Additional Details
Trojan:SymbOS/MultiDropper is a family of trojan-droppers.
The following details refer to variant MultiDropper.A.
MultipleDropper.ATrojan:SymbOS/Multidropper.A is distributed as a SIS file.
It drops Worm:SymbOS/CommWarrior.Z; Worm:SymbOS/Beselo.D;
and Trojan:SymbOS/Kiazha.A onto the compromised device.
All of the dropped malware components are set to run on installation. The interaction of the various component malware is aiming to ransom money from the user.
• Malware attempts to sign the user up to a QQ account
• It also forwards SMS messages and data gathered from the phone
to the number defined by the malware author
• Incoming and outgoing SMS are deleted
• After a delay a warning message is displayed, telling the user
to send money to the malware author to repair the phone
For the further details of malware functionality see detailed descriptions of included malware components: