NiVleK

The Opposite Effect 
« Back to blog

The irritating iPhone Virus

Two months I have been busy. Very busy. To the extent that I hardly have time for this part of my blog.

And this made me much more frustrated. I spent almost half a day trying to remove this.......

4137284384_350ff3951b.jpg

The ikee iphone worm as they call it. This guy will haunt you everywhere. In your lockscreen and whenever you need to make a call or receive one.

I tried many ways to remove it, googled around. For me this standard way didnt really work...

Steps to remove the Ikee virus (variant A, B, C & D)

  1. If you haven’t already installed mobile terminal via Cydia, do so.
  2. Reboot your iPhone.
  3. Run mobile terminal, and at the prompt, type su.
  4. The default password is alpine (unless you’ve already changed it).
  5. Type in the following commands one line at a time, end press return after each line.
    You may get messages such as No such file or directory – but that’s fine, different variants may leave behind different files.

    rm /bin/poc-bbot
    rm /bin/sshpass
    rm /System/Library/LaunchDaemons/com.ikey.bbot.plist
    rm /var/lock/bbot.lock
    rm /var/log/youcanbeclosertogod.jpg
    rm /var/mobile/Library/LockBackground.jpg
    rm /System/Library/LaunchDaemons/com.saurik.Cydia.Startup.plist
    rm /usr/libexec/cydia/startup
    rm /usr/libexec/cydia/startup-helper
    rm /usr/libexec/cydia/startup.so

  6. When you’re done, reboot your iPhone.
Do remember to reinstall your SSH daemon after doing this.

I was met with obstacles. Running the mobile terminal on iphone didnt remove quite a few files here. What made things worst was that I delete Cydia in my frustration and could not SSH to my iPhone. "apt-get install cydia" didnt work too. I ended up rejailbreaking the iphone in an attempt to get Cydia back. Luckily it worked.

On my mac, I cyberducked into my iPhone through SSH and saw that those file that I could not remove in mobile terminal is still there! Trashed it and rebooted.

IT WORKED!!!! Finally I am free of the ghost!!!

Steps to change your iPhone root password (and minimize being hacked)

  1. Start mobile terminal (download and install via Cydia if you haven’t done so yet).
  2. Type su.
  3. Enter alpine as the password.
  4. At the prompt, type passwd.
  5. Enter your new root password. DO NOT FORGET THIS!
  6. Enter the same password again.
  7. You should now be secure from viruses that use the default password to hack into your phone.
DO THIS IF YOU JAILBREAK!!!!

And you know what is even more ridiculous????

The virus creator did not get into any trouble with the law and bagged a job as an iPhone developer!!!

WTF~!

Loading mentions Retweet

Comments (0)

Leave a comment...

 
Got an account with one of these? Login here, or just enter your comment below.
Posterous-login    twitter