Technical information
Malicious functions:
Executes code of the following detected threats:
- Android.ZBot.62.origin
Removes app icon from the screen.
Intercepts incoming SMS and terminates the process of their transmission to handlers of other apps.
File system changes:
Creates the following files:
- /data/data/####/com.jpknpbx.oanshomgxw_preferences.xml
- /data/data/####/hzcekck.jar
Miscellaneous:
Gets information about network.
Gets information about phone status (number, IMEI, etc.).
Gets information about installed apps.
Displays its own windows over windows of other apps.
Parses information from SMS.
Gets information about sent/received SMS.