Threat Explorer

The Threat Explorer is a comprehensive resource consumers can turn to for daily, accurate, up-to-date information on the latest threats, risks and vulnerabilities.

PUA.FindAndCall

PUA.FindAndCall

Updated:
June 12, 2015
Also Known As:
Trojan.AndroidOS.Fidall.a [Kaspersky]
Infection Length:
Varies
Risk Impact:
Low
Systems Affected:
Android

Behavior

PUA.FindAndCall is a potentially unwanted application that uploads an Android device's address book contents to a remote server.

Note: Definitions prior to June 12, 2015 may detect this threat as FindAndCall.

Antivirus Protection Dates

  • Initial Rapid Release version October 02, 2014 revision 022
  • Latest Rapid Release version June 12, 2015 revision 022
  • Initial Daily Certified version July 05, 2012 revision 018
  • Latest Daily Certified version June 13, 2015 revision 001
  • Initial Weekly Certified release date July 11, 2012
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.
Behavior
The application must be manually installed.

The application uploads an Android device's address book contents to the following location:
[http://]abonent.findandcall.com/profile/phon[REMOVED]


Permissions

When the application is being installed, it requests permissions to perform the following actions:
  • Read the user's contacts data
  • Open network connections
  • Check the phone's current state
  • Access location information, such as GPS information
  • Access location information, such as Cell-ID or WiFi
  • Write to external storage device
  • Initiate a phone call without using the Phone UI or requiring confirmation from the user
  • Read SMS messages on the device
You may have arrived at this page either because you have been alerted by your Symantec product about this risk, or you are concerned that your device has been affected by this risk.


Install Norton Mobile Security
If you do not already have Norton Mobile Security installed on your device, please download the product from the Android marketplace .

Alternatively, you can navigate to the norton.mobi website from your device and download the product from there by completing the following steps:
  1. Select the 90-Day free download.
  2. Click on the Android icon to begin downloading the product.
  3. Click on Install in order to accept the permissions that are being requested by the program.
  4. Next, click Open and then Agree & Launch.

Note: The first time the product runs, you will be required to enter a code that is displayed on the screen in order to activate the product. Enter the provided code and press Submit .


Run a full system scan
Run a full system scan using Norton Mobile Security to remove this risk from the device. To do this, please perform the following actions:
  1. Navigate to the Anti-Malware tab.
  2. Click Scan Now.


Manual removal
To remove this risk manually, please perform the following actions:
  1. Open the Google Android Menu.
  2. Go to the Settings icon and select Applications.
  3. Next, click Manage.
  4. Select the application and click the Uninstall button.
Writeup By: Jeet Morparia