[Q] Android app security - Android Apps and Games

While I'm waiting for my GS2 (my first Android device) to be shipped I have been doing a little research into the apps and general security and was shocked to find that many apps actually leak private information and data back to ad servers. This scares me a little. I don't want my location, and other personal data being sent to places I haven't authorised.
Is there any way of being able to stop or block this or any way of identifying which apps do this? How can one know if a publisher of an app can be trusted?
I try to keep my PC locked down from this sort of thing and want to do so with my phone. I just want to be able to make an informed decision with Android.

There is a app called Permissions Denied that can do that.

When you download an app from the market, it tells you what permissions theapp has to have. Most of th time, the permissions aren't for what you think. Internet connection is usually cause it has ads. Also, see what the apps are rated, and read the comments to see if the app is trustworthy.
[sig]I'm close to root, im patiently waiting on those puzzles[sig]

First thing I downloaded when I bought my EVO was Lookout mobile. Very good AntiVirus app with free features that Sprint is trying to sell with their own junk. Try it out.

Thanks for the comments guys. The thing is how do you really know that the app is not maliciously harvesting your data?
Take the Lookout Mobile app triagetoday mentioned above. Now, I'm only using this app as an example and am not saying that there is anything wrong with the app as I've not used it. But it makes a good example.
The app wants permissions for everything. Most user comments are positive, there are a few that say that they cannot uninstall it which is worrying but generally the comments are favourable. But how can I be sure that this app wasn't written to harvest data on the pretence that it's protecting your phone? In fact there is even one comment suggesting just that. I can't see anywhere where I can look at the source code so is it a case of blind faith and hope the publisher is not malicious?
After reading many reports about huge increase in malware on Android and data leakage it's a real concern on how to protect your data.

Related

found app that keeps location private from google

found an app called Location Cache Map in market and it seems from what it says that it prevents maps and other apps from setting location data on phone and clears map cache while still allowing full use of GPS functions. i tried it and it worked, though it takes an extra couple seconds to lock on.
seems to work. you can see your stored location data with it even if you dont want to block location cache. interested in hearing from others on if this seems to really be working.
Any aftermarket Rom do this.
Sent from my LG-P999 using XDA Premium App
sure if ya delete maps or something. mine always still saved location data on my phone. this lets you use the functions without phone saving cache data. ive never seen this function on any rom ive used. but if so id like to know how and save some time.
Has anyone else tried this?
Google has always kept this type of information---even before android. It's in their terms and conditions. Honestly, anyone who doesn't want to give Google access to this information, shouldn't use their phone.
aczarney said:
Google has always kept this type of information---even before android. It's in their terms and conditions. Honestly, anyone who doesn't want to give Google access to this information, shouldn't use their phone.
Click to expand...
Click to collapse
You should, at minimum, have the choice to turn it off and delete the data that is stored on your phone readily.
Let's get real, corporations have too much freedom when it comes to using us as pawns. It should be an option to opt out period. I use google stuff cause I like the way it works, they don't need my location for that.
Sent from my HTC Vision using XDA App
Google's been collecting information rather openly for years. I just don't get why people are surprised they are collecting it with their phones too. It was never really a secret. There's no option to turn it off simply because that's the terms and conditions for use of the phone--that Google is entitled to access to your location as well as other information regarding how you use your phone. It honestly is like they're watching your every move. If you don't want access given to Google for this information, don't use the phone. That's literally your only option, and legally, Google is completely backed up on that. Now apple, that's a different story. But Google has been doing these things ever since Google as a company was created, its actually part of what has allowed them to grow. To know how their services are used and how their users function more or less.
I could really care less. Ask yourself. What is Google going to do with your information besides direct ads based on you interest. As long as Google execs aren't going to come track me down, I could really care less what data they collect. If your worried about people collecting your data then don't ever buy anything off the internet or for that matter, don't ever use a credit card to make purchases.
read this. its a rant but its how it REALLY is.
Grammer and spelling errors warning!!!
its doesnt matter what they are going to do with it. i have a right to privacy. the more you look into your specfic settings for your google and gmail account, the more you'll see that a lot of what they ask for they don't tell you. they allow you to turn it off.... if you even know how to where to find it, or if you even know they are collecting it.
they keep much more than just location and basic data for ads. im not going to get into all of it because theres too much. go look for yourself.
basically these days to have a phone thats fun (smartphone) you are forced to choose iOS or Android. Both are bull**** when it comes to privacy. THATS WHY THEY ARE DEFENDING THERE ASSES IN COURT!!! Just the fact that it has gotten to the point of major national news shows that it isn't just nothing. $500 million lawsuits aren't to be taken lightly.
And it's not just my privacy. Many MANY apps and services including googles require access to many things that the app has absolutely no reason to have. theres a dev in the market called FREE WING go download his persmissions apps named after specific permissions example: READ_PHONE_STATE, it shows you some of what that permission pulls from your phone such as your name, device ID, phone number, contacts, and more. SMS permission had not just the ability to "tell if i get a text" but has, and records, everything that was said, who sent it, and their numbers. or go get an app called "Denied permissions" it will show you how many each app has and break them down and explain a little of how they work. then use it to look at Google Docs app permissions. it shouldn't have the ability to change,delete, modify my account passwords, and that's just one of its BS permissions.
any facebook app that uses facebook to as an alternative log in gives that app by DEFAULT the ability to read my contacts, status, my FRIENDS status and apps they are using, where they also go, their photos, mine, and more (go to the apps privacy settings on facebook to find this stuff). my friends apps one THEIR phone have access to MY personal information, just because we are associated in facebook. NOT COOL! Facebook just told its game devs a couple days ago that they had like a week or something to change their games to prevent 3rd party apps that are associated with their games from accessing or keeping their patrons information while they play their games.
basically it comes down to my information can be accessed by places i didn't give the OK to or even have heard of. google shares information with apps. try reading the privacy polices for apps sometime (go read AppPack's - Highlight app and T-mobile Mall's app privacy policies). its like the fine print that no one ever reads in contracts or car advertisements. its there but no one takes the time.
google used to be a damn search engine. now they own android, google, Google Chrome OS (just came out), admob, and more. im ok with ads. and them having info i know i asked them to hold on to. I can't imagine what dirt someone could find on someone running for president in 10 years. dirty pics from when someone texted them when they were 25, 18, 16. or their online diary they kept for some reason. things they said on a forum, damn i couldn't imagine my old myspace stuff. some of that could get me in to trouble. i was a party animal at the time. ya see where i'm going? wouldn't have posted that stuff 10 years ago if i had known what i know now.
theres enough info of ours unintentionally online and accessible. go google yourself. they don't need my location to boot
don't believe any of this then take some time to read what you are saying ok to. some privacy policies are like when in those cartoons (devil and daniel mouse) the devil asks you to sign a contract in your own blood, but you forgot their was stuff written on the back page.
But you don't have a right to privacy.....you agreed to the terms and conditions of Google's use when you began using your phone. You signed those rights to privacy away when you signed that Google account into your phone (which, in fact is where the agreement to the terms and conditions lie). You installed Google docs and said "yeah, its okay if this app has access to these things." You update your Google apps every release of a new version. Apple is having issues with this yes, but that's because it was never previously a part of their terms, and they were doing it without customers knowledge. Google is not having issues, will not have issues, and presented all that information to you upfront when you signed up for your Google account, well within your buyer's remorse. Likewise, they do have an option to opt out of "Location services" during most device's initial setup procedures. I bet if anyone sued Google, they wouldn't even prepare a case. They'd refer the judge to the terms of your Google account or those permissions you were okay with.
Bottom line, Yes you have your right to privacy. But you can't give away those rights away to Google or Facebook or whoever then complain about it. Those terms and conditions aren't just there for show, they create them for these specific reasons. It'd be like If I gave you my social security number, checking account number, and address and then was shocked when my identity was stolen and went to file a police report. Working for T-Mobile, I hear these types of arguments on a daily basis, but let me just say it hasn't once changed a thing. Once you agree to them, you can't change your mind until the terms are changed and presented to you again.
I've said it before and I'll say it again. If you like privacy, DO NOT USE A SMARTPHONE. You see, I use a smartphone because I could give two ****s less what Google has access to in my phone. There are only 9 numbers I don't want anyone having access to and lets be honest. I highly doubt Google is stealing our SS #'s.
A link to google and it's work it does for the NSA and CIA. They are more than a company pushing Internet mobile ads. Do not do anything with your phone that you do not want recorded and handed over to the government.
http://www.pcworld.com/article/188581/the_googlensa_alliance_questions_and_answers.html
Remember what google and others did to to people yearning for freedom in China.
http://www.nytimes.com/2006/02/15/technology/15cnd-internet.html

Securing my phone, so many choices

I recently bought Android phone HTC ONE V and i am suprised how business work around Anroid OS + apps. I see some major problems :
1) Is there any trusted authority which inform users that application is 'safe' ? (see article : android-malware-spreads-via-website-injection-campaigns) Malware apps are even on Google Play market. I suppose that solution for this problem is to download just from e.g. TOP 10 apps from each category and just *hope* and *believe* that there is no malware contained just because these apps are soo much popular.
2) How to control permissions/app starts/firewall is there any good app for that ? I have unrooted phone. (I cant have Cyanogenmod 7/9 installed on my HTC One V because it was not ported yet) What would you recommend to me ? I see a lot of recommendations for "LBE Privacy Guard" app but then i found thread here on xda forum that this application is maybe suspicious/dangerous etc... I just want to have full control over my phone, why is that choice so difficult ?
List of apps, often recommened by 'The Internet', are these ok or not ? :
Wifi Protector
Droidwall
WhisperCore
WhisperMonitor
SSH Tunnel
Titanium Backup
ROM Manager
Tasker
Perfect App Protector Pro
This exactly describes my situation, many choices -> i expect to get the best from the Android :
The opportunity costs associated with a decision and the time and effort that go into making it are "fixed costs" that we "pay" up front, and those costs then get "amortized" over the life of the decision. The more we invest in a decision, the more satisfaction we expect to realize from our investment. If the decision provides substantial satisfaction for a long time after it is made, the costs of making it recede into insignificance. But if the decision provides pleasure for only a short time, those costs loom large. Spending four months deciding what stereo to buy is not so bad if you really enjoy that stereo for 15 years. But if you are excited by it for six months and then adapt, you may feel like a fool for having put in all that effort.
Dont you feel the same about these Android 'choices' sometimes ?
Tell Me What Kind Of Apps You Are Looking For And I'll Give you Some Recommendations
From the list of apps you have provided I can see that all of them are trusted and reliable.. so go ahead..
1. Well google aded some security in market so before they upload app they check if it is malware-free. But for more security you can download antivirus
(I RECOMMEND AVAST!)
2. For managing apps permisions im using LBE Privacy Guard is the top app for permisions and firewall managment.
Titanium Backup, Tasker-- awesome apps 100% excelent!
Have a nice day
+1 for avast! excellent at keeping viruses out, keeping data secure, doesn't slow the phone down and has an awesome anti-theft feature which if you're rooted is even better!
Did anyones avast actually find anything that is not a false positive?
Just wondering if this is really necessary...
My avast detected the one click root and androot files on my sd card as malware, which I mean they could be lol but the process of identifying them as false positives was a pain. Other than that... Avast is amazing.
Sent from my myTouch_4G_Slide using XDA
onebornoflight said:
My avast detected the one click root and androot files on my sd card as malware, which I mean they could be lol but the process of identifying them as false positives was a pain. Other than that... Avast is amazing.
Sent from my myTouch_4G_Slide using XDA
Click to expand...
Click to collapse
Yes, sometimes it does its an antivirus so... he thinks that third-party apps are suspicious, but there is nothing to worry about when it comes to root.
antivirus is no good for performance
Antivirus overrated
Antivirus is and will never be any good for performance. You have to decide what risk you are willing to take. With good common sense, you can filter out the obvious threats. Review apps permissions and (try to) install only apps you and the community trust. If you don't trust it, ask around in this forum
Also - obviously - don't visit suspicious sites, click on links in emails and never download programs you don't know.
Personally, i do not use virus protection. I do use DroidWall and LBE Privacy guard for a few apps, but more for data and performance issues.
But i also regularly whipe my phone to install new ROM's and let my (trusted) apps freshly reinstall and restore only game user data.
rilorolo said:
Antivirus is and will never be any good for performance. You have to decide what risk you are willing to take. With good common sense, you can filter out the obvious threats. Review apps permissions and (try to) install only apps you and the community trust. If you don't trust it, ask around in this forum
Also - obviously - don't visit suspicious sites, click on links in emails and never download programs you don't know.
Personally, i do not use virus protection. I do use DroidWall and LBE Privacy guard for a few apps, but more for data and performance issues.
But i also regularly whipe my phone to install new ROM's and let my (trusted) apps freshly reinstall and restore only game user data.
Click to expand...
Click to collapse
+1 here. I think that there is no need to use an Antivirus. Just have a look on the permissions when installing an app and you will be OK.

Question about android security

So i am just wondering, there are so much different apps for android on the market, and most of them has a lot of access to phone's functions. Now for example i am always logged in to Gmail, and theoretically can a random app scan and copy my gmail's data and send it trough internet? Really curious..
Kblavkalash said:
Now for example i am always logged in to Gmail, and theoretically can a random app scan and copy my gmail's data and send it trough internet? Really curious..
Click to expand...
Click to collapse
This question is not really an issue of Android security this is a question about general security. Can an app look at your gmail app directly and copy data and send it out...not exactly no, an app can't forcibly connect itself to another app to scan data.
However...
That question is actually not relevant because such a task is unnecessary for malicious apps. Lets say you install a malicious app that wants to copy your gmail data. What it will do is not watch the app itself but it will watch the network packets being sent to and from the app, logging and tracking those.
This is not the only way to get the data though because any data saved on your sdcard is accessible from an app if you give it permission to do so.
The MOST important thing to look at when installing an app is the permissions the app is requesting when it installs. This can be confusing as well because some apps will request full internet access because they need it but this can also be used by a malicious app to steal your data.
The important thing to do is research. The more you learn about the app the better off you are.
-------
Just to clarify, this applies to all apps of any kind on any platform including but not limited to Android, iPhones, Blackberry, Windows Phone, WebOS, Windows PC, Mac OSX, Linux or etc. - ALWAYS learn as much as you can and are comfortable with before installing anything...if you are not comfortable with a particular app or learning more about it then don't install it. That is not to say it may be malicous, it is just to say it could be a bad idea for other reasons. (for example, if it is a developer tool or a configuration tool that you don't understand or haven't researched enough to understand...then you could potentially damage your device with something that is a legitimate tool)
Kblavkalash said:
So i am just wondering, there are so much different apps for android on the market, and most of them has a lot of access to phone's functions. Now for example i am always logged in to Gmail, and theoretically can a random app scan and copy my gmail's data and send it trough internet? Really curious..
Click to expand...
Click to collapse
edit
MichaelTunnell said:
This question is not really an issue of Android security this is a question about general security. Can an app look at your gmail app directly and copy data and send it out...not exactly no, an app can't forcibly connect itself to another app to scan data.
However...
That question is actually not relevant because such a task is unnecessary for malicious apps. Lets say you install a malicious app that wants to copy your gmail data. What it will do is not watch the app itself but it will watch the network packets being sent to and from the app, logging and tracking those.
This is not the only way to get the data though because any data saved on your sdcard is accessible from an app if you give it permission to do so.
The MOST important thing to look at when installing an app is the permissions the app is requesting when it installs. This can be confusing as well because some apps will request full internet access because they need it but this can also be used by a malicious app to steal your data.
The important thing to do is research. The more you learn about the app the better off you are.
-------
Just to clarify, this applies to all apps of any kind on any platform including but not limited to Android, iPhones, Blackberry, Windows Phone, WebOS, Windows PC, Mac OSX, Linux or etc. - ALWAYS learn as much as you can and are comfortable with before installing anything...if you are not comfortable with a particular app or learning more about it then don't install it. That is not to say it may be malicous, it is just to say it could be a bad idea for other reasons. (for example, if it is a developer tool or a configuration tool that you don't understand or haven't researched enough to understand...then you could potentially damage your device with something that is a legitimate tool)
Click to expand...
Click to collapse
Good answer, you are right!, but you say do a research before installing, but it's not really possible unless you are a programmer and checking whole code The best rated apps still have many different permission requirement and i have no idea what they are doing.
For example app can request a new password change for example on paypal and steal packets which come to my gmail about new password.^^
Security Apps
Hi,
in my eyes the best way is to use programs like PDroid. You cann adjist the rights of every App regarding send SMS for example.
LBE Privacy Guard may be also an Option. (runs not on my Device - SGS+)
(i use Pdroid 2.0)
you should also read the comments in the store, and the needed rights from the app before install. The best Apps to trust are open source apps.
Kblavkalash said:
Good answer, you are right!, but you say do a research before installing, but it's not really possible unless you are a programmer and checking whole code The best rated apps still have many different permission requirement and i have no idea what they are doing.
For example app can request a new password change for example on paypal and steal packets which come to my gmail about new password.^^
Click to expand...
Click to collapse
Research generally involves a Google search...
Editor's Choice in the market are safe bets, you know, the blue icon.
But then there are the millions of other apps, and frankly, I tend to toe the app name plus xda for instance, Google will show you xda threads about the app, if the posts are normal, you can be sure it's not malicious.
Stuff like that...
Also, fake market comments are really easy to spot and are a dead giveaway
Sent from my GT-I9000 using xda premium

(Potential) Malware found on Elephone S3 right out of box?

Hi guys
I recently purchased a Elephone S3 from Everbuying.com. I heard people talking about how notorious these Chinese phones are having malware installed on them, so I decided to give the malware check a go and use about 10+ popular Malware detection apps (Avast, Kaspersky, Avira, Trojan Killer, you name it) currently available on Play Store.
Out of all those, excluding warnings that doesn't really matter in this regards (Malware specific), the below two apps gave me those respective warning results.
I have done some research, but i don't think I found any relevant info in this regards. So, for all the guru out there, the question is obvious, should I be worried about these "non-deletable" apps (if not rooted)? If they ARE malicious, can I be worried free by turning off ALL permissions for the apps and in some case, disable the app (I can disable the Beauty Center, not ELE Launcher).
Thanks to you all for any input!
Malwarebytes Anti-Malware
App - Beauty Center
Message - Android/PUP.Riskware.Cooee.a
App - ELE Launcher
Message - Android/PUP.Riskware.Cooee.H
Stubborn Trojan Killer
App - Beauty Center
Message - General Trojan
App - ELE Launcher
Message - General Trojan
bagachin said:
Hi guys
I recently purchased a Elephone S3 from Everbuying.com. I heard people talking about how notorious these Chinese phones are having malware installed on them, so I decided to give the malware check a go and use about 10+ popular Malware detection apps (Avast, Kaspersky, Avira, Trojan Killer, you name it) currently available on Play Store.
Out of all those, excluding warnings that doesn't really matter in this regards (Malware specific), the below two apps gave me those respective warning results.
I have done some research, but i don't think I found any relevant info in this regards. So, for all the guru out there, the question is obvious, should I be worried about these "non-deletable" apps (if not rooted)? If they ARE malicious, can I be worried free by turning off ALL permissions for the apps and in some case, disable the app (I can disable the Beauty Center, not ELE Launcher).
Thanks to you all for any input!
Malwarebytes Anti-Malware
App - Beauty Center
Message - Android/PUP.Riskware.Cooee.a
App - ELE Launcher
Message - Android/PUP.Riskware.Cooee.H
Stubborn Trojan Killer
App - Beauty Center
Message - General Trojan
App - ELE Launcher
Message - General Trojan
Click to expand...
Click to collapse
go ahead and disable Beauty Center, as far as ELE Launcher, that seems legit. But if you don't like it, just replace it with something like Nova Launcher.
mattzeller said:
go ahead and disable Beauty Center, as far as ELE Launcher, that seems legit. But if you don't like it, just replace it with something like Nova Launcher.
Click to expand...
Click to collapse
Hi mattzeller, thanks heaps for the info! This might not be a good question, but just for my information, generally speaking, is there a way to distinguish between a real harmful malware (actively stealing personal info) and an app that has more access and integration to the phone's OS than others by looking at the information provided? In other words, is there any obvious give away sign?
Thanks again for the help!
bagachin said:
Hi mattzeller, thanks heaps for the info! This might not be a good question, but just for my information, generally speaking, is there a way to distinguish between a real harmful malware (actively stealing personal info) and an app that has more access and integration to the phone's OS than others by looking at the information provided? In other words, is there any obvious give away sign?
Thanks again for the help!
Click to expand...
Click to collapse
Well look at reviews of the app, see if it is installing other apps without your consent, or constantly nagging you to download other apps. Generally 99.99% of apps on Google play are safe. Occasionally some crapware gets on there, but if you take a look at its rating and reviews (not just the highlights) you should be good.
Sent from my SCH-R220
bagachin said:
Hi mattzeller, thanks heaps for the info! This might not be a good question, but just for my information, generally speaking, is there a way to distinguish between a real harmful malware (actively stealing personal info) and an app that has more access and integration to the phone's OS than others by looking at the information provided? In other words, is there any obvious give away sign?
Thanks again for the help!
Click to expand...
Click to collapse
Always check the apps permissions. I absolutely refuse to install an app that has permissions that it shouldn't be using. However, if the app you're about to download needs permissions related to the app features, that's OK with me.
I see so many Play Store apps that are just total spyware in my book. Flashlight apps are a good example of this. There is zero reasons a flashlight app needs to read my contacts or a data connection. Just be mindful of reviews and permissions and you'll be OK.
KernelCorn said:
Always check the apps permissions. I absolutely refuse to install an app that has permissions that it shouldn't be using. However, if the app you're about to download needs permissions related to the app features, that's OK with me.
I see so many Play Store apps that are just total spyware in my book. Flashlight apps are a good example of this. There is zero reasons a flashlight app needs to read my contacts or a data connection. Just be mindful of reviews and permissions and you'll be OK.
Click to expand...
Click to collapse
I don't worry about apps with excessive permissions, I just revoke the permissions I don't like.
Sent from my SCH-R220
mattzeller said:
I don't worry about apps with excessive permissions, I just revoke the permissions I don't like.
Click to expand...
Click to collapse
That's the best way to do it.
I do the same thing, but I see lots of people posting here that aren't too tech savvy. For them be mindful of what you download.
mattzeller said:
Well look at reviews of the app, see if it is installing other apps without your consent, or constantly nagging you to download other apps. Generally 99.99% of apps on Google play are safe. Occasionally some crapware gets on there, but if you take a look at its rating and reviews (not just the highlights) you should be good.
Sent from my SCH-R220
Click to expand...
Click to collapse
Thanks for the advice. Yes, I am aware that common source/cause of malwares are side load apps and rooted device. So I am always fairly cautious about any apps i installed via non-play store source. However, these two caught apk are installed right out of box. That kinda annoys me. I don't jump on the bandwagon and say Chinese phones are infested with malwares and I believe a lot of the time people just over exaggerate and blow some minority out of proportion.
However, the truth is, this is the first Chinese phone I got and it came with two identified malwares. To be fair, it might not be particularly malicious, but it's enough to make me have second thought about my purchase....
KernelCorn said:
Always check the apps permissions. I absolutely refuse to install an app that has permissions that it shouldn't be using. However, if the app you're about to download needs permissions related to the app features, that's OK with me.
I see so many Play Store apps that are just total spyware in my book. Flashlight apps are a good example of this. There is zero reasons a flashlight app needs to read my contacts or a data connection. Just be mindful of reviews and permissions and you'll be OK.
Click to expand...
Click to collapse
Thanks for the comment! Yes, I am quite careful about the app I get to choose to install, but I have little control over these apps that come pre-installed on these chinese phone and got detected as "malwares"
mattzeller said:
I don't worry about apps with excessive permissions, I just revoke the permissions I don't like.
Sent from my SCH-R220
Click to expand...
Click to collapse
Yap, what I did for those two apps I mentioned are turning off all permissions access to them, disable app for the one I can and turn off background data access. Hopefully it will freeze them for good and stop them from playing naughty.
Just a question though, say I do all those above (e.g. switching off permission, force stopped etc), technically speaking, can a malware still be "active and do what they "meant" to do"? I meant after all, they are meant to do something "out of control" right?
bagachin said:
Yap, what I did for those two apps I mentioned are turning off all permissions access to them, disable app for the one I can and turn off background data access. Hopefully it will freeze them for good and stop them from playing naughty.
Just a question though, say I do all those above (e.g. switching off permission, force stopped etc), technically speaking, can a malware still be "active and do what they "meant" to do"? I meant after all, they are meant to do something "out of control" right?
Click to expand...
Click to collapse
No, if you revoke the permission to view your contacts, it is the system that is blocking the apps ability to view your contacts.
Though I think you are being a little paranoid.
Everyone freaks out out all the permissions apps require, when the app actually never uses most of the permissions it asks for, at least not in the way you think. You wouldn't think the launcher needs permissions to access your contacts, but it does. How else is it going to allow you to make a call, or display an incoming all, or missed call/text badges.
I mean take a look at the litany of permissions Nova Launcher and TeslaUnread require, yet we all know the app is not malware. As long as you install from legitimate sources, you will be fine. Like I said in my first post, disable the Beauty app, the other is the Launcher. If you don't like it, install a different one.
Sent from my SCH-R220
Who would you rather have snoop in on your calls? China, or USA.. Because it is one or the other.. me personally, I will take the country in which I do not reside...
mattzeller said:
No, if you revoke the permission to view your contacts, it is the system that is blocking the apps ability to view your contacts.
Though I think you are being a little paranoid.
Everyone freaks out out all the permissions apps require, when the app actually never uses most of the permissions it asks for, at least not in the way you think. You wouldn't think the launcher needs permissions to access your contacts, but it does. How else is it going to allow you to make a call, or display an incoming all, or missed call/text badges.
I mean take a look at the litany of permissions Nova Launcher and TeslaUnread require, yet we all know the app is not malware. As long as you install from legitimate sources, you will be fine. Like I said in my first post, disable the Beauty app, the other is the Launcher. If you don't like it, install a different one.
Sent from my SCH-R220
Click to expand...
Click to collapse
Unfortunately the way things are with the permissive Android system, we have to be a little paranoid. The built in system apps like launchers and permissions can't be disabled easily unless the user is technical enough to know about rooting using apps like xposed/xprivacy.

Apps for finding spyware someone installed on my phone?

I've looked at a lot of anti-spyware apps, but I can't find one that specifically says it can find stealth apps that someone installed when they got ahold of your phone. So it would look like an app that I personally wanted to have. They mostly talk about apps that were installed by a virus or link, etc.
It would be nice to be able to disable camera/mic functions too, or at least be notified when they are being accessed.
I don't mind paying to purchase the app, but most require a double digit monthly subscription, and I make next to nothing because I'm disabled so chances are even if I subscribed the money wouldn't be there to continue the subscription.
I've lurked here for many years without signing up, I love you guys! There are so many tutorials and apps that would never have known about if not for you guys. The developers here are geniuses. So thank you immensely in advance for your help!
Maybe try play store free app Bitdefender which has 5 million dl's & 4.7 rating. I have not tried it....
"Bitdefender Antivirus is one of the few actually free antivirus apps. It hasn’t changed much over the years. It offers a basic scanning feature, a simple interface, quick performance, and no configuration. This is a great one for super basic needs. All it really does is scan stuff ..." androidauthority
galaxys said:
Maybe try play store free app Bitdefender which has 5 million dl's & 4.7 rating. I have not tried it....
"Bitdefender Antivirus is one of the few actually free antivirus apps. It hasn’t changed much over the years. It offers a basic scanning feature, a simple interface, quick performance, and no configuration. This is a great one for super basic needs. All it really does is scan stuff ..." androidauthority
Click to expand...
Click to collapse
Thanks for the reply. Do anti-virus apps detect spyware though?
They can, just read some of the app playstore reviews and it's Developer app description for details....
Try ‘Malwarebytes for Android’.
If you really think there's spyware do a hard reset.
If you still aren't satisfied go full nuke and have the firmware reflashed.
No virus detection has a 100% detection rate and the worst trojans only a reflash can eradicate them.
A better question is why do you think there's spyware on the phone?
In over 6 years of using outdated OS's I've never had to do a reload because of malware.
Once found a nasty trojan preloader before it could be triggered with Malwarebytes.
I had a infected jpeg that damaged files in the download folder. Deleting the jpeg and some of the files ended it's brief rain of terror.
Be careful what apps you load, what you download*, what you click and never let others have unsupervised access to your device. React quickly to abnormal behavior to find it's cause.
Delete any file you suspect of being malware including jpegs and pngs.
Be prepare to do a hard reset at any time if you believe the device has been infected.
Always keep at least 2 complete isolated data backups for the device. Stagger syncs to them so a virus can't get embedded on both of them... hopefully.
Lol, paranoid yet?
*use only cloud based email apps like gmail
Google apps are spyware, Facebook is spyware, Whatsapp is spyware, Instagram is spyware. In principle all Social Media apps are spyware.
All apps what are designed to track your Internet browsing habits, such as frequented sites and favorite downloads, and then provide advertising companies with marketing data are spyware. All apps what can access your contacts data are spyware ...
Android, the spyware party mix...
You can try Bitdefender Free or Malwarebytes Premium. I have not used the second one before but have read a review at https://antivirusdoctor.net/ and think about using it on my smartphone.

Categories

Resources