Android/Simplocker [Threat Name] go to Threat
Android/Simplocker.I [Threat Variant Name]
Available cleaner [Download Simplocker Decryptor ]
|Detection created||Jul 14, 2014|
|Signature database version||10093|
|Signature Android db version||1806|
Android/Simplocker.I is a trojan that encrypts files on local drives. The trojan collects various sensitive information. The trojan attempts to send gathered information to a remote machine.
The trojan must be downloaded and manually installed.
The trojan disguises itself as the Video Player application.
Android/Simplocker.I is a trojan that steals sensitive information.
The trojan collects the following information:
- IMEI number
- the list of installed software
The trojan attempts to send gathered information to a remote machine.
Android/Simplocker.I is a trojan that encrypts files on local drives.
The trojan displays the following message:
The trojan searches for files with the following file extensions:
The trojan encrypts the file content. The AES encryption algorithm is used.
The extension of the encrypted files is changed to:
To decrypt files, the user is asked to send information/certain amount of money via the MoneyPak payment service.
The trojan acquires data and commands from a remote computer or the Internet.
The trojan contains a URL address. The HTTP protocol is used.
It may perform the following actions:
- capture webcam video/voice