Is this 'virus cleaning program' on my iPad genuine or a scam?

I have 4 iPads and I have not had any trouble until last week I was using my No2 iPad when my screen was invaded by a program saying my unit was filled with viruses etc.. It went on to say I could have this cleaning program free for 3 days then it would charge a high fee every month, too high for me. I have all my iPads protected with Bitdefender and I was shocked by App or virus. Can anyone tell me if this is genuine?



[Re-Titled by Moderator]

Original Title: An Invasion?


iPad, iPadOS 16

Posted on Jul 2, 2026 7:09 AM

Reply
Question marked as Top-ranking reply

Posted on Jul 2, 2026 10:26 AM

As outlined by others here, you have almost certainly encountered a scam - as they are increasingly common.


See >>> Recognize and avoid phishing messages, phony support calls, and other scams - Apple Support


Do not respond to, or engage with, the message. Certainly do not, under any circumstances, attempt to contact anyone using the contact details that may have been provided within the message.


Most scam alerts are designed to scare the unwary into giving away sensitive information - or to fool you into doing something that you shouldn’t - usually to defraud you financially.


Providing that your iPad(s) has been kept up-to-date with system software updates, you should not be overly concerned for your iPad being directly compromised. Due to the system architecture of iOS/iPadOS, unless jailbroken, your iPad is not susceptible to traditional malware infection per-se. However, as with all computer systems, there are still vulnerabilities and exploits to which you remain vulnerable. For older devices, no longer benefiting from regular security updates, the risk of an unpatched vulnerability being exploited increases. Regardless of the installed version of iOS, there are useful mitigations that can be used to significantly reduce your exposure to risk.


If you have given your personal details to a malicious website, this may be the cause of attempted fraud. If necessary, change account passwords (including your AppleID Password) if you suspect that they may have been compromised. If you have cause to believe that your AppleID has been compromised, follow the advice outlined here:

If you think your Apple ID has been compromised - Apple Support


If you have exposed your Credit Card details, you may wish to contact the Card Issuer - who may cancel and reissue your Card as a precaution.



Threat Mitigation


The majority of threats to which you will be invariably exposed will surface via web pages or embedded links within email or other messaging platforms. Browser-based attacks can be largely and successfully mitigated by installing a good Content and Ad-blocking product. One of the most respected within the Apple App Store - designed for iPad, iPhone and Mac - is 1Blocker for Safari.

https://apps.apple.com/gb/app/1blocker-for-safari/id1365531024


1Blocker is highly configurable - and crucially does not rely upon an external proxy-service of dubious provenance, often utilised by so-called AntiVirus products intended for iOS/iPadOS. Instead, all processing by 1Blocker takes place on your device - and contrary to expectations, Safari will run faster and more efficiently.


Unwanted content is not simply filtered after download (a technique used by basic/inferior products), but instead undesirable embedded content is blocked from download. The 1Blocker product has also introduced its new “Firewall” functions - that are explicitly designed to block “trackers”. Being implemented at the network-layer, this additional protection works across all Apps. Recent updates to 1Blocker has introduced additional network extensions, extending protection to other Apps.


A further to improve protection from exploits is to use a security focussed DNS Service in preference to automatic DNS settings. This can either be set on a per-device basis in Settings, or can be set-up on your home Router - and in so doing extends the benefit of this specific protection to other devices on your local network. I suggest using one of the following DNS services - for which IPv4 and IPv6 server addresses are listed:


Quad9 (recommended)


9.9.9.9

149.112.112.112

2620:fe::fe

2620:fe::9



OpenDNS


208.67.222.222

208.67.220.220

2620:119:35::35

2620:119:53::53



Cloudflare


1.1.1.1

1.0.0.1

2606:4700:4700::1111

2606:4700:4700::1001



Security focused DNS providers intentionally "sink hole" known bad or malicious websites and resources - this providing an additional layer of protection beyond that provided by your device and its Operating System. These DNS services will, when used alongside 1Blocker or other reputable Content Blocker, provide defence in depth.



10 replies
Question marked as Top-ranking reply

Jul 2, 2026 10:26 AM in response to teddyjeff

As outlined by others here, you have almost certainly encountered a scam - as they are increasingly common.


See >>> Recognize and avoid phishing messages, phony support calls, and other scams - Apple Support


Do not respond to, or engage with, the message. Certainly do not, under any circumstances, attempt to contact anyone using the contact details that may have been provided within the message.


Most scam alerts are designed to scare the unwary into giving away sensitive information - or to fool you into doing something that you shouldn’t - usually to defraud you financially.


Providing that your iPad(s) has been kept up-to-date with system software updates, you should not be overly concerned for your iPad being directly compromised. Due to the system architecture of iOS/iPadOS, unless jailbroken, your iPad is not susceptible to traditional malware infection per-se. However, as with all computer systems, there are still vulnerabilities and exploits to which you remain vulnerable. For older devices, no longer benefiting from regular security updates, the risk of an unpatched vulnerability being exploited increases. Regardless of the installed version of iOS, there are useful mitigations that can be used to significantly reduce your exposure to risk.


If you have given your personal details to a malicious website, this may be the cause of attempted fraud. If necessary, change account passwords (including your AppleID Password) if you suspect that they may have been compromised. If you have cause to believe that your AppleID has been compromised, follow the advice outlined here:

If you think your Apple ID has been compromised - Apple Support


If you have exposed your Credit Card details, you may wish to contact the Card Issuer - who may cancel and reissue your Card as a precaution.



Threat Mitigation


The majority of threats to which you will be invariably exposed will surface via web pages or embedded links within email or other messaging platforms. Browser-based attacks can be largely and successfully mitigated by installing a good Content and Ad-blocking product. One of the most respected within the Apple App Store - designed for iPad, iPhone and Mac - is 1Blocker for Safari.

https://apps.apple.com/gb/app/1blocker-for-safari/id1365531024


1Blocker is highly configurable - and crucially does not rely upon an external proxy-service of dubious provenance, often utilised by so-called AntiVirus products intended for iOS/iPadOS. Instead, all processing by 1Blocker takes place on your device - and contrary to expectations, Safari will run faster and more efficiently.


Unwanted content is not simply filtered after download (a technique used by basic/inferior products), but instead undesirable embedded content is blocked from download. The 1Blocker product has also introduced its new “Firewall” functions - that are explicitly designed to block “trackers”. Being implemented at the network-layer, this additional protection works across all Apps. Recent updates to 1Blocker has introduced additional network extensions, extending protection to other Apps.


A further to improve protection from exploits is to use a security focussed DNS Service in preference to automatic DNS settings. This can either be set on a per-device basis in Settings, or can be set-up on your home Router - and in so doing extends the benefit of this specific protection to other devices on your local network. I suggest using one of the following DNS services - for which IPv4 and IPv6 server addresses are listed:


Quad9 (recommended)


9.9.9.9

149.112.112.112

2620:fe::fe

2620:fe::9



OpenDNS


208.67.222.222

208.67.220.220

2620:119:35::35

2620:119:53::53



Cloudflare


1.1.1.1

1.0.0.1

2606:4700:4700::1111

2606:4700:4700::1001



Security focused DNS providers intentionally "sink hole" known bad or malicious websites and resources - this providing an additional layer of protection beyond that provided by your device and its Operating System. These DNS services will, when used alongside 1Blocker or other reputable Content Blocker, provide defence in depth.



Jul 2, 2026 7:27 AM in response to teddyjeff

iPadOS is the most secure operating system on the market. Privacy is at the very core of all Apple products and services.


There is no possible way a virus could exist on an Apple device. Those Apps are designed to take your money. That’s it.


I would advise against installing anything that interferes with that.


Don’t be fooled by clever marketing advertisement tactics that rely on fear to sell you a solution to a problem that doesn’t exist.


All the best! 👋🏼😉

Smiliñ 😎 Brian

Jul 2, 2026 8:25 PM in response to teddyjeff

teddyjeff wrote:
I have 4 iPads and I have not had any trouble until last week I was using my No2 iPad when my screen was invaded by a program saying my unit was filled with viruses etc..


Scam!


A virus is a type of malware that spreads copies of itself to other programs or scripts. iPadOS is very locked down, so even if you installed an infected app, iPadOS would block the virus from spreading. A virus that cannot spread is not very much of a "virus".


An "anti-virus app" would not be able to clean supposed viruses off of your iPad for the same reason – and thus it would not be much of an "anti-virus app".


However, scammers know that people fear viruses, so they'll say just about anything to try to trick you out of your money. Including sending messages that tell you that your device is infected, that the hardware is corrupted, and that if you don't act in the next 2 minutes ("helpful" ticking clock provided!), your hardware will suffer irreversible damage and all of your private information will be leaked to the "Dark Web."

Is this 'virus cleaning program' on my iPad genuine or a scam?

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.