The Threat name is “Android.Oldboot.1” Detected by Russian Security Firm Doctor Web. Doctor Web further clarifies that this is the first bootkit for android in Operating System.
Now a question may arise in your mind what is this “Bootkit”?
A bootkit is a kernel made root kit variant that infect start up codes of the android device, it is also programmed to attack a full disk encryption system and there are low possibilities that this bootkit can be deleted without tampering the device’s file system
According to Doctor Web this malware has been detected on more than 3,50,000 android mobile device around the world. there are 92 percent of the devices which are compromised devices are located in china.
This malware doesn’t spread by simply Opening Attachments or browsing the Web. This malware is deployed by the physical access to device.
Doctor Web explains that a device is first infected by adding Trojan component in boot partition of the file system and when the device is started the Trojan component loads and build itself and infect the device
The Good thing is that this malware is mostly found in android device of Chinese manufacturer and Bad thing is that this malware is very difficult to remove.