ANDROIDOS_SLOCKER.AXBP

 Analysis by: Echo Duan

 PLATFORM:

Android

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW


A new variant of this mobile malware (ANDROIDOS_SLOCKER.OPST) is known to have the same GUI as WannaCry, and are capable of encrypting files.

  TECHNICAL DETAILS

File Size:

38446 bytes

File Type:

APK

Memory Resident:

Yes

Payload:

Locks mobile device

NOTES:

This malware disguises itself as a system update. During installation, the user is prevented from performing any other actions.

Thirty minutes may pass before the installation transitions into the locking of the affected mobile device. The device is therefore rendered inaccessible.

Should the lock screen be shown, the malware will then notify the user to enter an iTunes code as payment for the device's remote unlocking.

  SOLUTION

Minimum Scan Engine:

9.800

Trend Micro Mobile Security Solution

Trend Micro Mobile Security Personal Edition protects Android and iOS smartphones and tablets from malicious and Trojanized applications. It blocks access to malicious websites, increase device performance, and protects your mobile data. You may download the Trend Micro Mobile Security apps from the following sites:


Did this description help? Tell us how we did.