Home / malwarePDF  

Romride.A


First posted on 25 April 2007.
Source: SecurityHome

Aliases :

There are no other names known for Romride.A.

Explanation :

SymbOS/Romride.A is a malicious SIS trojan that installs malfunctioning system configuration components that cause different behavior depending on the ROM software version on the device. Different effects witnessed range from start up failure to no apparent effect on the device at all.

If you have rebooted the phone and the phone will not start again, the phone can be recovered with a hard format key code that is entered in the phone at boot.

Spreading in Nokia Live.sis

Installation to System
SymbOS/Romride.A installs a malfunctioning system configuration files into the C: drive of the phone. This is followed by different effect depending on the version of the ROM software on the device. Effects witnessed vary from start up failure, to no apparent effect at all.

Payload
Replaces system configuration files with corrupted configuration files



Shortly after the device infected with SymbOS/Romride.A restarts, it shows a notification similar to the picture above. When this notification is displayed the only working function on the device is the option to power-off.

Last update 25 April 2007

 

TOP

Malware :

Family: