Threat Descriptions

Trojan:SymbOS/Fontal

Classification

Category :

Malware

Type :

Trojan

Platform :

SymbOS

Aliases :

SymbOS/Fontal, Trojan:SymbOS/Fontal

Summary

Trojan:SymbOS/Fontal variants install a corrupted Font file onto the device, causing the device to fail to start at the next reboot.

Removal

A False Positive is when a file is incorrectly detected as harmful, usually because its code or behavior resembles known harmful programs. A False Positive will usually be fixed in a subsequent database update without any action needed on your part. If you wish, you may also:

  • Check for the latest database updates

    First check if your F-Secure security program is using the the latest updates, then try scanning the file again.

  • Submit a sample

    After checking, if you still believe the file is incorrectly detected, you can submit a sample of it for re-analysis.

    Note: If the file was moved to quarantine, you need to collect the file from quarantine before you can submit it.

  • Exclude a file from further scanning

    If you are certain that the file is safe and want to continue using it, you can exclude it from further scanning by the F-Secure security product.

    Note: You need administrative rights to change the settings.

Technical Details

Variants in the Trojan:SymbOS/Fontal family affect devices running the Symbian S60 operating system. They are distributed in malicious Symbian Installation (SIS) files. The names of the malicious files may vary depending on the specific variant.

When executed, the Fontal variant will install a corrupted Font file on the device. When the device is next rebooted, the corrupted file is loaded instead of the correct original one; this causes the phone to fail.

For further details on various Fontal variants, please visit the links below: