View Full Version : Oldboot: the first bootkit on Android

01-19-2014, 10:59 PM
A few days ago, we found an Android Trojan using brand new method to modify devicesí boot partition and booting script file to launch system service and extract malicious application during the early stage of systemís booting. Due to the special RAM disk feature of Android devicesí boot partition, all current mobile antivirus product in the world canít completely remove this Trojan or effectively repair the system. We named this Android Trojan family as Oldboot. As far as we know, thisís the first bootkit found on Android platform in the wild.

Complete Post: http://blogs.360.cn/360mobile/2014/01/17/oldboot-the-first-bootkit-on-android/