SymbOS/Arifat.A!tr - Released Mar 20, 2007 - Last Updated Jun 22, 2007
|
Alias/esTrojan.SymbOS.Arifat.a, SYMBOS_ARIFAT.A, SymbOS/Arifat trojan |
Detection Availability
|
Visible Symptoms |
Detailed AnalysisThis is a Symbian virus, packed in SIS format.
Displays the following message, prompting the user to install:
install Bu uygulama?
Upon installing, it drops the following files:
- C:\system\apps\s32cnr\s32cnr.app
- C:\system\apps\s32cnr\s32cnr.aif
- C:\system\apps\s32cnr\s32cnr_caption.rsc
Pretends to be an MSN application. It comes into effect if the HandyMSN application is installed. Once the user executes it and inputs the account and password, these information are sent to a remote user by SMS. The infected mobile phone can then be controlled by the remote attacker.
|
Recommended ActionDelete all the dropped files using a file manager program. |