Saltar o Menu >>

[Normal] Vírus SymbOS.Mabir. Como remover?

[#] Por Dextro em Janeiro 1, 2007 ás 19:41 na(s) categoria(s) Tutorials | Comenta »

Quando executado, o SymbOS.Mabir faz o seguinte:

  1. Cria as seguintes pastas/ficheiros:

    \SYSTEM\SYMBIANSECUREDATA\CARIBESECURITYMANAGER\CARIBE.APP
    \SYSTEM\SYMBIANSECUREDATA\CARIBESECURITYMANAGER\CARIBE.RSC
    \SYSTEM\RECOGS\FLO.MDL
    \SYSTEM\SYMBIANSECUREDATA\CARIBESECURITYMANAGER\CARIBE.SIS
    \SYSTEM\SYMBIANSECUREDATA\CARIBESECURITYMANAGER\INFO.SIS

  2. Manda mensagens MMS para todos os números de telefone das MMS recentemente recebidas, sendo enviado como anexo uma cópia do vírus.
  3. Procura dispositivos com bluethooth activado para lhes mandar o vírus.
  4. Executa-se cada vez que o telemóvel é ligado.

Leia o resto do texto »

Tags: , , , , , , , , , , ,

 

[Normal] Vírus SymbOS.Skulls. Como remover?

[#] Por Dextro em Janeiro 1, 2007 ás 19:26 na(s) categoria(s) Tutorials | Comenta »

Quando executado, o SymbOS.Skulls faz o seguinte:

  1. Muda o ícone da maioria das aplicações para este:
    Caveira - Ícone do SymbOS.Skulls
  2. Causa mau funcionamento das aplicações
  3. Instala os seguintes ficheiros:

    C:\System\Libs\ZLIB.DLL
    C:\System\Libs\softwarecopier200.dll
    C:\System\Libs\notification.cmd
    C:\System\Libs\lmpro.r02
    C:\System\Libs\lmpro.r01
    C:\System\Libs\licencemanager20s.dll
    C:\System\Apps\WALLETAVOTA\WALLETAVOTA.APP
    C:\System\Apps\WALLETAVOTA\WALLETAVOTA.aif
    C:\System\Apps\WALLETAVMGMT\WALLETAVMGMT.APP
    C:\System\Apps\WALLETAVMGMT\WALLETAVMGMT.aif
    C:\System\Apps\Voicerecorder\Voicerecorder.app
    C:\System\Apps\Voicerecorder\Voicerecorder.aif
    C:\System\Apps\Vm\Vm.app
    C:\System\Apps\Vm\Vm.aif
    C:\System\Apps\VCommand\VCommand.app
    C:\System\Apps\VCommand\VCommand.aif
    C:\System\Apps\Ussd\Ussd.app
    C:\System\Apps\Ussd\Ussd.aif
    C:\System\Apps\ToDo\ToDo.app
    C:\System\Apps\ToDo\ToDo.aif
    C:\System\Apps\SysAp\SysAp.app
    C:\System\Apps\SysAp\SysAp.aif
    C:\System\Apps\Startup\Startup.app
    C:\System\Apps\Startup\Startup.aif
    C:\System\Apps\Speeddial\Speeddial.app
    C:\System\Apps\Speeddial\Speeddial.aif
    C:\System\Apps\SmsViewer\SmsViewer.app
    C:\System\Apps\SmsViewer\SmsViewer.aif
    C:\System\Apps\SmsEditor\SmsEditor.app
    C:\System\Apps\SmsEditor\SmsEditor.aif
    C:\System\Apps\SimDirectory\SimDirectory.app
    C:\System\Apps\SimDirectory\SimDirectory.aif
    C:\System\Apps\Sdn\Sdn.app
    C:\System\Apps\Sdn\Sdn.aif
    C:\System\Apps\ScreenSaver\ScreenSaver.app
    C:\System\Apps\ScreenSaver\ScreenSaver.aif
    C:\System\Apps\SchemeApp\SchemeApp.app
    C:\System\Apps\SchemeApp\SchemeApp.aif
    C:\System\Apps\Satui\Satui.app
    C:\System\Apps\Satui\Satui.aif
    C:\System\Apps\PushViewer\PushViewer.app
    C:\System\Apps\PushViewer\PushViewer.aif
    C:\System\Apps\PSLN\PSLN.app
    C:\System\Apps\PSLN\PSLN.aif
    C:\System\Apps\ProvisioningCx\ProvisioningCx.app
    C:\System\Apps\ProvisioningCx\ProvisioningCx.aif
    C:\System\Apps\ProfileApp\profileapp.app
    C:\System\Apps\ProfileApp\ProfileApp.aif
    C:\System\Apps\PRESENCE\PRESENCE.APP
    C:\System\Apps\PRESENCE\PRESENCE.aif
    C:\System\Apps\Pinboard\Pinboard.app
    C:\System\Apps\Pinboard\Pinboard.aif
    C:\System\Apps\Phonebook\Phonebook.app
    C:\System\Apps\Phonebook\Phonebook.aif
    C:\System\Apps\Phone\Phone.app
    C:\System\Apps\Phone\Phone.aif
    C:\System\Apps\NSmlDSSync\NSmlDSSync.app
    C:\System\Apps\NSmlDSSync\NSmlDSSync.aif
    C:\System\Apps\NSmlDMSync\NSmlDMSync.app
    C:\System\Apps\NSmlDMSync\NSmlDMSync.aif
    C:\System\Apps\NpdViewer\NpdViewer.app
    C:\System\Apps\NpdViewer\NpdViewer.aif
    C:\System\Apps\Notepad\Notepad.app
    C:\System\Apps\Notepad\Notepad.aif
    C:\System\Apps\MusicPlayer\MusicPlayer.app
    C:\System\Apps\MusicPlayer\MusicPlayer.aif
    C:\System\Apps\MsgMailViewer\MsgMailViewer.app
    C:\System\Apps\MsgMailViewer\MsgMailViewer.aif
    C:\System\Apps\MsgMailEditor\MsgMailEditor.app
    C:\System\Apps\MsgMailEditor\MsgMailEditor.aif
    C:\System\Apps\MmsViewer\MmsViewer.app
    C:\System\Apps\MmsViewer\MmsViewer.aif
    C:\System\Apps\MmsEditor\MmsEditor.app
    C:\System\Apps\MmsEditor\MmsEditor.aif
    C:\System\Apps\MMM\MMM.app
    C:\System\Apps\mmcapp\mmcapp.app
    C:\System\Apps\mmcapp\mmcapp.aif
    C:\System\Apps\Menu\Menu.app
    C:\System\Apps\Menu\Menu.aif
    C:\System\Apps\MediaSettings\MediaSettings.app
    C:\System\Apps\MediaSettings\MediaSettings.aif
    C:\System\Apps\MediaPlayer\MediaPlayer.app
    C:\System\Apps\MediaPlayer\MediaPlayer.aif
    C:\System\Apps\MediaGallery\MediaGallery.app
    C:\System\Apps\MediaGallery\MediaGallery.aif
    C:\System\Apps\mce\mce.app
    C:\System\Apps\mce\mce.aif
    C:\System\Apps\Logs\Logs.app
    C:\System\Apps\Logs\Logs.aif
    C:\System\Apps\location\location.app
    C:\System\Apps\location\location.aif
    C:\System\Apps\ImageViewer\ImageViewer.app
    C:\System\Apps\ImageViewer\ImageViewer.aif
    C:\System\Apps\GS\gs.app
    C:\System\Apps\GS\GS.aif
    C:\System\Apps\FileManager\FileManager.app
    C:\System\Apps\FileManager\FileManager.aif
    C:\System\Apps\Dictionary\dictionary.app
    C:\System\Apps\Dictionary\Dictionary.aif
    C:\System\Apps\DdViewer\DdViewer.app
    C:\System\Apps\DdViewer\DdViewer.aif
    C:\System\Apps\cshelp\cshelp.app
    C:\System\Apps\cshelp\cshelp.aif
    C:\System\Apps\Converter\converter.app
    C:\System\Apps\Converter\Converter.aif
    C:\System\Apps\ConnectionMonitorUi\ConnectionMonitorUi.app
    C:\System\Apps\ConnectionMonitorUi\ConnectionMonitorUi.aif
    C:\System\Apps\CodViewer\CodViewer.app
    C:\System\Apps\CodViewer\CodViewer.aif
    C:\System\Apps\ClockApp\ClockApp.app
    C:\System\Apps\ClockApp\ClockApp.aif
    C:\System\Apps\Chat\Chat.app
    C:\System\Apps\Chat\Chat.aif
    C:\System\Apps\CERTSAVER\CERTSAVER.APP
    C:\System\Apps\CERTSAVER\CERTSAVER.aif
    C:\System\Apps\CbsUiApp\CbsUiApp.app
    C:\System\Apps\CbsUiApp\CbsUiApp.aif
    C:\System\Apps\Camcorder\Camcorder.app
    C:\System\Apps\Camcorder\Camcorder.aif
    C:\System\Apps\Calendar\Calendar.app
    C:\System\Apps\Calendar\Calendar.aif
    C:\System\Apps\Calcsoft\Calcsoft.app
    C:\System\Apps\Calcsoft\Calcsoft.aif
    C:\System\Apps\bva\bva.app
    C:\System\Apps\bva\bva.aif
    C:\System\Apps\BtUi\BtUi.app
    C:\System\Apps\BtUi\BtUi.aif
    C:\System\Apps\Browser\Browser.app
    C:\System\Apps\Browser\Browser.aif
    C:\System\Apps\Autolock\Autolock.app
    C:\System\Apps\Autolock\Autolock.aif
    C:\System\Apps\AppMngr\Appmngr.app
    C:\System\Apps\AppMngr\AppMngr.aif
    C:\System\Apps\AppInst\Appinst.app
    C:\System\Apps\AppInst\AppInst.aif
    C:\System\Apps\About\About.app
    C:\System\Apps\About\About.aif

Leia o resto do texto »

Tags: , , , , , , , , , , ,

 

[Normal] Vírus SymbOS.Hobbes.A Como remover?

[#] Por Dextro em Janeiro 1, 2007 ás 19:10 na(s) categoria(s) Tutorials | Comenta »

SymbOS.Hobbes.A dá-se a conhecer ao nosso telemóvel com o nome Anti-Virus.sis - um truque para pensares que se trata de uma aplicação segura…

Quando executado, o SymbOS.Hobbes.A faz o seguinte:

  1. Instala os seguintes ficheiros que depois de o telemóvel ser reiniciado vão fazer incapacitar todas as aplicações de funcionar correctamente:

    \apps\FExplorer\FExplorer.aif
    \apps\FExplorer\FExplorer.app
    \apps\FExplorer\FExplorer.mbm
    \apps\FExplorer\FExplorer.rsc
    \apps\FExplorer\FExplorer_CAPTION.rsC
    \apps\FExplorer\flo.mdl (uma cópia do SymbOS.Cabir.Q)
    \system\recogs\jjlas.mdl
    \system\recogs\RecAppForge.mdl
    \system\recogs\UltraMP3Rec.mdl
    \system\recogs\recAutoExec.mdl

  2. Esconde todas as aplicações que o utilizador tentar instalar no dispositivo
  3. Incapacita todas as aplicações uma vez que o dispositivo é reiniciado
  4. Impede que se aceda ao menu das aplicações, nãop sendo possivel executa-las

Leia o resto do texto »

Tags: , , , , , , , , , , , , ,

 

 
 
Arquivos ]