Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

病毒知识库

分析不法分子使用的技术可以使我们预测其可能的发展方向,以便更加有效地抵御今后可能遇到的威胁。您也可以了解一下恶意程序如何在被感染的系统中运行以及如何抵御这些程序。

Android.Mobifun.4 in virus library:

A family of Trojans for Android whose main function is to download other software.

The Android.Mobifun Trojans send the following information to the command and control server:

  • IMEI identifier;
  • IMSI identifier;
  • BSSID identifier of the current Wi-Fi access point;
  • Current operating system version;
  • Display parameters;
  • MCC (Mobile Country Code) identifier;
  • MNC (Mobile Network Code) identifier;
  • Mobile network operator;
  • GSM Cell ID (an identifier of the mobile operator’s base station to which the user’s phone is connected);
  • GSM Cell Location area code (a code for determining coordinates of the mobile operator’s base station);
  • RAM amount;
  • ROM amount;
  • SD card memory amount;
  • Presence of the malicious application in the /system folder.

Upon cybercriminals’ command, Trojans can execute the following actions:

  • Download an APK file and show a notification prompting a user to install the corresponding application.
  • Load a specified URL in the browser window.

Some versions of the Android.Mobifun Trojans can also send SMS messages.

病毒名称分类

据统计,每五个安卓程序中就有一个存在漏洞(换句话说就是带有缺陷),这种漏洞可使不法分子将移动木马成功嵌入设备并执行所需操作。

Dr.Web for Android中的安全审计 对移动设备的安全性做出诊断和分析,发现问题和漏洞是会提示解决方案。