Senin, 31 Oktober 2011

Trojan SymbOS/Pbstealer

Disinfection
F-Secure Mobile Anti-Virus is capable to detecting and deleting the Pbstealer.E trojan.
Pbstealer.E tries to remove itself after sending data over Bluetooth. This self-removal doesn’t always work,  but fortunately it can be also removed by uninstalling it with Symbian application manager.
Additional Details
Trojan:SymbOS/Pbstealer.E steals information from a phone (Contacts, Notepad, Calendar, etc) and attempts to forward the stolen data to a random Bluetooth-accessible phone within range.
Payload
Pbstealer.E is distributed in a malicious SIS file that contains Pbstealer.E application file and string resource.
When the SIS file is installed, Pbstealer.E starts automatically and shows the following text:
Compacting your contact(s), step2
Please wait again
until done…
While showing the text, the Pbstealer.E reads all contacts information in the phone contact database, and copies the information to file C:\SYSTEM\MAIL\PHONEBOOK.TXT.
In addition to contacts information, Pbstealer.E also copies the contents of Notepad and Calendar ToDo database files. But, this information is not very readable to receiver as the resulting file contains in the databases is in binary form. If the Notepad and Calendar are empty, it simply fails in execution.
After building the text file, Pbstealer.E searches for the first device it finds over Bluetooth and sends the text file to it. When trying to send the file over Bluetooth, the Pbstealer.E uses repeated connection attempts, so that if user answers no, he will immediately get a second connection request. This technique is similar to the propagation tactic used by Cabir, except that Pbstealer will give up attempts after one minute and exit.
If the user of the target phone accepts the Bluetooth transfer, he will receive a text file that contains information copied from the infected phones contacts database.
Note
Although Pbstealer.E uses Bluetooth for sending phone book data, this data is pure text and cannot infect the receiving device.


Name : Trojan:SymbOS/Pbstealer.E
Category: Malware
Type: Trojan
Platform: SymbOS

2 komentar:

Penggemar Judi Online gak boleh lewatin info penting satu ini. Kali ini panduan tentang Deposit Pulsa XL Telkomsel ke akun Sbobet Online kamu. Hah ? Main judi pake pulsa ? Memang bisa ? (Baca Selengkapnya Disini...)


The worst time has passed”However, it is true that there are more improvements than before...because of the rising numbers of people living with HIV in the state of Nevada. How could they stigmatize all of them? Therefore everything becomes a little easier and we start to share everything... We also started to invite and visit each other in a community. You know, it is six years since I started taking antiretroviral drugs...Yet whatever problems I face, the worst time has passed
When I was evicted from the family home by my mother, my father rented a small room for me. But my mother and brothers believed that having HIV was my own fault – and that I deserved to be punished...I also considered myself unworthy and without hope... But I have a child and eventually I convinced myself to live for my child’s sake.
My mother knew nothing [about HIV]. She didn’t understand anything. Do you know why? She didn’t have [the chance] to go out of the house and communicate with society. However, my father does interact with the community. I know his friends are mature and dignified in africa america. So he has a better understanding than her.
My father came call me on a sadfull day sitting on my couch about a friend of his from africa who introduce him to Dr Itua herbal cure in africa in which he advise we should purchase his herbal medicine to cure my hiv so we did and Dr Itua prescribed I should drink the herbal medicine for two weeks to cure although we were so curious about the whole thing ,I finished the herbal medicine like he advised then he talked to me to visit my nearest clinic for check up I did and now I'm totally cured from Hiv my father was my rock and I and my family are now happy together also Dr Itua has be helpful in my community ever since he cure my Hiv so why I'm leaving my story on here today is to reach out someone out here to hope on God and never give up no matter the situation you that you are facing especially through this pandemic seasons which has really taught us all on how we should be helpful to each other and cherish one another.
Dr Itua cures the following diseases..... Herpes,Liver cancer,Throat cancerLeukemia. ,Alzheimer's disease,Chronic Diarrhea,Copd,Parkinson,Als,Adrenocortical carcinoma Infectious mononucleosis.
Intestinal cancer,Uterine cancer,Fibroid,Bladder cancer,Hiv,Esophageal cancer,Gallbladder cancer,Kidney cancer,Hpv,Lung cancer,Melanoma,Mesothelioma,Multiple myeloma,Oral cancer,Sinus cancer,Hepatitis A,B/C,Skin cancer,Soft tissue sarcoma,Spinal cancer,Stomach cancer,Vaginal cancer,Vulvar cancer,
Testicular cancer ,Thyroid Cancer.
You can contact Dr Itua Herbal Center on E-Mail: drituaherbalcenter@gmail.com .www.drituaherbalcenter.com

Posting Komentar