SHA1:
- 93da7b5307964190095ec16f8389246a58503530
A Trojan for mobile devices running iOS. Once launched, it requests the user to enter their Apple ID and a password, which will be then sent to the command and control server. IPhoneOS.AceDeciever.6 comes with a Windows application under the name 爱思助手. The application is similar to the iTunes program and is added to the Dr.Web virus database as Trojan.AceDeciever.2.
After the mobile device was connected to a computer with installed Trojan.AceDeciever.2 via the USB cable, the Trojan automatically installed the malicious application IPhoneOS.AceDeciever.6, using the vulnerability in the FairPlay DRM protocol.