Home / malwarePDF  

Trojan:AndroidOS/Kmin.A


First posted on 08 November 2011.
Source: SecurityHome

Aliases :

Trojan:AndroidOS/Kmin.A is also known as KMHome Android trojan (other), Android/Kmin.A (ESET), Backdoor.AndroidOS.Kmin.b (Kaspersky), Andr/Kmin-C (Sophos).

Explanation :

Trojan:AndroidOS/Kmin.A is a trojan that affects mobile devices running the Android OS operating system and attempts to send Android device data to a remote server for collection by an attacker. The trojan may pose as an Android app named "KMHome".


Top

Trojan:AndroidOS/Kmin.A is a trojan that affects mobile devices running the Android OS operating system and attempts to send Android device data to a remote server for collection by an attacker.



Installation

The trojan may pose as an Android app named "KMHome". When run, it displays an installation screen such as the following:









Payload

Sends device data to a remote server
The trojan attempts to gather the following types of device data and sends it to a remote server named "su.5k3g.com":

  • Device ID
  • Subscriber ID
  • Current time




Analysis by Tim Liu

Last update 08 November 2011

 

TOP