ANDROIDOS_SHUAME.OPSA

 Analysis by: Wish Wu

 PLATFORM:

Android

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Rootkit

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This rootkit takes advantage of certain vulnerabilities.

  TECHNICAL DETAILS

Download Routine

After successfully exploiting the said vulnerability, this malware connects to the following URLs to possibly download other malicious files:

  • http://adservice.{BLOCKED}eapp.com/root/getAdList.json

Other Details

This rootkit takes advantage of the following vulnerabilities: