Image1

Wednesday, 29 February 2012

Android.Anzhu - a new backdoor for mobile devices based on Android



Hey Frenzz...






The company «Doctor Web" said the emergence of a new backdoor for the mobile operating system Android. Android.Anzhu can perform a variety of directives received from the remote command center intruders installed without your knowledge, and other applications to change the browser bookmarks.
This malicious program is distributed with Android.Anzhu Chinese sites offering free software for OS Android. Trojan-backdoor built into a legitimate program Screen Off And Lock, designed to lock the screen on and off the mobile device in one touch without using an animated slider and the power button. After beginning the installation of the system is installed the program itself Screen Off And Lock and creates an additional icon to run it in configuration mode - Configure Screen Off And Lock. If this application is downloaded from the official site of Android Market, and that's all over, but if a user downloaded it from a Chinese site, in addition to the above components on the device runs a backdoor, which can connect to a remote server owned by virus writers, goes into expectations of incoming commands from attackers.
In addition to the various directives, Android.Anzhu «able to" download and install without the user knowing the other programs listed in the transmitted hackers backdoor instruction. After loading the specified application, Android.Anzhu can change its system privileges and run. In addition, a Trojan functionality for changing tabs in some of the most popular browsers for the mobile operating system Android. Android.Anzhu not just a set of bookmarks list transmitted by virus writers, but also change their attributes, marked as visited, which gives greater weight to the following tabs in the eyes of the user. Another feature Android.Anzhu - the ability to monitor system log Android, in particular, to monitor events related to the launch and opening the windows of other applications. Finally, the Trojan is able to collect information on the mobile device (the list of installed applications, IMEI), and send her attackers.
Of course, the greatest danger Android.Anzhu is for owners of so-called "rutovannyh" phones - devices that the user has administrative privileges of the operating system.

Filled Under:

0 comments:

Post a Comment