Preparing for a border crossing malware install - Security Discussion

I will need to cross a border soon and there's a chance a customs officer may install malware onto my phone so I need to be prepared.
The most likely threat is this APK:
https://github.com/motherboardgithub/bxaq/blob/master/base.apk
The preparations I am making are:
- delete password manager apps
- delete chrome password manager
- delete Gmail app, gdrive
I'm not going to delete 2FA as that can be reset.
I don't have anything obvious to hide and I'm not expecting this to actually happen but having to reset thousands of passwords would be a major inconvenience and the risk is quite high.
It would be nice if I could make it look like the APK is already installed or something like that.

Oh. Well.
Wish me luck!

jago25_98 said:
I will need to cross a border soon and there's a chance a customs officer may install malware onto my phone so I need to be prepared.
The most likely threat is this APK:
https://github.com/motherboardgithub/bxaq/blob/master/base.apk
The preparations I am making are:
- delete password manager apps
- delete chrome password manager
- delete Gmail app, gdrive
I'm not going to delete 2FA as that can be reset.
I don't have anything obvious to hide and I'm not expecting this to actually happen but having to reset thousands of passwords would be a major inconvenience and the risk is quite high.
It would be nice if I could make it look like the APK is already installed or something like that.
Click to expand...
Click to collapse
Just deleting apps likely won't help as files are not actually erased, you'd need to use a scrubber to overwrite them.
Installing that app would also likely not work either. As I understand it they normally install, run scan & download data at the border, (normally it's then uninstalled) if they find it's not genuine you are going to be "investigated" big time! Or worse!
Even if you have nothing to hide your meta data may be used against someone else even if totally innocent or maybe even you eg your txts show you had arranged to meet someone where there was also a religious festival taking place, even if you had no interest in it, they might consider it worth further investigation.
Best to take a dumb phone

IronRoo said:
Just deleting apps likely won't help as files are not actually erased, you'd need to use a scrubber to overwrite them.
Installing that app would also likely not work either. As I understand it they normally install, run scan & download data at the border, (normally it's then uninstalled) if they find it's not genuine you are going to be "investigated" big time! Or worse!
Even if you have nothing to hide your meta data may be used against someone else even if totally innocent or maybe even you eg your txts show you had arranged to meet someone where there was also a religious festival taking place, even if you had no interest in it, they might consider it worth further investigation.
Best to take a dumb phone
Click to expand...
Click to collapse
Which country are you referring to? Thanks for the reply. The scrubber idea could be helpful.
The defeatest POV isn't though. I totally get that a state actor probably can't be defended against. The easiest thing is just to not go of course or find a suspicious dumb phone. I already avoid the USA if I can when flying.
But I'm not trying to defend against a country here. I just want to make the slightest effort to slow down a TSA thief or a Chinese official storing my credit card data on a riddled copy of windows xp - that kind of threat level.
A panic button, everything in the cloud and not cached. There are ways. There has to be ways because how else would business meetings and trades be made?

jago25_98 said:
Which country are you referring to? Thanks for the reply. The scrubber idea could be helpful.
The defeatest POV isn't though. I totally get that a state actor probably can't be defended against. The easiest thing is just to not go of course or find a suspicious dumb phone. I already avoid the USA if I can when flying.
But I'm not trying to defend against a country here. I just want to make the slightest effort to slow down a TSA thief or a Chinese official storing my credit card data on a riddled copy of windows xp - that kind of threat level.
A panic button, everything in the cloud and not cached. There are ways. There has to be ways because how else would business meetings and trades be made?
Click to expand...
Click to collapse
Any update on what happened? If it's still of interest to you, I could probably come up with some ideas.

Related

Facebook App from Microsoft

A Facebook application for your Windows Mobile phone officially from Microsoft !
* Send messages to any of the people in your Friends list.
* Take pictures and videos on your phone, then upload them right to Facebook.
* Send messages or call people in your Friends list.
* Manage your profile and post anytime, anywhere.
Keep up with the latest news and posts with Facebook on your phone. Now your status updates can be up-to-the moment accounts of what you’re doing. Photos and videos are about as close to live-action as you can get. Show your friends what you’re up to, while you’re out and about.
http://www.microsoft.com/windowsmobile/en-us/downloads/facebook.mspx
you just beat me to posting it...looks good so far.
I almost got caught to facebook also but I had too many doubts. Here is a version of someones doubts... http://www.youtube.com/watch?v=7XhzYGoBif8
Do not forget that facebooks social side (the only side actually) is useful only if you use your real name. Otherways nobody wont find you. Now just think...
EDIT:...or let me explain. Basically, what goes there stays there. For start if you happen to get to a criminal side for genuine needs, cops would get loads of information about your relationships etc.
And the main point: facebook-A BIG mass of data from everyone. This might be the present or surely it will be the future: intelligent engines/robots to scan and analyze the mass of data accumulated there psychologically enough to make conclusions about geopolitical/social/mass-psychological preferences. And the kind of preferences we cannot think about even for now. The next move from there is agressive manipulation and big loss of freedom
yeah, works perfectly on my TD2 ;-)
darfri said:
I almost got caught to facebook also but I had too many doubts. Here is a version of someones doubts... http://www.youtube.com/watch?v=7XhzYGoBif8
Do not forget that facebooks social side (the only side actually) is useful only if you use your real name. Otherways nobody wont find you. Now just think...
EDIT:...or let me explain. Basically, what goes there stays there. For start if you happen to get to a criminal side for genuine needs, cops would get loads of information about your relationships etc.
And the main point: facebook-A BIG mass of data from everyone. This might be the present or surely it will be the future: intelligent engines/robots to scan and analyze the mass of data accumulated there psychologically enough to make conclusions about geopolitical/social/mass-psychological preferences. And the kind of preferences we cannot think about even for now. The next move from there is agressive manipulation and big loss of freedom
Click to expand...
Click to collapse
Facebook just holds the information YOU provide, pretty simple. It is a VERY good way to stay in touch with old friends and relatives but of course it is a pretty open social network and you need to be careful with the information YOU provide. Facebook doesn't take or steal anything from you, it is up to YOU what kind of information and how much of it you provide for others to see. THAT simple. To make it short: just use your brain and Facebook can be a very nice place to enjoy.
Working for me
Works great so far on my TD2. Can't believe it took this long for microsoft to release a facebook app for windows mobile!!!
One down side though, still doesnt have flick scrolling which is a bit of a pain, hopefully they'll sort that out soon.
P996 said:
Facebook just holds the information YOU provide, pretty simple. It is a VERY good way to stay in touch with old friends and relatives but of course it is a pretty open social network and you need to be careful with the information YOU provide. Facebook doesn't take or steal anything from you, it is up to YOU what kind of information and how much of it you provide for others to see. THAT simple. To make it short: just use your brain and Facebook can be a very nice place to enjoy.
Click to expand...
Click to collapse
Yeah, but what about REAL names... thats enough for me
Off course facebook doesn't steal anything from me. It is just a container... a container which at some point contains data enough (even if you do not put there facts like home address etc, just your name which is a damn good fact) to get analyzed. And offcourse - not by facebook. Even chats and comments are enough at some point to compile a solid profile about you. Once again - they are related to REAL names.
I know it is hard to like this kind of theory when you already have a facebook account. My wife has a facebook account and I am seeing the mass of information streaming there. Besides the social side is so effective that you cannot get out of it anymore - it is a good extra communication platform.
BTW I have a plaxo account which has my outlook contact folders... I "can" delete the folders and account there but what about THEIR recycle bin for "archival" and "statistics" purposes... I'd love to get rid of it but I think there is no need to do it as it is too late already.
And I just received an emali from damn facebook which suggested me to sign up and showed the names of the people I know. How did the monster know my friends if I have been avoiding it
^^^^^
just like any other member networkin YOU sign up to it askes if theres anyone you would like to forward a membership request to! if your that worried about robots scanniny your comp to find all your details then jus dont have a comp or a bank account or anything dont even have a fone but its a decent app thnx
the app jus locks up wen i go to run it
jumbo2000 said:
the app jus locks up wen i go to run it
Click to expand...
Click to collapse
DOesnt work for me either. just freezes. the 0.16 version worked better :/.
jumbo2000 said:
^^^^^
just like any other member networkin YOU sign up to it askes if theres anyone you would like to forward a membership request to! if your that worried about robots scanniny your comp to find all your details then jus dont have a comp or a bank account or anything dont even have a fone but its a decent app thnx
Click to expand...
Click to collapse
This app here might be as good as possible. No complaints about it.
uhh... I'll put it as short as I can: First: I am not worried about scanning my PC. I am worried about scanning the data on Facebook servers.
It contains your REAL name and your REAL activities. Please folks... try to imagine just a little bit. The scanner wouldn't be any data collector or single data unit detector (like bank account numbers, email etc). I am talking about intelligent scanner here. The one that uses sentence content detection/comparsion and linguistic variation approximating techniques in spite of the personality that is in the text. Face recognition is already there for us to use even. From this point scanner has already simplified data to deal with. Imagine this kind of scanner cooperating with psychologists who obey people with high political, economical - and if anybody is interested anymore about the old timer - MORAL authority. As time has told the ambitions of these people have almost never been sincere. A single facebook user most likely wouldn't be endangered. It is plurality that makes the effect
mokuni said:
DOesnt work for me either. just freezes. the 0.16 version worked better :/.
Click to expand...
Click to collapse
Same here. After keying in userid and password and tap on done. the app freezes.
After trial and error, i found out that its the files used by the previous version that's causing the lockup.
Try uninstall the facebook app completely then rename Facebook.vol and fbmail.vol to something like Facebook.vol.old and fbmail.vol.old.
install the latest version and try.
If it works.. u can delete the 2 .old files.
P996 said:
Facebook just holds the information YOU provide, pretty simple. It is a VERY good way to stay in touch with old friends and relatives but of course it is a pretty open social network and you need to be careful with the information YOU provide. Facebook doesn't take or steal anything from you, it is up to YOU what kind of information and how much of it you provide for others to see. THAT simple. To make it short: just use your brain and Facebook can be a very nice place to enjoy.
Click to expand...
Click to collapse
That’s only one half of the brain. And that the phrase I keep listening from Facebook users.
The question is ... Can you control what other people post about you? Pictures information’s etc?
I know that they can still do that but those information’s are usable only if they are linked to an existing user...
When you open an account then pictures from you on your friends account stops being a picture.
It’s now usable and abusable data... I t’s just a question of time for both of those things...
Try now and use your brain 100% ...
KraFT
cypork said:
Same here. After keying in userid and password and tap on done. the app freezes.
After trial and error, i found out that its the files used by the previous version that's causing the lockup.
Try uninstall the facebook app completely then rename Facebook.vol and fbmail.vol to something like Facebook.vol.old and fbmail.vol.old.
install the latest version and try.
If it works.. u can delete the 2 .old files.
Click to expand...
Click to collapse
Cypork, deleted both files, and reran fb app and bam, works like a charm. thanks. .
mokuni said:
Cypork, deleted both files, and reran fb app and bam, works like a charm. thanks. .
Click to expand...
Click to collapse
Fantastic. Glad it works for u as well
works fine on my D2. great app, finally
as for the philosophy of facebook and social networking, i'm afraid that what darfri says is true. we users use it as a fun location, posting information that is not harmful for anyone...but what it is done with it in the background where big brother watches, only God knows...
but honestly, with today's tehnology i would not bother about information some guys know about me. i'm sure that if they want to know, they will know...and i don't think they will go as far as facebook. but this growing/exploding community could be a good source too, at some point.

Google account/Android phone/life is hell

don't even know where to begin to explain the world I live in and this is the best place I can think of or somebody could possibly answer what the hell is happening.. no I will try to keep this summarized and not going to too much detail other than with the technical aspect.. so my girlfriend was going into my phone and I'm sure she was trying to get into everything possible like my Google account Instagram lineapp what'sapp snapchatocrosoft account amazon.account VK, everything... Now I'm sure somewhere along that she synced her phone because obviously a bunch of my files now ended up on her phone making her think that I somehow installed some virus to her phone which now in her mind she feels like if the phone's messing up or if the router is Messing up which my assumption is she was in the router messing around with settings and now she doesn't have internet when she goes to solve this problem she goes out and uses Wi-Fi elsewhere and now when she went back to the house she couldn't go to the Internet service provider website to be able to mess with the settings on the blue curve router from Shaw because her phone was saying she was in the states we live in canada. She's under the impression I've gone to some third party app site that allowed me to get some firmware that her words has mirrored her storage and it was my way of blocking her ability to see twitch and discord because I was obviously hiding that because I was talking I assume with other women on it ...
Alot of the issue started with the fact that I used to play a game called magic Rush and I had shared my account or given it let's say a player that continued on with it.. obviously giving the Google account because it was binded is the email to the account, caused a s*** storm of problems.. password manager was all synced across his device anything he downloaded in his Play store showed up in my history just making it look like I just deleted it.. she feels like I'm hiding files on my computer or my phone because of some of the apps he had downloaded the other guy in Guatemala that I had shared the account with he had a calculator app that was a vault for hiding files like pictures.. she's literally accused me of everything under the sun thought somehow Steam my Steam account was being used to talk to other girls or somehow I was hiding files because she would take a random file from Steam in one of the folders and when she tried to open it with when we are it would just show up like random numeric code complete gibberish and this is why I must have been hiding files I must have been encoding them because I had things like notepad++ and irfanview, she's told me that I've cloned her SIM card and I have a VPN in the states so I can use things like Vox talk or w.e phone app that's just for the states.. I'm on an s10 plus and she's on an s10 so now that we kind of got the Guatemala guy off the account there is still weird s*** going on she went into developer tools on Google Chrome and it looked at the source code when you're looking at the Google activity when you're logged into the account and it had lots of words like null and hidden and she was swearing up and down thinking that this was proof that I was being shady..
Does anyone have any idea what could have possibly moved my files onto her account whether that be through her signing into my Google s*** but I mean yeah she feels like my phone's infected her phone or my computer has infected hers and I think it was just her and experience self somehow enabling it to like share all files I don't know I can't tell you everything she's possibly gotten into but she's clicked on everything a woman could click on oh and side note if you reach this far and you read all this thank you for taking the time because this is a serious issue in my life right now this was also in the beginner or new help thread I will also attach pictures the cheese sent me over the last month or so showing that I was being shady and did some s*** to her phone that I had rooted it or mirrored her storage
BoosieBC said:
don't even know where to begin to explain the world I live in and this is the best place I can think of or somebody could possibly answer what the hell is happening.. no I will try to keep this summarized and not going to too much detail other than with the technical aspect.. so my girlfriend was going into my phone and I'm sure she was trying to get into everything possible like my Google account Instagram lineapp what'sapp snapchatocrosoft account amazon.account VK, everything... Now I'm sure somewhere along that she synced her phone because obviously a bunch of my files now ended up on her phone making her think that I somehow installed some virus to her phone which now in her mind she feels like if the phone's messing up or if the router is Messing up which my assumption is she was in the router messing around with settings and now she doesn't have internet when she goes to solve this problem she goes out and uses Wi-Fi elsewhere and now when she went back to the house she couldn't go to the Internet service provider website to be able to mess with the settings on the blue curve router from Shaw because her phone was saying she was in the states we live in canada. She's under the impression I've gone to some third party app site that allowed me to get some firmware that her words has mirrored her storage and it was my way of blocking her ability to see twitch and discord because I was obviously hiding that because I was talking I assume with other women on it ...
Alot of the issue started with the fact that I used to play a game called magic Rush and I had shared my account or given it let's say a player that continued on with it.. obviously giving the Google account because it was binded is the email to the account, caused a s*** storm of problems.. password manager was all synced across his device anything he downloaded in his Play store showed up in my history just making it look like I just deleted it.. she feels like I'm hiding files on my computer or my phone because of some of the apps he had downloaded the other guy in Guatemala that I had shared the account with he had a calculator app that was a vault for hiding files like pictures.. she's literally accused me of everything under the sun thought somehow Steam my Steam account was being used to talk to other girls or somehow I was hiding files because she would take a random file from Steam in one of the folders and when she tried to open it with when we are it would just show up like random numeric code complete gibberish and this is why I must have been hiding files I must have been encoding them because I had things like notepad++ and irfanview, she's told me that I've cloned her SIM card and I have a VPN in the states so I can use things like Vox talk or w.e phone app that's just for the states.. I'm on an s10 plus and she's on an s10 so now that we kind of got the Guatemala guy off the account there is still weird s*** going on she went into developer tools on Google Chrome and it looked at the source code when you're looking at the Google activity when you're logged into the account and it had lots of words like null and hidden and she was swearing up and down thinking that this was proof that I was being shady..
Does anyone have any idea what could have possibly moved my files onto her account whether that be through her signing into my Google s*** but I mean yeah she feels like my phone's infected her phone or my computer has infected hers and I think it was just her and experience self somehow enabling it to like share all files I don't know I can't tell you everything she's possibly gotten into but she's clicked on everything a woman could click on oh and side note if you reach this far and you read all this thank you for taking the time because this is a serious issue in my life right now this was also in the beginner or new help thread I will also attach pictures the cheese sent me over the last month or so showing that I was being shady and did some s*** to her phone that I had rooted it or mirrored her storage
Click to expand...
Click to collapse
Lol! Seems like you are really under some big trouble...
By the way, did you check if partner sharing in on? And did you add her as a family member to your google account and granted permissions for her account to access yours? Check these first. Google them if you don't know how to...
And maybe prove her that her phone isn't rooted and show her that even Knox in her S10 isn't tripped concluding that you didn't do anything and maybe proving her they might have happened by mistake.
Venkata Lochan Nune said:
Lol! Seems like you are really under some big trouble...
By the way, did you check if partner sharing in on? And did you add her as a family member to your google account and granted permissions for her account to access yours? Check these first. Google them if you don't know how to...
And maybe prove her that her phone isn't rooted and show her that even Knox in her S10 isn't tripped concluding that you didn't do anything and maybe proving her they might have happened by mistake.
Click to expand...
Click to collapse
So I check partner sharing and I believe that's a part of the Google photos side of Google nothing seems to be enabled I also found some other pictures that explain some of my pain I must have been encoding my drive because of the
BoosieBC said:
So I check partner sharing and I believe that's a part of the Google photos side of Google nothing seems to be enabled I also found some other pictures that explain some of my pain I must have been encoding my drive because of the
Click to expand...
Click to collapse
Hmmm. Maybe try proving your innocence by the way I said..
She reads root and thinks ta da, it must be rooted... I explained all that does is allow people to like tweak their phones better sort of like jailbreaking but there's no convincing her of that
BoosieBC said:
She reads root and thinks ta da, it must be rooted... I explained all that does is allow people to like tweak their phones better sort of like jailbreaking but there's no convincing her of that
Click to expand...
Click to collapse
Try proving in a way like using a root checker.
Get some one else's device and show the same root certificates...
This may help.
And did you show her that her KNOX is still intact and it did not trip.? If no, first do it... that way, you could prove that nothing just happened to her device and its still secure and not rooted.
Then maybe you could give her other explanations...
She's going to spin it like this, that I'm somehow rooting her messages like sending them off she also feels a cloned SIM card and thinks I'm just a f****** monster like I'm literally a cat playing with a mouse and torturing the person by watching them squirm with their phone and to be honest I've lost all effort and trying to defend it trying to figure out why when you take a file from Steam and go to unzip it with one RAR it shoots out weird numerical wingding.fonts I explained The Root checker thing to her and she didn't even want to check it meaning that she just doesn't know the right words to explain it to me when she says I may actually get her to come on this thread and f****** explain everything that's happening to her s*** because yeah man it's it's a serious problem
BoosieBC said:
She's going to spin it like this, that I'm somehow rooting her messages like sending them off she also feels a cloned SIM card and thinks I'm just a f****** monster like I'm literally a cat playing with a mouse and torturing the person by watching them squirm with their phone and to be honest I've lost all effort and trying to defend it trying to figure out why when you take a file from Steam and go to unzip it with one RAR it shoots out weird numerical wingding.fonts I explained The Root checker thing to her and she didn't even want to check it meaning that she just doesn't know the right words to explain it to me when she says I may actually get her to come on this thread and f****** explain everything that's happening to her s*** because yeah man it's it's a serious problem
Click to expand...
Click to collapse
Ohh MMAAANNN, this is too much..
Is she still mad at you? first try calming her down. Get another device from your friend or someone else if possible and show her that every Android has such things. If she still doesn't believe, ask her to get on XDA and try a conversation with the XDA senior/staff members about all her doubts...
Try your best.
Know something? These XDA guys are really awesome. They help a lot if required.
She's going to spin it like this, that I'm somehow rooting her messages like sending them off she also feels a cloned SIM card and thinks I'm just a f****** monster like I'm literally a cat playing with a mouse and torturing the person by watching them squirm with their phone and to be honest I've lost all effort and trying to defend it trying to figure out why when you take a file from Steam and go to unzip it with one RAR it shoots out weird numerical wingding.fonts I explained The Root checker thing to her and she didn't even want to check it meaning that she just doesn't know the right words to explain it to me when she says I may actually get her to come on this thread and f****** explain everything that's happening to her s*** because yeah man it's
Bro we've gone to war over this and the f***** up part is right now it's like she's like just admit it and we can get past it... And it's like first off I'm not doing it she thinks that because I used to run a video game back in the day which was a pre-compiled server that I didn't have to do any sort of coding whatsoever other than edit like Lua and XML she feels like I'm this master coder but I'm not.. also I don't have the willpower and determination to learn or care enough to getting into her phone I just asked her to show me what I wanted to see and if she didn't want to show me it then I would have a problem I would not go about the same matter by like hacking her phone... So her she's like well if you're going to keep lying well then I can't be with somebody that's going to keep lying.. well.fk... I am going to get her on here cuz I really would like to figure out what f*** this all up
BoosieBC said:
She's going to spin it like this, that I'm somehow rooting her messages like sending them off she also feels a cloned SIM card and thinks I'm just a f****** monster like I'm literally a cat playing with a mouse and torturing the person by watching them squirm with their phone and to be honest I've lost all effort and trying to defend it trying to figure out why when you take a file from Steam and go to unzip it with one RAR it shoots out weird numerical wingding.fonts I explained The Root checker thing to her and she didn't even want to check it meaning that she just doesn't know the right words to explain it to me when she says I may actually get her to come on this thread and f****** explain everything that's happening to her s*** because yeah man it's
Click to expand...
Click to collapse
Wait, why did you just resend an old msg of yours...? Doesn't make sense
BoosieBC said:
Bro we've gone to war over this and the f***** up part is right now it's like she's like just admit it and we can get past it... And it's like first off I'm not doing it she thinks that because I used to run a video game back in the day which was a pre-compiled server that I didn't have to do any sort of coding whatsoever other than edit like Lua and XML she feels like I'm this master coder but I'm not.. also I don't have the willpower and determination to learn or care enough to getting into her phone I just asked her to show me what I wanted to see and if she didn't want to show me it then I would have a problem I would not go about the same matter by like hacking her phone... So her she's like well if you're going to keep lying well then I can't be with somebody that's going to keep lying.. well.fk... I am going to get her on here cuz I really would like to figure out what f*** this all up
Click to expand...
Click to collapse
First relax, tell her that you will ignore this all first get past it. Later, when every you are free and happy with something, you could explain her everything slowly.... Don't you think this will work out?

[CLOSED]Psa ...Dont use alliance shield app

Alliance shield app bricked my phone...the owner (RRiVEN) banned me for asking about the permissions his app uses and he got butthurt and banned my account and ip address knowing it would soft brick my phone if i factory reset it with all the apps I disabled and now I can't remove the spyware/malware infected app or recover my device back to factory settings...him and his app destroyed my brand new 1200 dollar s21 ultra
Wow. I used this app and I didn't get my phone blocked. Maybe the problem is something else? Re-record everything on your phone.
Maxxx17 said:
Wow. I used this app and I didn't get my phone blocked. Maybe the problem is something else? Re-record everything on your phone.
Click to expand...
Click to collapse
You didnt get you phone hacked using this trash app because you didnt question the owner of the app about the shady invasive malicious permissions it uses ...smh
Also this app proxys all your data and activity thru his server....the required sign up and login for the app to work is the first dead giveaway and a huge red flag
Lol...the owner of this app doesnt even use ssl for his server or app...its all tsl...unencrypted...lol...poor fella has no clue whos monitoring and accessing his server and network now...smh...this app wont be around much longer...i promise ...lol
HELLFISH420 said:
You didnt get you phone hacked using this trash app because you didnt question the owner of the app about the shady invasive malicious permissions it uses ...smh
Click to expand...
Click to collapse
You may be right. Be careful next time.
yeah the owner is in trouble and he dont even know it....he even tried to push a zip file to my phone (script)
HELLFISH420 said:
Lol...the owner of this app doesnt even use ssl for his server or app...its all tsl...unencrypted...lol...poor fella has no clue whos monitoring and accessing his server and network now...smh...this app wont be around much longer...i promise ...lol
Click to expand...
Click to collapse
I can't believe I missed this thread. Such gold in here.
Since you brought it up, you were banned after you made false claims about the Shield. We offered you MANY chances to prove your claims and you never did, just more talk and more claims and never any proof. Which I expect you will do here, can't wait I have my popcorn ready.
My favorite part is where you think SSL is encrypted and TLS isn't. Protip: SSL is insecure and shouldn't be used, ever. But don't take my word for it. Take Cloudflare's, one of the experts on this - https://www.cloudflare.com/learning/ssl/what-is-ssl/
As far as the shield not being around much longer, well that is also wrong, still going strong - never got an email or call from my Samsung rep like you said I would. You sure you were talking to Samsung and they said they were shutting us down?
The dots in Gmail, nothing to do with my script (Android doesn't run scripts, it runs Java FYI) Dots in Gmail don't do anything, once again don't take my word for it take Google's, you know, the owner of Gmail - https://support.google.com/mail/answer/7436150?hl=en
We block dots in Gmail because it gives spammers/scammers unlimited email addresses. [email protected] gets blocked register again with [email protected] same email inbox. That one gets banned, repeat with another .
The claim of a zip file being pushed to a device is flat out false. You made that claim and never produced the zip file, or evidence it came from the Shield.
A quick check will prove the Shield couldn't do it. We don't ask for or want the Storage permissions. Without them we can't access, add, delete, or create any file outside our apps protected folder. Unless you are suggesting we are using a zero day Android exploit to push a zip file to your device (zip files don't execute so why would we do that in the first place?)
The claim that we proxy all of your traffic through my servers is easily debunked. If that were the case you would see every site using HTTPS throw a certificate error, (most apps won't work either) it is why you use HTTPS so you know if your connection is being hijacked.
We are also confused what shady malicious permissions you are talking about. Android defines the permissions and you either request to use them or not. Once requested the user must grant ones that can cause harm to your device, like storage (once again we don't ask for, we don't want it).
If you have made it this far I will tell you our theory why Hellfish is so bent on spreading lies. He/she used the Shield to disable some critical system apps and bricked their device. Mad, which we would also be, they reached out to us where we informed them sorry nothing we can do now, it is bricked. They also disabled safe mode and factory reset. Once again we have warnings stating be careful what you disable and to understand what you are doing.
Enraged they started spreading lies and when called out they doubled down, and tripled down until we banned them. We have our limits.
The best part, and we saved the login logs, is not even a day later Hellfish was logging in to the app on a S21 ultra. Guess you found a way to get it working. When confronted more lies were spread and that account was banned. (We kept finding your alt accounts because you kept having the name Hellfish in them. We figured after the first alt was banned you would figure it out, but you made it too easy to find you. I gave up looking for you after the fourth alt account was banned, if you want to use the app and keep bricking your phone go for it)
If you haven't noticed we don't bow to pressure or are PC. You mess up and blame us we call you on it, you either own up to your mistake or get banned. If that means I have social problem then ok, fine by me, I sleep just fine at night.
Including screenshot of the Shield having no permissions, most games have more permissions than we do.
lmao...80-90% of what you said is straight up lies...you did all sorts of messed up stuff...hell you even hacked my discord and changed my password...then when my team bypassed your malicious app login you sent me emails threatening me and saying i broke laws and all sorts of dumb sh** ...you know what your doing is wrong....alot of other people see and know what your doing...you log passwords...your app has multiple permissions...exodus and other online checkers
riven you wouldnt by any chance be running a bitcoin mining scam would ya? ...lol....you run scripts and exe. files thru chrome remotely...i seen it with my own eyes...stop denying it...you know all bs aside i was actually nice and trying to help but you got butthurt when i showed the true app permissions to the whole world to see...as far as whats already been done is done...mark my words ...your app WILL NOT BE AROUND FOREVER
you couldnt pay me to use your malicious app .....lol...since my run with you ive already compiled and built my own disabler app ...and guess what..it requires no internet connection...no logins ...no permissions of any kind..has no trackers or anayltics ...and its 100% free..unlike your bitcoin mining app/alliance shield app...lmao.
oh yeah one last thing [email protected]
RRiVEN said:
I can't believe I missed this thread. Such gold in here.
Since you brought it up, you were banned after you made false claims about the Shield. We offered you MANY chances to prove your claims and you never did, just more talk and more claims and never any proof. Which I expect you will do here, can't wait I have my popcorn ready.
My favorite part is where you think SSL is encrypted and TLS isn't. Protip: SSL is insecure and shouldn't be used, ever. But don't take my word for it. Take Cloudflare's, one of the experts on this - https://www.cloudflare.com/learning/ssl/what-is-ssl/
As far as the shield not being around much longer, well that is also wrong, still going strong - never got an email or call from my Samsung rep like you said I would. You sure you were talking to Samsung and they said they were shutting us down?
The dots in Gmail, nothing to do with my script (Android doesn't run scripts, it runs Java FYI) Dots in Gmail don't do anything, once again don't take my word for it take Google's, you know, the owner of Gmail - https://support.google.com/mail/answer/7436150?hl=en
We block dots in Gmail because it gives spammers/scammers unlimited email addresses. [email protected] gets blocked register again with [email protected] same email inbox. That one gets banned, repeat with another .
The claim of a zip file being pushed to a device is flat out false. You made that claim and never produced the zip file, or evidence it came from the Shield.
A quick check will prove the Shield couldn't do it. We don't ask for or want the Storage permissions. Without them we can't access, add, delete, or create any file outside our apps protected folder. Unless you are suggesting we are using a zero day Android exploit to push a zip file to your device (zip files don't execute so why would we do that in the first place?)
The claim that we proxy all of your traffic through my servers is easily debunked. If that were the case you would see every site using HTTPS throw a certificate error, (most apps won't work either) it is why you use HTTPS so you know if your connection is being hijacked.
We are also confused what shady malicious permissions you are talking about. Android defines the permissions and you either request to use them or not. Once requested the user must grant ones that can cause harm to your device, like storage (once again we don't ask for, we don't want it).
If you have made it this far I will tell you our theory why Hellfish is so bent on spreading lies. He/she used the Shield to disable some critical system apps and bricked their device. Mad, which we would also be, they reached out to us where we informed them sorry nothing we can do now, it is bricked. They also disabled safe mode and factory reset. Once again we have warnings stating be careful what you disable and to understand what you are doing.
Enraged they started spreading lies and when called out they doubled down, and tripled down until we banned them. We have our limits.
The best part, and we saved the login logs, is not even a day later Hellfish was logging in to the app on a S21 ultra. Guess you found a way to get it working. When confronted more lies were spread and that account was banned. (We kept finding your alt accounts because you kept having the name Hellfish in them. We figured after the first alt was banned you would figure it out, but you made it too easy to find you. I gave up looking for you after the fourth alt account was banned, if you want to use the app and keep bricking your phone go for it)
If you haven't noticed we don't bow to pressure or are PC. You mess up and blame us we call you on it, you either own up to your mistake or get banned. If that means I have social problem then ok, fine by me, I sleep just fine at night.
Including screenshot of the Shield having no permissions, most games have more permissions than we do.
Click to expand...
Click to collapse
one last thing fool...stop putting ip grabber links in the comments...your just asking for trouble ...lmao
HELLFISH420 said:
lmao...80-90% of what you said is straight up lies...you did all sorts of messed up stuff...hell you even hacked my discord and changed my password...then when my team bypassed your malicious app login you sent me emails threatening me and saying i broke laws and all sorts of dumb sh** ...you know what your doing is wrong....alot of other people see and know what your doing...you log passwords...your app has multiple permissions...exodus and other online checkers
Click to expand...
Click to collapse
All I see is more accusations and ZERO proof. Typical Hellfish.
Where is the poof I log passwords? I will happily give you any version of the Shield going back 2 years. Decompile it and show me the password grabber, or exodus, or anything else. You can't so I won't be holding my breath.
It has multiple permissions yes, but most are so the Knox features work. You know what permissions I don't request? Storage.
HELLFISH420 said:
riven you wouldnt by any chance be running a bitcoin mining scam would ya? ...lol....you run scripts and exe. files thru chrome remotely...i seen it with my own eyes...stop denying it...you know all bs aside i was actually nice and trying to help but you got butthurt when i showed the true app permissions to the whole world to see...as far as whats already been done is done...mark my words ...your app WILL NOT BE AROUND FOREVER
Click to expand...
Click to collapse
Once again more accusations and yet zero proof. Same offer still stands, show me the malicious permissions, what ever that means.
Since we banned you for lies it has been half a year. My app is still here. Still waiting for it to be taken down. My guess is another 6 months will pass and we will still be here.
You were nice and we were nice untill we asked for proof about your wild claims, then it changed. Suddenly we were the bad guys. Extraordinary claims require extraordinary evidence.
HELLFISH420 said:
you couldnt pay me to use your malicious app .....lol...since my run with you ive already compiled and built my own disabler app ...and guess what..it requires no internet connection...no logins ...no permissions of any kind..has no trackers or anayltics ...and its 100% free..unlike your bitcoin mining app/alliance shield app...lmao.
Click to expand...
Click to collapse
We are happy for you, really are, no sarcasm, but once again you don't understand why we have the login.
All it takes is reading our website feature list to see why, but hey you compare apples to carrots.
Also you better hope Samsung doesn't find out you are using Knox to disable system apps or your key will be revoked.
If it uses Samsung Knox, then it needs an internet connection, so excuse me If I don't believe you 100%
HELLFISH420 said:
oh yeah one last thing [email protected]
one last thing fool...stop putting ip grabber links in the comments...your just asking for trouble ...lmao
Click to expand...
Click to collapse
What are you even talking about? I really think you need to get help, your infatuation of us is weird and how you think everything we do is hacking you.
Trust me, if I had a zero day (which I don't) I wouldn't use it to hack random people via my legit app we worked 5 years on and almost half a million downloads. I would sell it for $100,000 and then find the next one.
But hey, you think whatever you want.
Edit:
After reading my comment again do you think the Cloudflare or Google link is an ipgrabber? I take it you never heard of Cloudflare or Google, interesting.
Cloudflare has a market cap of 65 Billion and Google 1.99 Trillion, very huge respected tech companies.
Hi Rriven, I just heard about your app and was surprised that it involved using Samsung Knox. That sparked my curiousity, so I did an some analyzing and I have a curious question. Does your connection with the US Military/Army help you create this app. I did see that the DoD (Department of Defense) has approved and worked with Samsung, Knox specifically in creating a phone for the Military. And according to your LinkedIn profile, it shows that you have DoD clearance.
Suprnova84 said:
Hi Rriven, I just heard about your app and was surprised that it involved using Samsung Knox. That sparked my curiousity, so I did an some analyzing and I have a curious question. Does your connection with the US Military/Army help you create this app. I did see that the DoD (Department of Defense) has approved and worked with Samsung, Knox specifically in creating a phone for the Military. And according to your LinkedIn profile, it shows that you have DoD clearance.
Click to expand...
Click to collapse
Any legit company can apply to use Samsung Knox, which I did.
My connection with the Military has nothing to do with the app. The Shieldx was created in my spare time using my company (RRiVEN LLC) that I set up as a College project before I joined the Military.
Knox is a very powerful system that the Shield only scratches the surface of what it can do. I am not surprised that the Military uses it.
This hellfish character is a troll. Shield is a great app and works well. Only I don't stick with it because there is still no way to add large hosts from online sources easily. Once that happens, I'm switching. Until then, adhell3 is the best solution.
Wow that war was awesome to read. Go Alliance Shield X whoo whoo !!! lol
this issue has been resolved....mods please delete this entire post
I'm not related to hellfish or whatever, just saw a recommendation in the internet - app to control running services on Samsung devices, well that was quite an experience.
This is just ridiculous software, probably author is a follower of well known Terry Davis (god bless his soul) with his well known TempleOS. IT IS JUST FREAKING RIDICULOUS! never ever install that crap and stay away... just a complete nonsense beyond imagination, you may get a taste of it just browsing through official website, which was already very much suspicions, but I registered and installed anyways... mother of god...
also author's weak excuses about dot in emails? WHAT ON EARTH???? have you ever seen a single rnd generator... do you have a slightest idea how email works, any understanding of modern spam\antispam techniques? zero, zilch... my god... sheeez....
HELLFISH420 said:
this issue has been resolved....mods please delete this entire post
Click to expand...
Click to collapse
How did you resolved the issue? pls update me about the solution so we can also try..
HELLFISH420 said:
you couldnt pay me to use your malicious app .....lol...since my run with you ive already compiled and built my own disabler app ...and guess what..it requires no internet connection...no logins ...no permissions of any kind..has no trackers or anayltics ...and its 100% free..unlike your bitcoin mining app/alliance shield app...lmao.
Click to expand...
Click to collapse
also how can I get this software of yours? Have you uploaded this in the forum or playstore or somewhere else? Please update me...

Finally Proof My Andoid OS Hacked

I've known for 2 years I've been hacked. Everyone I know thinks I'm crazy because for 2 years I've been convinced that my phone was being controlled remotely even though I've changed devices, profiles, and deleted more apps than I can count. Finally yesterday I dicovered Total Virus Scan and it found this. I've had at least 50 antivirus apps with no success and I was not sure if maybe I wasn't a going crazy. I even would stop using my phone for a month or more at a time because that was the only time I had issues. Whoever is behind this has taught me everything I know about android and hacking by directing me in a way that is hard to explain. I'd just see what they wanted me to do by a random page that would pop up, or sentence highlighted, or other discreet cues. If I have not had 100% accuracy on certain issues I've been informed about by following these cues I would be certain I was crazy but there has been like 50 personal issues I've been informed about by following these cues and not a single time has it been we wrong. Unfortunately I let it consume me for about a year and almost ruined my life because of it and what I've learned has seriously altered my life. Yesterday Total Virus Scan found this Keylogger, 2 Trojan, RAT in OS. How do I remove these from my OS andcatch who is behind this? Attached is screenshot of the 4 issues found. Also on SD Maid it said my device wasn't rooted but had a built-in superuser app. Can't find the screenshot I had of that but had a url of toybox. A bunch of numbers then said [email protected] something. Any help will be much appreciated. Thank you in advance.
Could you try to create a backup of those apps and upload somewhere? Maybe it is possible to check it
Try to uninstall those apps with an app uninstaller
If you are unable to uninstall those apps they might be deeply installed? Ive been under the same situation 4-5years ago
Maybe a firmware reflash would do the job but everything will get deleted so try to backup everything
DrunkTrooper said:
Could you try to create a backup of those apps and upload somewhere? Maybe it is possible to check it
Try to uninstall those apps with an app uninstaller
If you are unable to uninstall those apps they might be deeply installed? Ive been under the same situation 4-5years ago
Maybe a firmware reflash would do the job but everything will get deleted so try to backup everything
Click to expand...
Click to collapse
It's not the apps. From what I've read one of the Trojans, the one in Google framework, is a dropper and reproduces and hides them in legit clean apps. That is why antivirus software doesn't pick them up. I've done at least 100 scan's with every malware finder I can find and this is the first time I have gotten a hit on anything but I know for a fact it's been there for at least 2 years. Everything I know about android whoever this person is taught me. It's almost as if they are a friend because they've directed me to learning about someone close to me who was doing me wrong, taught me everything I know about android and hacking, it's crazy man. I can't explain how they communicate with me all I can say is I will just see it and know. Something highlighted briefly, a random page popping up that directly coorilates with what is happening in my life, but also have tried getting money out of me and removed pictures of my wife from my device. I want to find out if it's someone I know before I remove it. If so, I'm thinking criminal charges and anything else I can do to mess with their life like they have mine. They truly destroyed my life for about 18 months and just now getting everything back together. I don't really talk about it anymore because everyone thought I went crazy but still privately search for the cause and who wmis behind it and yesterday I finally found it. Showed my mother and step son and even with these screenshots they still say I'm crazy and seeing things. Just glad I finally have proof. I can't explain what it's like to have EVERYONE around you saying you are crazy and seeing things that aren't there and knowing you aren't. It really sucks and I wouldn't wish what I've experienced the last couple years on my worst enemy.
EJay80 said:
I've known for 2 years I've been hacked. Everyone I know thinks I'm crazy because for 2 years I've been convinced that my phone was being controlled remotely even though I've changed devices, profiles, and deleted more apps than I can count. Finally yesterday I dicovered Total Virus Scan and it found this. I've had at least 50 antivirus apps with no success and I was not sure if maybe I wasn't a going crazy. I even would stop using my phone for a month or more at a time because that was the only time I had issues. Whoever is behind this has taught me everything I know about android and hacking by directing me in a way that is hard to explain. I'd just see what they wanted me to do by a random page that would pop up, or sentence highlighted, or other discreet cues. If I have not had 100% accuracy on certain issues I've been informed about by following these cues I would be certain I was crazy but there has been like 50 personal issues I've been informed about by following these cues and not a single time has it been we wrong. Unfortunately I let it consume me for about a year and almost ruined my life because of it and what I've learned has seriously altered my life. Yesterday Total Virus Scan found this Keylogger, 2 Trojan, RAT in OS. How do I remove these from my OS andcatch who is behind this? Attached is screenshot of the 4 issues found. Also on SD Maid it said my device wasn't rooted but had a built-in superuser app. Can't find the screenshot I had of that but had a url of toybox. A bunch of numbers then said [email protected] something. Any help will be much appreciated. Thank you in advance.
Click to expand...
Click to collapse
You need to utube Beef, it's a exploit that takes over your browser that's started with script embedded in a web page, text, messenger msg, etx. You may confuse it with malware because the attackers will gain the same info if not more by using social engineering.
remove all google accounts from settings, perform a factory reset, create new google account and check Total Virus Scan again.
You can use same google account just don’t restore data
Arealhooman said:
You can use same google account just don’t restore data
Click to expand...
Click to collapse
I don't recommend this as google account is device administrator, anyone knowing that password can remotely install apps

Question Most frustrating virus ever

I have a virus attached to my phone / google cloud and I can not shake it. I've tried multiple anti virus apps, all of them found absolutely nothing on my phone. I have factory reset my phone 3 separate times,the last one,I did not import my contacts list( that's where the virus first attacked) . And somehow, my contacts appeared a few hours later. All with the same problem ( see supplied screenshot) please someone ,help. It has been going on for 6 months now and I have not found one other person to have a similar issue!? How can I be the only one affected smh
It's been a long while since I had a Galaxy (S5), but I help my sister and my mom with their S20 and S22...
Apologies if I am a bit obvious & obtuse -- but you haven't mentioned what I'm about to suggest -- but I remember getting that when my phone book was set to display email addresses and not only contacts with phone numbers. As with the Middle Eastern contacts, I imagine that THAT might've been a "virus" or something, which synced to your Google or Samsung account, and it simply keeps getting re-synced every time you reset your device and/or just re-synced in general after a time.
You may/might need to delete the entries manually from your Google account and/or your Samsung account contact lists -- and then finally your device.
If anything, a "virus" does not survive a factory reset...you either have to re-install or re-download the virus in some fashion (whether knowingly or not) after the reset...
Good luck with everything!
simplepinoi177 said:
If anything, a "virus" does not survive a factory reset...you either have to re-install or re-download the virus in some fashion (whether knowingly or not) after the reset...
Click to expand...
Click to collapse
Not true. Rootkits do just that. Remember the infamous XHelper?
Does a Factory Reset Remove Viruses From Your Phone?
Running a factory reset on your phone can potentially clear out a persistent virus that is otherwise hard to remove. But does it remove all viruses?
www.makeuseof.com
TheMystic said:
Not true. Rootkits do just that. Remember the infamous XHelper?
Does a Factory Reset Remove Viruses From Your Phone?
Running a factory reset on your phone can potentially clear out a persistent virus that is otherwise hard to remove. But does it remove all viruses?
www.makeuseof.com
Click to expand...
Click to collapse
I did not know about this. Can something like XHelper implant itself without root access? I have my doubts OP had root access in any state in the number of factory resets performed...
And -- although I have not looked into the URL or XHelper -- it doesn't look like that or other rootkit "viruses" purpose would be what happened to OP -- merely changing and/or inputting random contacts...
simplepinoi177 said:
Can something like XHelper implant itself without root access?
Click to expand...
Click to collapse
Yes, that’s what happened. It used some exploit in Android to hide itself in the system partition.
simplepinoi177 said:
it doesn't look like that or other rootkit "viruses" purpose would be what happened to OP
Click to expand...
Click to collapse
This is not the case with OP. He simply has to clean up his contacts.
I did manually erase all contacts after the last time, within 5 hours they were back. 435 contacts erased and brought back. It's mind numbing.
What is this xhelper?
muffintop75 said:
I did manually erase all contacts after the last time, within 5 hours they were back. 435 contacts erased and brought back. It's mind numbing.
Click to expand...
Click to collapse
Have you given any 3rd party app access to your contacts? They are coming back because they are being resynced from cloud. You have to delete them from your Google account (assuming that’s what you use) as well as any other account that you have added.
1. On your mobile, sign out of your Google account that is having these contacts. And delete all contacts on your device.
2. Delete all these contacts on the web (using a browser on your laptop). Do this on all your cloud accounts that have your contacts.
3. Once it is cleaned in the cloud, add your Google account back on your device.
You don’t have any virus.
It's as @TheMystic says, we'd be willing to bet that something is resyncing your contacts from a cloud; at the very least it is not a virus.
Unless the virus' only purpose is chaos, there's no reason a virus would do this action -- it's just not how modern viruses work nor their purpose. They open exploits to either damage your system (OS-wise), hold you ransom, or obtain your information. Maybe back in the 70's and 80's and early 90's, there were viruses whose only purpose was to wreak havoc and delete as much data as possible, now viruses are meant to somehow get monetary returns -- creating random contacts would in no way get any "hackers" any money.
I did as instructed. We will see lol. Thank you very much for your time. I am wondering something though. If this is not a virus,what do I call it? It's something, I have to have a name for it. And I really want to find out who caused it
muffintop75 said:
I have a virus attached to my phone / google cloud and I can not shake it. I've tried multiple anti virus apps, all of them found absolutely nothing on my phone. I have factory reset my phone 3 separate times,the last one,I did not import my contacts list( that's where the virus first attacked) . And somehow, my contacts appeared a few hours later. All with the same problem ( see supplied screenshot) please someone ,help. It has been going on for 6 months now and I have not found one other person to have a similar issue!? How can I be the only one affected smh
Click to expand...
Click to collapse
Dont think so its a virus.
first - stop syncing of contacts from google drive. Delete all contacts from google, if you can.
use this app - https://play.google.com/store/apps/details?id=com.makelifesimple.duplicatedetector
this will remove all duplicates - name and number based, empty contacts, email ID's etc.
Had the same issue years ago, turned out to be sync issue with google.
So far so good it's been two hours. And everything still looks good. One thing the mystic suggested had me check my settings , I had ,for some reason, allowed 3rd party access to my contacts. Why would anyone ever want random web sites to have access to their contacts? Why is that even a setting? Lmao But no matter, it's turned off now. And I also followed the mystics other suggestions. For once ,I feel confident that this solved my issue. But only time will tell. It was taking weeks for my contacts to erase themselves before. But it all makes a little more sense to me now. I will keep you guys updated. ,thanks again for all your help ,this forum thread did what months of me searching online,and going from one tech "guru" store to the next. Every single one of them said( in some form) " the only way to get rid of this issue is to start a whole new google account, and to not access my old account,from my new one" . I refused to believe that. They were all just being lazy because it wasn't 15 years of THEIR life that was getting erased . So thank you for helping me find a real solution

Categories

Resources