This paper presents the general methods of malware analysis on Symbian smartphone platform. The technical analysis undergoes in three phases: unpack the installation file, reverse engineering statically and trace dynamically (debugging). This paper gives a case study of a sample in the wild to prove the correctness and convenience of presented methods. It summarizes the behaviors of malware observed in our investigation. The result shows our methods for analysis is suitable and practical currently. The methods we presented have been used in real cases in forensic practice.

1. Introduction
2. Symbian Platform
3. The Methodology
4. Case Study
5. Summary of Malicious Behaviors
6. Conclusion
