Threat Database Trojans Trojan:SymbOS/ConBot.A

Trojan:SymbOS/ConBot.A

By ESGI Advisor in Trojans

Threat Scorecard

Ranking: 16,347
Threat Level: 90 % (High)
Infected Computers: 32
First Seen: November 21, 2011
Last Seen: August 7, 2023
OS(es) Affected: Windows

Trojan:SymbOS/ConBot.A is a premium rate SMS Trojan infection which based on the Spitmo source code. SymbOS/ConBot contains bot characteristics. Trojan:SymbOS/ConBot.A also contains a package called SystemService that contains an inserted package called AppBoot. Trojan:SymbOS/ConBot.A does not add an icon to the applications menu. Once the installation is executed, Trojan:SymbOS/ConBot.A does not inform the computer user of its appearance. Trojan:SymbOS/ConBot.A controls new incoming SMS messages and messages that are moved from the Outbox to the Sent folder. On such conditions, Trojan:SymbOS/ConBot.A deletes the SMS messages it interrupts. Trojan:SymbOS/ConBot.A also contains a function of handling messaging events that inform about new created messages. Uninstall Trojan:SymbOS/ConBot.A immediately after detection.

File System Details

Trojan:SymbOS/ConBot.A may create the following file(s):
# File Name Detections
1. c:\sys\bin\SystemService.exe
2. c:\sys\bin\AppBoot.exe
3. c:\Private\EE1DCDAA\first
4. c:\private\101f875a\import\[2005A60D].rsc
5. c:\System\AppBoot\SystemService.boot
6. c:\Private\EE1DCDAA\start.xml

Trending

Most Viewed

Loading...