Threat description




Bootton.E is a SIS file that installs small software component that resets the device if executed. This component is installed as reset application. Bootton.E installs also corrupted system components that cause reboot to fail. Thus leaving phone in unusable state.


F-Secure Mobile Anti-Virus is capable to detecting and deleting the Bootton.E trojan. It can be also removed by uninstalling it with Symbian application manager.

Disinfection for the cases when phone is already rebooted and cannot start up

CAUTION! This method will remove all data on the device including calendar and phone numbers

  • Power off the phone
  • Hold following three buttons down "answer call" + "*" + "3"
  • Keep holding the buttons and power on the phone
  • Depending on the model, you either get text "formatting" or start-up dialog that asks for initial phone settings
  • Your phone is now formatted and can be used again

Technical Details

In its structure Bootton.E is quite similar to SymbOS/Bootton.C. With the exception that instead of replacing system files with corrupted binaries the Bootton.E uses application that causes device to reboot.

In the device that is infected with Bootton.E, executing reboot application reboots device immediately. Installed corrupted system components cause reboot to fail. Thus leaving phone in unusable state after reboot.


F-Secure Mobile Anti-Virus for Symbian detects this malware starting from the

Detection Type: Mobile

Database: update build number 44

Submit a Sample

Suspect a file or URL was wrongly detected? Send it to our Labs for further analysis

Submit a Sample

Protect your life on every device

F-Secure SAFE looks out for you and the people close to you, on every device

More Info