1. /
  2. Security Response/
  3. Android.Pris

Android.Pris

Risk Level 1: Very Low

Discovered:
18 June 2012
Updated:
19 June 2012 2:46:57 AM
Type:
Trojan
Infection Length:
Varies
Systems Affected:
Android
Android.Pris is a Trojan horse for Android devices that silently downloads a malicious application and attempts to open a back door on the compromised device.

Android package file
The Trojan may arrive as a package with the following name:

APK: org.SIMInformation
Version: 1.0

The following icon is displayed on the device once the application is installed:

Antivirus Protection Dates

  • Initial Rapid Release version 18 June 2012 revision 008
  • Latest Rapid Release version 19 February 2013 revision 016
  • Initial Daily Certified version 18 June 2012 revision 017
  • Latest Daily Certified version 18 June 2012 revision 017
  • Initial Weekly Certified release date 20 June 2012
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Medium
  • Payload: Opens a back door and downloads potentially malicious applications.

Distribution

  • Distribution Level: Low
Note: On May 14, 2015, modifications will be made to the threat write-ups to streamline the content. The Threat Assessment section will no longer be published as this section is no longer relevant to today's threat landscape. The Risk Level will continue to be the main threat risk assessment indicator.
Writeup By: Costin Ionescu
2015 Internet Security Threat Report, Volume 20