Fake Adult and Dating Apps: I4C Identifies Malware Campaign Targeting Android Users

The I4C warned that cybercriminals are using social media ads for fake dating apps - like Night Play and Vixa - to install Android malware, steal OTPs, and commit financial fraud. Users should avoid unknown APKs and report incidents at 1930. Scroll below to know how the malware operates and how to stay safe.

Instagram , Facebook (Photo Credits: Wikimedia Commons)

The Indian Cybercrime Coordination Centre (I4C) waned that cybercriminals are using fake adult and dating apps to trick users into installing malware that can steal data and conduct financial fraud. According to I4C, the campaign uses ads on social media platforms such as Instagram and Facebook, where users are lured with s*xually explicit content and dating-related offers. I4C said that clicking these ads can lead users to download malicious Android applications.

According to i4c.mha.gov.in, I4C's Threat Analytics Unit (TAU) has identified apps including “Night Play,” “Reloop,” “Kyss,” “Vimo,” “Rivo,” “Nexo” and “Vixa” as part of the campaign. The advisory by I4C has urged users to be cautious when clicking on such advertisements or downloading apps promoted through them. New Scam Alert! Fake 'RTO Challan APK' File Used To Hack WhatsApp, Steal Sensitive Information; Here's Where You Should Check Vehicle Challan Online.

How the Malware Operates

The fake apps can send users to suspicious websites, where they are asked to download APK files and install them manually on their Android phones. Once installed, the apps may ask for access to SMS, contacts, photos, storage and Accessibility Services. This will then allow scammers to control the phone, read OTPs, access personal information and carry out unauthorised transactions. As per IC4, some apps may also install a hidden VPN, allowing attackers to route internet traffic through their own servers and potentially misuse the victim's connection.

Preventive Measures and Safety Guidelines

I4C has advised users not to download APK files from social media ads or unfamiliar websites. Apps should be downloaded only from trusted app stores, with Google Play Protect kept switched on. Users should also check the permissions an app requests, particularly access to Accessibility Services In case a phone is already infected, users should restart it in Safe Mode and remove the suspicious app. If this does not work, then they should first disable its Accessibility and Device Administrator permissions and then uninstall the app. Thane Dating App Scam: Dombivli Woman Loses INR 11 Lakh to Man She Met on Aisle, Check Modus Operandi.

A factory reset may be necessary if the malware cannot be removed. Anyone who suspects they have been a victim of cyber fraud should report it immediately by calling 1930 or through the National Cyber Crime Reporting Portal.

Rating:5

TruLY Score 5 – Trustworthy | On a Trust Scale of 0-5 this article has scored 5 on LatestLY. It is verified through official sources (4c.mha.gov.in). The information is thoroughly cross-checked and confirmed. You can confidently share this article with your friends and family, knowing it is trustworthy and reliable.

(The above story first appeared on LatestLY on Aug 31, 2026 05:23 PM IST. For more news and updates on politics, world, sports, entertainment and lifestyle, log on to our website latestly.com).

Share Now

Share Now