Mobile phone viruses Name: cabir.a - is a worm that runs in sybian series 60 phones and replicates via Bluetooth. This worm spreads as a SIS package named caribe.sis. The package contains 3 components caribe app, flo.mdl and caribe rsc. Once the worm is installed the worm runs every time the device is rebooted. Cabir a attempts to send itself to Bluetooth enabled devices found in the proximity of the infected mobile phone Type: worm
Name: velasco a- is a virus written specifically for nokia series 60 mobile phones running the symbian OS, it spreads by searching all SIS installation files in the infected device, and inserts itself as an embedded SIS file into them. This virus is a both a ile virus and worm. Once running veLAsco.a attempts to send itself to Bluetooth enabled devices found in the proximity of the infected mobile phone. Type: worm, parasitic virus
Name: commwarrior.a - is a worm for symbian operating system and mobile devices compatible with nokia series 60. it is the first worm that spreads using MMS and bluetooth Type: worm
Name: commwarrior.b ? is a worm for symbian OS and series 60. the worm is capable of spreading over Bluetooth and MMS messages Type: worm
Name: commwarrior.c ? the most dangerous worm that operates on symbian series 60 devices. the worm is capable of spreading over Bluetooth and MMS messages Type: worm
Name: mabir.a ? is a worm created by the author of the original cabir for series 60 devices and is capable of spreading via Bluetooth and MMS messages Type: worm
Name: Duts.a = is the first known virus for the pocket PC platform, it is a proof-of-concept parasitic virus which infects EXE files for the pocket PC environment. This virus affects ARM-based devices only. To spread between pocket PCs infected exes would need to be exchanged manually Type: parasitic
virus Name: Brador.a ? is the first known backdoor Trojan that affects handheld devices based on ARM architecture. When Brador.a has been installed, the hacker can control the PDA through the backdoor Type: Trojan backdoor
Name: Mosquito.a ? is a cracked version of a game for symbian series 60 devices. Mosquito contains functionality that sends SMS to a certain number each time the game is started Type: Trojan
Name: Skulls.a ? is a malicious SIS file Trojan for series 60, that replaces the system applications with non-functional versions. When the SIS file is installed it created a number of files on the C:drive of the phone. Skulls replaces the system applications with non-functional versions. This virus causes the phone to be non-functional one. In general, skulls of different variants, all applications icons are replaced with an image of a skull and crossed bones. Don?t reboot ur phone if you are infected Type: Trojan
Name: CabirDropper.a ? is a symbian installation file which installs Cabir variants into the device and disables some control applications Type:Trojan with worms
Name: MGDropper.a ? is a malicious SIS file dropper, which disables most well known file managers and and antivirus softwares. it also installs Cabir worm on the phone Type: Trojan with worm
Name: Dampig.a ? is Trojan which disables some build in applications and third party file managers. Type:Trojan
Name: Locknut.b - is a Trojan for mobile devices compatible with Nokia series 60 running symbian OS. The Trojan may be packaged as a symbian installation system file Patch_v1.sis, Patch_v2.sis. the installation file may be crafted so that a text in Russian is displayed during the installation. Type:trojan Namerever.a ? is a Trojan designed to run on the nokia series 60 compatible mobile phones.this virus arrives as a SIS file with the filename Antivirus.sis. if the file is installed on the device the installation process attempts to disable SIMworks?s and Kepersky?s mobile antivirus software. The installation file is crafted so that the text ?Antivirus by Dr.Web? is displayed during the installation Type: Trojan
Name: Fontal.a ? is a Trojan for symbian OS series 60 mobile devices. Fontal.a installs corrupted font file on the device and displays a message which should trick the user into rebooting the device. When the device is powered on after the reboot it may be unable to boot the operating system Type: Trojan
Name Hobbes.a ? is a SIS file Trojan that looks like the Symantec anti-virus for symbian phones. When the Trojan is installed, it shows a dialog instructing the user to reboot the phone in order to activate the Symantec antivirus software. The Trojan does not contain any antivirus software but a component that disables the phone?s application menu. Type;trojan
Name oomboot.a ? is a Trojan that drops Commwarior.b on the phone and is able to disrupt phone functionality in a previously unknown way. It drops Symbian ETEL ROM binaries to the C:\ folder of the device. This virus is also the first malware that drops Commwarrior.b on the device. The ROM binaries cause the device to fail at the next boot and the device stays in an eternal reboot loop. Type: Trojan with worm
Name: Onehop.a ? is the first symbian Trojan that actually uses Bluetooth to send Trojans to other phones. The file it sends is called Bootton.a that is unable to spread.Onehop.a causes an infected device to reboot when trying to use system applications such as accessing the phone menu. It sends copies to the first device it finds using Bluetooth. In its structures onehop.a is quite similar to Skulls family Trojans. With the exception that instead of replacing system files with corrupted binaries. Onehop.a uses applications to cause device to reboot. Thus if a device is infected with onehop.a, pressing the menu button or any system applications button make the device to reboot. Type: Trojan with other trojan
Name: Blankfont.a ? is a SIS file Trojan that installs a corrupted font file into the infected device. The corrupted font does not cause device to crash, but if the device is rebooted, it will lose the system font and is unable to display the user interface texts Type:Trojan
Name: Fontal.c ? is a SIS file Trojan that installs corrupted font file into the infected device causing it to fail at the next reboot. Fontal.c also disables application installer and messaging applications, making it?s uninstallation more difficult Type:Trojan
Name oomboot.c ? is a close variant to doomboot.a. the major difference between these two is that the doomboot.c does not contain Commwarrior. Doomboot.c pretends to be a set of camera effects for Nokia phones. The installation package does not contain any software, just corrupted binary that causes the device fail at the next reboot Type:Trojan with worm
Name oomboot.d ? is a close variant to doomboot.c the major difference between these two is that the doomboot.d contains a corrupted font file from Fontal.a and a theme file that changes the phone?s background and some other images Type:Trojan with worm
Name: AppDisabler.a ? is a SIS file Trojan which tries to disable large number of installed applications Type:Trojan Name: Cardtrap.d ? is a minor variant of Cardtrap.b, the main differences are that cardtra.d disables less applications and drops other Symbian malware on the device Type:Trojan
Name: Caribe – is a proof of concept worm. It tries to spread to other mobile phones, thru Bluetooth, which results in reduced in battery power. This worm does not pose any significant threat. Type: worm
Name: Trojan_Mos ? is a symbian series 60 trojan masked under the name of popular game MOsquitos. It will send SMS messages to a high cost number that will result in an increased phone bill/charge Type:trojan
Recommendation: if you have your Bluetooth turned on, it is better to keep it off unless you use it to avoid potential virus infections If your phone under WD2, remove first the memory card except 7650, scan and format it using your PC with memory card reader, u have to reformat your phone: 1. using *#7370# or *#7780#, press OK then wait, insert your SIM and observe, if it is OK, then it is the time to insert your MMC 2. 2. use UFS to reformat, go to in UI settings, press LOCAL, wait till it done, press NORMAL, wait till it done. Then click Format USER are, wait till it done, , insert ypur SIM and observe, if it is OK, then it is the time to insert your MMC For BB5 units, click everything in UI Options, , insert your SIM and observe, if it is OK, then it is the time to insert your MMC.
If the aforementioned tips are not working well, the last option is to reprogram ur phone by selecting good version, but be careful in choosing the versions cause it might harm to the phone or perhaps it can kill your phone.
Name: velasco a- is a virus written specifically for nokia series 60 mobile phones running the symbian OS, it spreads by searching all SIS installation files in the infected device, and inserts itself as an embedded SIS file into them. This virus is a both a ile virus and worm. Once running veLAsco.a attempts to send itself to Bluetooth enabled devices found in the proximity of the infected mobile phone. Type: worm, parasitic virus
Name: commwarrior.a - is a worm for symbian operating system and mobile devices compatible with nokia series 60. it is the first worm that spreads using MMS and bluetooth Type: worm
Name: commwarrior.b ? is a worm for symbian OS and series 60. the worm is capable of spreading over Bluetooth and MMS messages Type: worm
Name: commwarrior.c ? the most dangerous worm that operates on symbian series 60 devices. the worm is capable of spreading over Bluetooth and MMS messages Type: worm
Name: mabir.a ? is a worm created by the author of the original cabir for series 60 devices and is capable of spreading via Bluetooth and MMS messages Type: worm
Name: Duts.a = is the first known virus for the pocket PC platform, it is a proof-of-concept parasitic virus which infects EXE files for the pocket PC environment. This virus affects ARM-based devices only. To spread between pocket PCs infected exes would need to be exchanged manually Type: parasitic
virus Name: Brador.a ? is the first known backdoor Trojan that affects handheld devices based on ARM architecture. When Brador.a has been installed, the hacker can control the PDA through the backdoor Type: Trojan backdoor
Name: Mosquito.a ? is a cracked version of a game for symbian series 60 devices. Mosquito contains functionality that sends SMS to a certain number each time the game is started Type: Trojan
Name: Skulls.a ? is a malicious SIS file Trojan for series 60, that replaces the system applications with non-functional versions. When the SIS file is installed it created a number of files on the C:drive of the phone. Skulls replaces the system applications with non-functional versions. This virus causes the phone to be non-functional one. In general, skulls of different variants, all applications icons are replaced with an image of a skull and crossed bones. Don?t reboot ur phone if you are infected Type: Trojan
Name: CabirDropper.a ? is a symbian installation file which installs Cabir variants into the device and disables some control applications Type:Trojan with worms
Name: MGDropper.a ? is a malicious SIS file dropper, which disables most well known file managers and and antivirus softwares. it also installs Cabir worm on the phone Type: Trojan with worm
Name: Dampig.a ? is Trojan which disables some build in applications and third party file managers. Type:Trojan
Name: Locknut.b - is a Trojan for mobile devices compatible with Nokia series 60 running symbian OS. The Trojan may be packaged as a symbian installation system file Patch_v1.sis, Patch_v2.sis. the installation file may be crafted so that a text in Russian is displayed during the installation. Type:trojan Namerever.a ? is a Trojan designed to run on the nokia series 60 compatible mobile phones.this virus arrives as a SIS file with the filename Antivirus.sis. if the file is installed on the device the installation process attempts to disable SIMworks?s and Kepersky?s mobile antivirus software. The installation file is crafted so that the text ?Antivirus by Dr.Web? is displayed during the installation Type: Trojan
Name: Fontal.a ? is a Trojan for symbian OS series 60 mobile devices. Fontal.a installs corrupted font file on the device and displays a message which should trick the user into rebooting the device. When the device is powered on after the reboot it may be unable to boot the operating system Type: Trojan
Name Hobbes.a ? is a SIS file Trojan that looks like the Symantec anti-virus for symbian phones. When the Trojan is installed, it shows a dialog instructing the user to reboot the phone in order to activate the Symantec antivirus software. The Trojan does not contain any antivirus software but a component that disables the phone?s application menu. Type;trojan
Name oomboot.a ? is a Trojan that drops Commwarior.b on the phone and is able to disrupt phone functionality in a previously unknown way. It drops Symbian ETEL ROM binaries to the C:\ folder of the device. This virus is also the first malware that drops Commwarrior.b on the device. The ROM binaries cause the device to fail at the next boot and the device stays in an eternal reboot loop. Type: Trojan with worm
Name: Onehop.a ? is the first symbian Trojan that actually uses Bluetooth to send Trojans to other phones. The file it sends is called Bootton.a that is unable to spread.Onehop.a causes an infected device to reboot when trying to use system applications such as accessing the phone menu. It sends copies to the first device it finds using Bluetooth. In its structures onehop.a is quite similar to Skulls family Trojans. With the exception that instead of replacing system files with corrupted binaries. Onehop.a uses applications to cause device to reboot. Thus if a device is infected with onehop.a, pressing the menu button or any system applications button make the device to reboot. Type: Trojan with other trojan
Name: Blankfont.a ? is a SIS file Trojan that installs a corrupted font file into the infected device. The corrupted font does not cause device to crash, but if the device is rebooted, it will lose the system font and is unable to display the user interface texts Type:Trojan
Name: Fontal.c ? is a SIS file Trojan that installs corrupted font file into the infected device causing it to fail at the next reboot. Fontal.c also disables application installer and messaging applications, making it?s uninstallation more difficult Type:Trojan
Name oomboot.c ? is a close variant to doomboot.a. the major difference between these two is that the doomboot.c does not contain Commwarrior. Doomboot.c pretends to be a set of camera effects for Nokia phones. The installation package does not contain any software, just corrupted binary that causes the device fail at the next reboot Type:Trojan with worm
Name oomboot.d ? is a close variant to doomboot.c the major difference between these two is that the doomboot.d contains a corrupted font file from Fontal.a and a theme file that changes the phone?s background and some other images Type:Trojan with worm
Name: AppDisabler.a ? is a SIS file Trojan which tries to disable large number of installed applications Type:Trojan Name: Cardtrap.d ? is a minor variant of Cardtrap.b, the main differences are that cardtra.d disables less applications and drops other Symbian malware on the device Type:Trojan
Name: Caribe – is a proof of concept worm. It tries to spread to other mobile phones, thru Bluetooth, which results in reduced in battery power. This worm does not pose any significant threat. Type: worm
Name: Trojan_Mos ? is a symbian series 60 trojan masked under the name of popular game MOsquitos. It will send SMS messages to a high cost number that will result in an increased phone bill/charge Type:trojan
Recommendation: if you have your Bluetooth turned on, it is better to keep it off unless you use it to avoid potential virus infections If your phone under WD2, remove first the memory card except 7650, scan and format it using your PC with memory card reader, u have to reformat your phone: 1. using *#7370# or *#7780#, press OK then wait, insert your SIM and observe, if it is OK, then it is the time to insert your MMC 2. 2. use UFS to reformat, go to in UI settings, press LOCAL, wait till it done, press NORMAL, wait till it done. Then click Format USER are, wait till it done, , insert ypur SIM and observe, if it is OK, then it is the time to insert your MMC For BB5 units, click everything in UI Options, , insert your SIM and observe, if it is OK, then it is the time to insert your MMC.
If the aforementioned tips are not working well, the last option is to reprogram ur phone by selecting good version, but be careful in choosing the versions cause it might harm to the phone or perhaps it can kill your phone.
No comments:
Post a Comment