Home / malwarePDF  

Doomboot.P


First posted on 13 September 2006.
Source: SecurityHome

Aliases :

There are no other names known for Doomboot.P.

Explanation :

DoomBoot.P is a malicious SIS file trojan that drops corrupted system binaries and after installing the corrupted binaries reboots the phone. The corrupted binaries dropped by DoomBoot.P prevent the phone from restarting thus disabling the phone immediately after installation.

Installation to system Doomboot.P installs corrupted system binaries into C: drive of the phone. When phone boots this corrupted binaries will be loaded instead of the correct ones, and the phone will crash at boot.

Solution :

Disinfection for the cases when phone cannot start up
CAUTION! this method will remove all data on the device including calendar and phone numbers:

  1. Power off the phone

  2. Hold the following three buttons down - "answer call" + "*" + "3"

  3. Keep holding down the buttons and power on the phone

  4. Depending on the model, you will either get text that reads "formatting" or a start-up dialog that asks for the initial phone settings

  5. Your phone is now formatted and can be used again

Last update 13 September 2006

 

TOP