Backdoor Trojan Is Nearly Impossible to Remove

Locutus

Adorable Deplorable
Jun 18, 2007
32,230
47
48
66
Oh my.


IT security firm Kaspersky claims it has discovered the "most sophisticated" Android trojan yet.

Identified by Kaspersky as "Backdoor.AndroidOS.Obad.a," the mobile menace can send SMS to premium-rate numbers, download other malware and install them on the infected device, as well as send malware to other devices via Bluetooth, and remotely perform commands in the console.

Obad is also extremely well concealed, by means of code obfuscation, and it uses several previously undocumented security holes in the Android operating system to make it very hard to analyze.

Once the trojan is executed on a device, it immediately tries to obtain Device Administrator privileges. Then, it becomes a real nightmare.

"One feature of this Trojan is that the malicious application cannot be deleted once it has gained administrator privileges: by exploiting a previously unknown Android vulnerability, the malicious application enjoys extended privileges, but is not listed as an application with Device Administrator privileges," said Kaspersky Lab Expert Roman Unuchek.

Kaspersky representatives said they have already informed Google about the vulnerability in question.

The only good news about this trojan is that it's not very widespread. According to Kaspersky, it amounts to no more than 0.15% of all malware infection attempts on mobiles.

You can find more information about the Backdoor.AndroidOS.Obad.a trojan here.



http://mashable.com/2013/06/07/new-android-trojan-downloads-other-malware-and-spreads-via-bluetooth/
 

damngrumpy

Executive Branch Member
Mar 16, 2005
9,949
21
38
kelowna bc
This is an international problem, therefore we should have an international solution.
Apply the Death Penalty to hackers and those spreading trojans and other destructive
products that damage computers and operating systems.
 

DurkaDurka

Internet Lawyer
Mar 15, 2006
10,385
129
63
Toronto
This is an international problem, therefore we should have an international solution.
Apply the Death Penalty to hackers and those spreading trojans and other destructive
products that damage computers and operating systems.

Well, that would mean waging full on cyber war against China as that it where most of this malware originates from.
 

Goober

Hall of Fame Member
Jan 23, 2009
24,691
116
63
Moving
Well, that would mean waging full on cyber war against China as that it where most of this malware originates from.

And Eastern Europe. The last scam of multimillion's came from a group that does not touch their financial institutions.
 

DurkaDurka

Internet Lawyer
Mar 15, 2006
10,385
129
63
Toronto
And Eastern Europe. The last scam of multimillion's came from a group that does not touch their financial institutions.

Eastern European's generally go after profit, opposed to China which is engaged in full on espionage. I can't wait until the US responds with a Stuxnet variant on them, you saw what that did the Iran's centrifuges.