 360 av on my newly bought tablet say that the ROM comes with 2 Trojans: system launcher and waterlocker trojans? Detailed instructions for cleaning or re flashing please. Do I have to root first?

  68. Shivanand
    December 10, 2014

    RPTPE0706 Tablet – system app ‘Device Management’ infected with Gedma.c

  69. Guest
    December 10, 2014

    RPTPE0706 Tablet – system app ‘Device Management’ infected with Gedma.c

  70. JImmy
    December 22, 2014

    I have model number or rom 01v21_v89_gq3008s_89t_5g for a STAR M9899T
    x com.uucun4470.android.cms adware found, what can I do to remove? It is in the playstore

  71. JImmy
    December 22, 2014

    I have model number or rom 01v21_v89_gq3008s_89t_5g for a STAR M9899T
    x com.uucun4470.android.cms adware found, what can I do to remove? It is in the playstore

  72. Lucy Jordan
    December 30, 2014

    New Cubot GT95 -Malwarebytes and Avast have detected Android:Agent-FNR [Trj] in Google Search, also have NVRAM WARNING:Err=0 on wifi networks.

  73. Lucy Jordan
    December 30, 2014

    New Cubot GT95 -Malwarebytes and Avast have detected Android:Agent-FNR [Trj] in Google Search, also have NVRAM WARNING:Err=0 on wifi networks.

  74. Nelle GM
    October 3, 2015

    my problem is a china phone and you tell me to download from google?! really?!

  75. Nelle GM
    October 4, 2015

    my problem is a china phone and you tell me to download from google?! really?!

  76. stan
    October 28, 2015

    ELEPHONE P7000 /P#### WITH OFFICIAL ROM. X-LAUNCHER WITH MALWARE/ADWARE, THEY HAVE JUST NOW CLOSED THEIR OFFICIAL FORUM!!!!!! 🙁

  77. stan
    October 28, 2015

    ELEPHONE USE TO DELETE THE USERS FORUM COMMENTS, AND JUST NOW CLOSED THEIR FORUM, THE LATEST OTA OF P7000/P8000 THE PHONES BECOME SUDDENLY WITH ICONS, POPUPS, A RUSSIAN DOLL ON DESK OR A BERR THAT YOU CANT CLOSE UNTIL YOU CLICK, BIGPOOUS ON GMAIL, CHROME BROWSER, GMAIL APP, ETC… MALWARE TOOLBAR ON GOOGLE CHROME… ETC X-LAUNCHER/OFFICIAL ROM

  78. alex
    October 28, 2015
  79. Guest
    October 28, 2015

    ELEPHONE P7000 /P#### WITH OFFICIAL ROM. X-LAUNCHER WITH MALWARE/ADWARE, THEY HAVE JUST NOW CLOSED THEIR OFFICIAL FORUM!!!!!! 🙁

  80. Guest
    October 28, 2015

    ELEPHONE USE TO DELETE THE USERS FORUM COMMENTS, AND JUST NOW CLOSED THEIR FORUM, THE LATEST OTA OF P7000/P8000 THE PHONES BECOME SUDDENLY WITH ICONS, POPUPS, A RUSSIAN DOLL ON DESK OR A BERR THAT YOU CANT CLOSE UNTIL YOU CLICK, BIGPOOUS ON GMAIL, CHROME BROWSER, GMAIL APP, ETC… MALWARE TOOLBAR ON GOOGLE CHROME… ETC X-LAUNCHER/OFFICIAL ROM

  81. Guest
    October 28, 2015
  82. tony
    November 4, 2015

    Have malicious software on Xiaomi Redmi note 2 from Aliexpress. Does flashing a new rom guarantee complete removal of the malware? I am afraid it will remain after the new rom too. I am so screwed. I shouldn’t buy this phone, now I have only problems!!!

  83. Guest
    November 4, 2015

    Have malicious software on Xiaomi Redmi note 2 from Aliexpress. Does flashing a new rom guarantee complete removal of the malware? I am afraid it will remain after the new rom too. I am so screwed. I shouldn’t buy this phone, now I have only problems!!!

  84. mibtp
    November 25, 2015

    Hi, I have malware in the rom that cannot be removed via reset or disable.
    Dragon Phablet E70.

    I don’t know version as it doesn’t say ROM under SETTINGS. What is it called? Baseband, Kernel, Build Number?

    Trojan: AndroidSystemService (Expense Trojan) – IN ROM
    APPLOCK
    PRIVACY RISK

    Can anyone help?

  85. newsrants
    November 25, 2015

    Hi, I have malware in the rom that cannot be removed via reset or disable.
    Dragon Phablet E70.

    I don’t know version as it doesn’t say ROM under SETTINGS. What is it called? Baseband, Kernel, Build Number?

    Trojan: AndroidSystemService (Expense Trojan) – IN ROM
    APPLOCK
    PRIVACY RISK

    Can anyone help?

  86. elma Cristobal
    December 28, 2015

    I have my Oppo R1011 that affected by trojan virus.

    ROM 1.52GB (Available space) 4.0GB (Total space)

  87. elma Cristobal
    December 28, 2015

    I have my Oppo R1011 that affected by trojan virus.

    ROM 1.52GB (Available space) 4.0GB (Total space)

  88. Maria Amon
    January 27, 2016

    I have a homtom ht7 . seems to have a few bugs, cooee launcher and caller id. Also an ad virus. Can’t get rid of any if them

  89. Maria Amon
    January 27, 2016

    I have a homtom ht7 . seems to have a few bugs, cooee launcher and caller id. Also an ad virus. Can’t get rid of any if them

  90. Rebel_X
    May 25, 2017

    All ulefone phones has trojans disguised as a benign broswer, the phones keep visiting op.ule88.com site which is a malware distribution site according to google and virus total. Also their trojan “U Browser” will make any app you install to immediately open upon installation, it steals your data. Stay away from that company.

  91. Rebel_X
    May 25, 2017

    All ulefone phones has trojans disguised as a benign broswer, the phones keep visiting op.ule88.com site which is a malware distribution site according to google and virus total. Also their trojan “U Browser” will make any app you install to immediately open upon installation, it steals your data. Stay away from that company.