Avira Virus Lab

‹ Back


  • Name
  • Date discovered
    Jul 7, 2017

The file is a malicious Android application that undermines the security of the device or the privacy of the user. Typically, Android malware attempts to steal personal or account information, gain access to device functions via backdoors, send text messages or dial premium numbers, and lock or encrypt the device so the user has to pay to unlock the device.

A generic detection routine designed to detect common family characteristics shared in several variants. This special detection routine was developed in order to detect unknown variants and will be enhanced continuously.

Operating System: Android.

Propagation method: By visiting infected websites.

This piece of malware is able to steal sensitive information.

  • Aliases
    ESET: a variant of Android/Locker.KU trojan
    Microsoft: Ransom:AndroidOS/LockScreen!rfn
    Kaspersky Lab: HEUR:Trojan-Ransom.AndroidOS.Small.snt
    Dr. Web: Android.Locker.4459