Thursday, December 30, 2010

New Trojans appeared Android

New Trojans appeared Android

Mobile Security startup Lookout Wednesday (12/29) said that there is a locking device Trojans Android in the Chinese market, Lookout named the Trojans Geinimi, and claim that this is the most complex malware Android, not only will Android device to steal information, and the first zombie networks with similar capabilities Android malware.




Lookout said that when Android devices are Geinimi infection, in addition to data on the phone the user will be sent to the remote server, but also the remote server to receive commands from.




Geinimi were initially grafting into legitimate Android applications, especially games, and the Chinese through third-party Android app stores spread is not clear at this stage the use of the Trojans, but may be used to create malicious advertising network Road or to create botnets Android platform.




Lookout shown that when a user performs with Geinimi Android application, the Trojan horse program that runs in the background, and then collect that might jeopardize the privacy of users of various information, including user location, the device's device identifier (IMEI) or SIM card Subscriber Identity (ISEI), every 5 minutes it will try to link the remote server, then the information collected will be passed out.




The ability of Geinimi Lookout found that in addition to passing information about the device, but also to remind the user to download and install the application, or to remind users to remove an application, users can also install applications list reached the server. However, despite the Lookout has been observed Geinimi link and send data to a remote server, but not yet see a server to send a command to Geinimi, In addition, both require users to install or remove applications, all users must still consent.