Malware
DroidLock
According to Zimperium, DroidLock has the ability to lock device screens with a ransomware-like overlay and illegally acquire app lock credentials, leading to a total takeover of the compromised devic
DroidLock is a Android malware family.
Background
Per Zimperium, DroidLock can lock a device's screen behind a ransomware-style overlay and steal app lock credentials, resulting in complete takeover of the infected device.
To deceive victims it shows fake system update screens, and it can stream and remotely operate devices through VNC. By abusing device administrator privileges, the malware is able to lock or wipe data, photograph the victim using the front-facing camera, and mute the device. In total, it supports 15 separate commands for communicating with its C2 panel.
Source: Malpedia (Fraunhofer FKIE).