マイライブラリ
マイライブラリ

+ マイライブラリに追加

電話

お問い合わせ履歴

電話(英語)

+7 (495) 789-45-86

Profile

Android.SmsSend.23656

Added to the Dr.Web virus database: 2017-12-22

Virus description added:

Technical information

Malicious functions:
Sends SMS messages:
  • 15778211450: -- -- Raid Bucker-7452876572 -- -- Alley Fiend-6044278854 -- -- Alley Fiend-7325288216 -- -- Alley Fiend-1655554473 -- -- Eight Patrol-1443911756 -- -- Eight Patrol-2316381866 -- -- Alias Stick-7163992557 -- -- Alias Stick-4212376107 -- -- Fatsy Bear-3666083426 -- -- Fatsy Bear-4342925644 -- -- Fatsy Bear-4134646414 -- -- Night Train-7456923733 -- -- Chameleon-6474535030 -- -- Chameleon-3411909965 -- -- Spunky Sphinx-7731229781 -- -- Spunky Sphinx-2727072326 -- -- Spunky Sphinx-3155535670 -- -- Knuckles-7751483342 -- -- Knuckles-3042895880 -- -- Granola-4712193435 -- -- Granola-6715019991 -- -- AirportHobo XD-1472321011 -- -- AirportHobo XD-2644441503 -- -- Mr. Spy-5201822668 -- -- Mr. Spy-6236716445 -- -- Tall Sally-7615738888 -- -- Tall Sally-4111947726 -- -- Omega Sub-3604733104 -- -- Dancing Madman-5536664653 -- -- Dancing Madman-7603264782 -- -- Po1son-7772267472 -- -- Po1son-2677359036 -- -- Po1son-3246955930 -- -- Bowie-6344484006 -- -- Bowie-1544746132 -- -- Sky Bully-1716976571 -- -- Sky Bully-2167236448 -- -- Con Mammoth-5113434760 -- -- Pepper Legs-4362979893 -- -- Black Walnut-6476858208 -- -- Black Walnut-7264423904 -- -- Black Walnut-1554082646 -- -- Feral Filly-1151812608 -- -- Feral Filly-2662245656 -- -- High-Fructose-4646894919 -- -- High-Fructose-2354618110 -- -- High-Fructose-7504713701 -- -- Easy Street-4671313052 -- -- Easy Street-3331514687 -- -- AxelRoad-7566113078 -- -- AxelRoad-1703203734 -- -- AxelRoad-7715201730 -- -- -- -- AxelRoad-7715201730 -- -- AxelRoad-1703203734 -- -- AxelRoad-7566113078 -- -- Easy Street-3331514687 -- -- Easy Street-4671313052 -- -- High-Fructose-7504713701 -- -- High-Fructose-2354618110 -- -- High-Fructose-4646894919 -- -- Feral Filly-2662245656 -- -- Feral Filly-1151812608 -- -- Black Walnut-1554082646 -- -- Black Walnut-7264423904 -- -- Black Walnut-6476858208 -- -- Pepper Legs-4362979893 -- -- Con Mammoth-5113434760 -- -- Sky Bully-2167236448 -- -- Sky Bully-1716976571 -- -- Bowie-1544746132 -- -- Bowie-6344484006 -- -- Po1son-3246955930 -- -- Po1son-2677359036 -- -- Po1son-7772267472 -- -- Dancing Madman-7603264782 -- -- Dancing Madman-5536664653 -- -- Omega Sub-3604733104 -- -- Tall Sally-4111947726 -- -- Tall Sally-7615738888 -- -- Mr. Spy-6236716445 -- -- Mr. Spy-5201822668 -- -- AirportHobo XD-2644441503 -- -- AirportHobo XD-1472321011 -- -- Granola-6715019991 -- -- Granola-4712193435 -- -- Knuckles-3042895880 -- -- Knuckles-7751483342 -- -- Spunky Sphinx-3155535670 -- -- Spunky Sphinx-2727072326 -- -- Spunky Sphinx-7731229781 -- -- Chameleon-3411909965 -- -- Chameleon-6474535030 -- -- Night Train-7456923733 -- -- Fatsy Bear-4134646414 -- -- Fatsy Bear-4342925644 -- -- Fatsy Bear-3666083426 -- -- Alias Stick-4212376107 -- -- Alias Stick-7163992557 -- -- Eight Patrol-2316381866 -- -- Eight Patrol-1443911756 -- -- Alley Fiend-1655554473 -- -- Alley Fiend-7325288216 -- -- Alley Fiend-6044278854 -- -- Raid Bucker-7452876572
  • 15778211450: 2202506353 2017-11-16 11:27:00 Tell rob to mack his gf in the theater -- --4342925644 2017-11-16 09:27:01 Sorry,in meeting I'll call later -- --5113434760 2017-11-16 05:27:01 U dun say so early hor... U c already then say... -- --4134646414 2017-11-16 03:27:00 Hmmm...k...but i want to change the field quickly da:-)i wanna get system administrator or network administrator.. -- --7604292008 2017-11-16 02:26:59 You were supposed to wake ME up >:( -- --1472321011 2017-11-16 01:26:59 We tried to contact you re your reply to our offer of a Video Handset? 750 anytime networks mins? UNLIMITED TEXT? Camcorder? Reply or call 08000930705 NOW -- --6474535030 2017-11-15 11:27:00 LOOK AT AMY URE A BEAUTIFUL, INTELLIGENT WOMAN AND I LIKE U A LOT. I KNOW U DONеХT LIKE ME LIKE THAT SO DONеХT WORRY. -- --1716976571 2017-11-15 04:27:01 Lol your always so convincing. -- --3331514687 2017-11-15 04:26:59 Ela kano.,il download, come wen ur free.. -- --7276506302 2017-11-15 03:27:00 Nah I don't think he goes to usf, he lives around here though -- --2727072326 2017-11-15 09:27:00 What's up bruv, hope you had a great break. Do have a rewarding semester. -- --6474535030 2017-11-15 06:27:01 Can you say what happen -- --3666083426 2017-11-15 03:27:01 ok. I am a gentleman and will treat you with dignity and respect. -- --7504713701 2017-11-14 10:27:00 Ta-Daaaaa! I am home babe, are you still up ? -- --4111947726 2017-11-14 07:27:00 Ummma.will call after check in.our life will begin from qatar so pls pray very hard. -- --3773595141 2017-11-14 05:27:01 Aight, I'll hit you up when I get some cash -- --2662245656 2017-11-14 04:27:00 Any pain on urination any thing else? -- --1151812608 2017-11-14 03:27:01 You available now? I'm like right around hillsborough & <#> th -- --1703203734 2017-11-14 03:27:00 The wine is flowing and i'm i have nevering.. -- --7452876572 2017-11-14 02:27:00 Where did u go? My phone is gonna die you have to stay in here
Miscellaneous:
Gains access to telephone information (number, imei, etc.).
Adds tasks to the system scheduler.
Displays its own windows over windows of other applications.
Parses information from SMS messages.
Gains access to information about sent/received SMS messages.

Curing recommendations


Android

  1. If the mobile device is operating normally, download and install Dr.Web for Android Light. Run a full system scan and follow recommendations to neutralize the detected threats.
  2. If the mobile device has been locked by Android.Locker ransomware (the message on the screen tells you that you have broken some law or demands a set ransom amount; or you will see some other announcement that prevents you from using the handheld normally), do the following:
    • Load your smartphone or tablet in the safe mode (depending on the operating system version and specifications of the particular mobile device involved, this procedure can be performed in various ways; seek clarification from the user guide that was shipped with the device, or contact its manufacturer);
    • Once you have activated safe mode, install the Dr.Web для Android Light onto the infected handheld and run a full scan of the system; follow the steps recommended for neutralizing the threats that have been detected;
    • Switch off your device and turn it on as normal.

Find out more about Dr.Web for Android