Content

SymbOS/SmsSend.G

Type
Trojan
SubType
-
Discovery Date
03/04/2008
Length
15,404
Minimum DAT
5244 (03/04/2008)
Updated DAT
5244 (03/04/2008)
Minimum Engine
5.1.00
Description Added
03/04/2008
Description Modified
03/04/2008 4:53 AM (PT)
Risk Assessment
Corporate User
Low
Home User
Low

Tab Navigation

Characteristics

After installation SymbOS/SmsSend.G is located at c:\system\data\appman.exe. And the following files are dropped

  • c:\system\data\appmab.cfg 
  • c:\system\recogs\appmae.mdl
  • e:\system\recogs\appmae.mdl
  • e:\system\data\appman.exe 
  • e:\system\data\appmab.cfg

SymbOS/SmsSend.G forwards all messages to the malware author's number.

Symptoms

  • Forward SMS to a phone number in a data file.

Method of Infection

Removal

-

Variants

Variants

    N/A

All Information

Overview -

SymbOS/SmsSend.G is a trojan that forward user’s SMS to a phone number in a configuration file.

Characteristics

Characteristics -

After installation SymbOS/SmsSend.G is located at c:\system\data\appman.exe. And the following files are dropped

  • c:\system\data\appmab.cfg 
  • c:\system\recogs\appmae.mdl
  • e:\system\recogs\appmae.mdl
  • e:\system\data\appman.exe 
  • e:\system\data\appmab.cfg

SymbOS/SmsSend.G forwards all messages to the malware author's number.

Symptoms

Symptoms -

  • Forward SMS to a phone number in a data file.

Method of Infection

Method of Infection -

Removal -

Removal -

-

Variants

Variants -

    N/A