Tag: t-mobile
Bot-vector analysis: Android OS comes pre-installed with malware
by Andy on Mar.09, 2010, under Andriod, Computers & Technology, Internet Culture, Mobile, Mobile, Networking, Security
Apparently, there has been a compromise at HTC or Vodaphone. There are rumors on the web that a Vodaphone “HTC Magic” came pre-installed with multiple malware programs. How would someone slip a file onto a phone before it enters an end user’s hands? Any way you look at it, this seems like a hack.
A quick analysis of the malware reveals that it is in fact a Mariposa bot client.
Every android phone *can* be plugged into any PC or Mac via USB. Under windows it works just like any other insert digital medium (CD, DVD, Flash Drive). Upon being plugged in, it opens the folder and executes the file specified in autorun.ini. This would be the vector a bot herder/malware researcher would use to launch it’s “spread” and stay infected. As long as nobody notices the files on the phones, users would just keep getting re-infected every time they plug in their phone to download their photos. One speculation that may be responsible is: “the SD card” since all that someone would need to do is put “files” in the root of the SD card for them to execute. So the question might be instead be: “How would someone slip a file onto a flash card before it’s inserted into a phone?”.
Interestingly enough, the Mariposa bot is not the only malware I found on the Vodafone HTC Magic phone. There’s also a Confiker and a Lineage password stealing malware.
Why did it take so long for a person to notice malware on the phone? The HTC Magic is one of the most popular smart-phones in the UK. In the US, T-mobile branded this product as the “myTouch 3G“, and that phone has a massive pop. Where is the supporting evidence on the phone? The only “proof” we have so far is a few windows screen shots. I’m intrigued by this and it will be interesting to see what comes to light. I’ll keep you updated when I hear more.
sidekick danger: danger
by Andy on Oct.10, 2009, under Dumb, Networking, Security
Well here is some bad news for t-mobile sidekick users. Danger/Microsoft’s servers are “on the fritz” and when users shut off their sidekick they lose all their data. The event has pulled all sidekicks from the stores.
Wow.
free motorola cliq sweepstakes
by Andy on Oct.09, 2009, under General Stuff
Check it out here if you want to try and get a free motorola cliq from t-mobile.


























