Analisado por: Jordan Pan   

 Plataforma:

Android

 Classificao do risco total:
 Potencial de dano:
 Potencial de distribuição:
 infecção relatada:
 Exposição das informações:
Baixo
Medium
Alto
Crítico

  • Tipo de grayware:
    Backdoor

  • Destrutivo:
    Não

  • Criptografado:
     

  • In the Wild:
    Sim

  Visão geral


  Detalhes técnicos

Tipo de compactação: 2187321 bytes
Residente na memória: Sim
Data de recebimento das amostras iniciais: 19 janeiro 2018

Mobile Malware-Routine

Ist eine Datei, die die folgenden Informationen auf dem betroffenen Mobilgerät sammelt:

  • Phone number
  • Device ID
  • SDK version
  • Manufacturer
  • Bluetooth name
  • Time and date when app was first installed
  • Presence of Softbank/Docomo/Au app

Fordert bei der Installation die folgenden Berechtigungen:

  • android.permission.INTERNET
  • android.permission.RECEIVE_BOOT_COMPLETED
  • android.permission.READ_PHONE_STATE
  • android.permission.ACCESS_NETWORK_STATE
  • android.permission.ACCESS_WIFI_STATE
  • android.permission.READ_SMS
  • android.permission.BOOT_COMPLETED
  • android.permission.WRITE_EXTERNAL_STORAGE
  • android.permission.WRITE_EXTERNAL_STORAGE
  • android.permission.MOUNT_UNMOUNT_FILESYSTEMS
  • android.permission.MODIFY_AUDIO_SETTINGS
  • android.permission.SYSTEM_ALERT_WINDOW
  • android.permission.RECEIVE_SMS
  • android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS
  • android.permission.READ_CONTACTS
  • android.permission.CHANGE_WIFI_STATE
  • android.permission.READ_EXTERNAL_STORAGE

Kann die folgenden Aufgaben ausführen:

  • Lock screen and reset the password as 778877
  • Apply for device admin privilege
  • Parse contact information and upload
  • Get indicated SMS & MMS messages and upload
  • Uninstall detected legitimate banking app and replaced with malicious, fake app
  • Control mute and ringing settings
  • Delete files
  • Hide icon

  Solução

Mecanismo de varredura mínima: 9.850

TREND MICRO MOBILE SECURITY LÖSUNG

Die integrierte Lösung von Trend Micro für mobile Geräte bietet automatische Virensuche in Echtzeit zum Schutz von Wireless-Geräten vor Internet- oder Datei-basiertem bösartigem Code oder Viren.

Laden Sie die neueste Trend Micro Sicherheitslösung von dieser Website herunter.


Participe da nossa pesquisa!