Security/privacy compromised - Security Discussion

Hello

electriceye said:
Hello. My apolgies in advance if im not in the right thread. Also, im not tech saavvy at all so please be patient about me not knowing the right lingo.
Ive had on going concerns with my iphones. Before anyone advises: ive reset my phone, changed my passwords and apple IDs and i beg to difer if u beleive iphones cant be hacked. If this is thw right thread i cn provide screenshots of my concerns.
PLEASE HELP!
Click to expand...
Click to collapse
Can you be more precise on what's the issue please

Yes. Their have been apps downloaded that i did not download (found them under "hidden purchases"). Pics have been found that i did not take with my phone ..or any other device. Apps have been rearranged. At one point I even dialed 911 and my call was routed to another number that was pretending to be the 911 call center.

Related

Android Rom and Banking Fraud?

Hello to all,
first of all forgive me if i am in the wrong forum. Second I am not an authority with ROMs and developing. I can flash a new ROM and follow guidance easily but that's it. Up to that.
I will tell you my scary experience with a specific rom which i installed a couple of days ago on my S3. First off all this post is not suppose to be rude to anyone or anything. I am telling you my story and I would appreciate your input as you are the experts.
3 days ago I installed the MIUI (http://miuiandroid.com/community) ROM on my S3.
As soon as I turned the phone on to run it for the first time I went to the typical set ups but then I noticed something.
On he top right corner of the status bar the a green phone icon appeared meaning that the phone was automatically set on "Call-diverting" .I dint pay any attention for about 30 mins as I was setting up the phone.
When I decided to see what the icon does to my sock and horror I realised that my phone was pre setted to call diverting automatically to a specific mobile number in the UK.
I quickly disabled the call diverting and dint think anything more. All of that happened around 12:30 in the afternoon (pay real attention to the times here).
about 10 minutes later I was at the office. around 2 hours after that I got a text message from my Bank to call them about a suspicious money transfer.
I called the bank and the told me that a few minutes earlier someone attempted to transfer 2000 pounds from my account. Of course my on-line banking was frozen and I was lucky not to loose the money.
Now, during these two hours my phone never rang just the text message from my bank. The bank security employee told me that it looked suspicious to them because whoever was trying to transfer the money asked for the 4 digit number via the automated bank security system to be diverted to another mobile number. The bank advised me to call my mobile carrier as I did.
The mobile carrier , when i talked to him, confirmed that someone called them and accessed my account by giving them all the right info, and requested that every time my phone was out of coverage all calls to be directed to another mobile!
have you guess what was the other mobile?? It was exactly the same mobile number as the pre-set on the ROM which I had installed 3 hours earlier!
And my bank confirmed that the same mobile was used in order to get the 4 digit pin.
I was shocked to say the least!!
When after a few minutes I managed to talk to my girlfriend , she told me that she was calling me earlier for about an hour. These phone calls never made it to my phone. As the phone was pre-setted to call diverting it was ringing to the diverted phone and not mine.
It is obvious that as I do mobile on-line banking and I access my accounts from my mobile (as many do), somehow they managed to get all the information about me and I am suspecting dodgy applications on my phone. I hope I am wrong but this experience has really shocked me.
I love android phones I love what you developers do but I am after you opinion in this one.
I am not here to offend any developers but to have a genuine answer and a sensible discussion about this issue. I am not a kid I am professional and this experience has really made me think twice about smart phones.
nice.! install only trusted ROMs with a lot of feed back
Sent from my GT-I9100 using Tapatalk 2
jowett69 said:
nice.! install only trusted ROMs with a lot of feed back
Click to expand...
Click to collapse
the miui-rom made by miuiandroid.com is a "trusted rom with a lot of feedback" and has a long history and a community with over 50.000 members.
mtdgr said:
I am suspecting dodgy applications on my phone.
Click to expand...
Click to collapse
i think you're right, it wasn't the rom but some malware-/spyware-app.
assuming your phone was rooted, it would be easy for an app to do all kind of bad stuff once it got root-privileges, eg hiding on your sdcard and spying your data and after that establishing the call-divert to catch the 4digit-pin and the rest would be history.
only thing you could do is think what questionable apps with root privileges you installed in the last days before this happened, try to get a copy of it and have a closer look on it, maybe installing it without a simcard inserted or with a simcard without charge on it, to see what happens...
a big piece of luck would be some kind of log from about 1230h to see what established the call-divert, but if i would do such app i would ensure to delete all logs with traces afterwards, but who knows?
though, all of that are just the ideas that came to my mind as i read your post...
good luck for the investigation, would be interesting to know if you could get any information about what happened, so keep us updated, ok?
greetz,
sUsH
It would be difficult for me to know which custom ROM is safe and which one is not! I am not an expert you see. And the same goes with apps. I don't think anyone can state with certainty that any are safe.
It is just shocking to know how easy it is for your details to "escape" !
I will keep you informed about how this goes.
jowett69 If you can tell me how to get that log you are talking about, that would be great.
In the meantime can anyone advise on a descent mobile data protection application? something which will prevent any sensitive data from leaking from my phone? Payware or freeware I don't mind.
some ideas
mtdgr said:
It would be difficult for me to know which custom ROM is safe and which one is not! I am not an expert you see. And the same goes with apps. I don't think anyone can state with certainty that any are safe.
It is just shocking to know how easy it is for your details to "escape" !
I will keep you informed about how this goes.
jowett69 If you can tell me how to get that log you are talking about, that would be great.
In the meantime can anyone advise on a descent mobile data protection application? something which will prevent any sensitive data from leaking from my phone? Payware or freeware I don't mind.
Click to expand...
Click to collapse
A start might be to check the Superuser app and click on Log and see what apps received su permissions.
Also, from a cmd prompt you can enumerate all the running processes by running:
Code:
adb shell "busybox ps -A > /mnt/sdcard/process.log"
adb pull /mnt/sdcard/process.log
View process.log for anything suspicious, or post it up and I'll have a look.
fluxist
fluxist said:
A start might be to check the Superuser app and click on Log and see what apps received su permissions.
Also, from a cmd prompt you can enumerate all the running processes by running:
Code:
adb shell "busybox ps -A > /mnt/sdcard/process.log"
adb pull /mnt/sdcard/process.log
View process.log for anything suspicious, or post it up and I'll have a look.
fluxist
Click to expand...
Click to collapse
I don't think I could do that my friend. As soon as I suspected that something with that ROM was wrong I performed a full wipe and installed omega 9.1 rom.
My question is this. By performing a full wipe should really erase any malware from the previous installation right? Can anyone advise on a descent antivirus/firewall application which will help me (and others like me) monitor and "block" unusual application behavior?
oh and one more question for my information...sensitive personal data can only be leaked when the device is rooted ? if it is not rooted am I safe?
mtdgr said:
I don't think I could do that my friend. As soon as I suspected that something with that ROM was wrong I performed a full wipe and installed omega 9.1 rom.
My question is this. By performing a full wipe should really erase any malware from the previous installation right? Can anyone advise on a descent antivirus/firewall application which will help me (and others like me) monitor and "block" unusual application behavior?
Click to expand...
Click to collapse
did you wipe your internal and external sdcards too? how did you wipe? cause it depends where the malware was hiding, if it is erased now or not.
a simple, yet powerful firewall is droidwall. you can find it in the market. put it in whitelist-mode and allow only the stuff you know. but droidwall controlls "only" internet-connections (wifi and 3g or such). for full controll over every permission of every app and connection of your phone you sohuld use pdroid, but i don't know if that's really necessary, though i understand your fear. but if someone really wants to harm you and has some knowledge, there are always ways, i think...
mtdgr said:
oh and one more question for my information...sensitive personal data can only be leaked when the device is rooted ? if it is not rooted am I safe?
Click to expand...
Click to collapse
not really, think of those apps you can use to root your device. think a bit further and one could make an app that roots your device and afterwards does the stuff it wants. but seriously, though it is possible, who would do that to you? that's what you should think about...
greetz,
sUsH
ps: cause you did a wipe, there's no possibilty of going through some logs, sry. (though this too depends on the way you wiped and what exactly you wiped...)
I did a full wipe to install the new rom...wipe cache data ...devlink and one more but cant remember it
Sent from my GT-I9300 using xda app-developers app
mtdgr said:
I did a full wipe to install the new rom...wipe cache data ...devlink and one more but cant remember it
Sent from my GT-I9300 using xda app-developers app
Click to expand...
Click to collapse
sry, then your try to get rid of the problem also got rid of possible evidence. just try to forget it and be more careful in future with suspicious apps from questionable sources and similar.
greetz,
sUsH

[Q] Track a phone using the mobile #

I was recently told that there is an app that tracks any phone using the mobile number.
Apparently you dont need it installed on the phone your tracking all you need is to know their mobile phone number.
Is this even possible?
Can anyone tell me if this person is talking out of their A$$ or if this app ever existed? because it would be amazingly helpful in finding an Optimus G that was recently stolen from me. (I know who has it and know the # associated with their sim.)
If you can confirm this, can you also provide a link for download please? many thanks.
EDIT: I never wrote down my IMEI or serial #.. so Im kind of hooped.. Is there anyway to push an app to someone elses phone? or someway I can get this dealt with that I may not have thought of yet? My carrier has no log of the phone because I didnt buy it through them.
Tracking mobiles!
KXIX said:
I was recently told that there is an app that tracks any phone using the mobile number.
Apparently you dont need it installed on the phone your tracking all you need is to know their mobile phone number.
Is this even possible?
Can anyone tell me if this person is talking out of their A$$ or if this app ever existed? because it would be amazingly helpful in finding an Optimus G that was recently stolen from me. (I know who has it and know the # associated with their sim.)
If you can confirm this, can you also provide a link for download please? many thanks.
EDIT: I never wrote down my IMEI or serial #.. so Im kind of hooped.. Is there anyway to push an app to someone elses phone? or someway I can get this dealt with that I may not have thought of yet? My carrier has no log of the phone because I didnt buy it through them.
Click to expand...
Click to collapse
You can track a mobile using ANDROID DEVICE MANAGER which is pre-installed in mobiles if the play store gets updated.
ANDROID DEVICE MANAGER can be accessed through
SETTINGS --> SECURITY --> DEVICE ADMINISTRATORS
Once you activate ANDROID DEVICE MANAGER, you can track your mobile, erase datas from your lost mobile by logging in to ANDROID DEVICE MANAGER in a web browser by giving the email id and password which you used in your mobile.
However i dont recognize any app that tracks a mobile using IMEI number..
KXIX said:
I was recently told that there is an app that tracks any phone using the mobile number.
Apparently you dont need it installed on the phone your tracking all you need is to know their mobile phone number.
Click to expand...
Click to collapse
I'd be very very careful with apps advertized having this feature.
In theory, the mobile provider can track your phone, because they issued the SIM and phone number to you. But the providers don't supply this information to anyone but law enforcement/NSA/other three letter agency. Imagine the stalking possibilities...
Why I'd be very careful (as in: not downloading and installing at all...) about this is, that I've seen websites advertizing this service, and when you enter a phone number, you're asked to download and run an exe file. It probably won't work but infect your computer with malware.
I doubt it's any different with android apps.
If you install a tracking app on your phone yourself that reports to somewhere (e.g. google device tracking, "lost my iphone"), that's a whole different situation - you're voluntary giving your position to someone to keep, and that's sensor data acquired from your phone.
The truth
Everyone needs to know the truth that is sometimes hidden behind the most deceptive appearances. Everyone, too, needs to be certain of the sincerity of their relatives...
SpyBubble is likely to become the best smartphone application for that => phoneservicetracker.com
KXIX said:
I was recently told that there is an app that tracks any phone using the mobile number.
Apparently you dont need it installed on the phone your tracking all you need is to know their mobile phone number.
Is this even possible?
Can anyone tell me if this person is talking out of their A$$ or if this app ever existed? because it would be amazingly helpful in finding an Optimus G that was recently stolen from me. (I know who has it and know the # associated with their sim.)
If you can confirm this, can you also provide a link for download please? many thanks.
EDIT: I never wrote down my IMEI or serial #.. so Im kind of hooped.. Is there anyway to push an app to someone elses phone? or someway I can get this dealt with that I may not have thought of yet? My carrier has no log of the phone because I didnt buy it through them.
Click to expand...
Click to collapse
I don't think tracking a phone using the mobile number is possible for consumers, if you lodge a police complaint they may go through your mobile carrier and then track it (depending on how much effort the police in your country put in for a lost phone). But if you know who stole it and their phone number that's a good enough basis to talk to the cops, you're going to need some proof of purchase of the phone though...
Just in case the guy hasn't wiped the phone and one of your accounts is still active on it, you can push apps through that account on Google Play by going to the Google Play website on your pc and logging in with that account. Then you can push one of many tracking apps and figure out where your phone is. My personal favourite is an app called 'android lost' through which you can do the usual - track, wipe, ring, vibrate etc but you can also access the mic and the cameras.
Also, you can maybe play it smart with some social engineering. Get a girl to call up the guy and ask him out at some place and you'll find him there!
do u got a way for the Iphone too?
kavb1986 said:
You can track a mobile using ANDROID DEVICE MANAGER which is pre-installed in mobiles if the play store gets updated.
ANDROID DEVICE MANAGER can be accessed through
SETTINGS --> SECURITY --> DEVICE ADMINISTRATORS
Once you activate ANDROID DEVICE MANAGER, you can track your mobile, erase datas from your lost mobile by logging in to ANDROID DEVICE MANAGER in a web browser by giving the email id and password which you used in your mobile.
However i dont recognize any app that tracks a mobile using IMEI number..
Click to expand...
Click to collapse
do u got a way for the Iphone too?
Please give me download app
ishaang said:
Also, you can maybe play it smart with some social engineering. Get a girl to call up the guy and ask him out at some place and you'll find him there!
Click to expand...
Click to collapse
This.
ramiabouzahra said:
This.
Click to expand...
Click to collapse
As if they'd keep the original number? Can't call if the number has been changed.
Sent from my LGL84VL using Tapatalk

[Q] Requesting help with the acquisition of an insidious application.

Good afternoon dear forum dwellers,
I find my self facing a very steep obstacle related to an application. My agricultural family requires the application in order to conduct normal work. The issue i am faced with is two fold. I am unable to download/install the application due to either region restriction or phone restriction.
The notorious application is this: https://play.google.com/store/apps/details?id=com.yara.checkit
So i request the aid and wisdom of those of you that possess far greater abilities than i, in solving this perhaps simple conundrum. My request is the following: Would it be possible for someone to download that application and sub sequentially sent me the .APK file of it so that i may install it manually. Alternatively i am open to any and all suggestions regarding the resolution of the above issue.
Thank you for your time, and i apologies if this post is not in the correct section of the forum,
Humbly yours,
Shallowmist
(PS: I have contacted the application developer regarding the same resolution i have suggested, unfortunetly the support was.... How should i put this? The support leaves a'lot to be desired.)
Shallowmist said:
Good afternoon dear forum dwellers,
I find my self facing a very steep obstacle related to an application. My agricultural family requires the application in order to conduct normal work. The issue i am faced with is two fold. I am unable to download/install the application due to either region restriction or phone restriction.
The notorious application is this: https://play.google.com/store/apps/details?id=com.yara.checkit
So i request the aid and wisdom of those of you that possess far greater abilities than i, in solving this perhaps simple conundrum. My request is the following: Would it be possible for someone to download that application and sub sequentially sent me the .APK file of it so that i may install it manually. Alternatively i am open to any and all suggestions regarding the resolution of the above issue.
Thank you for your time, and i apologies if this post is not in the correct section of the forum,
Humbly yours,
Shallowmist
(PS: I have contacted the application developer regarding the same resolution i have suggested, unfortunetly the support was.... How should i put this? The support leaves a'lot to be desired.)
Click to expand...
Click to collapse
you could most likely use 4shared to get the apk since its free.
Trozzul said:
you could most likely use 4shared to get the apk since its free.
Click to expand...
Click to collapse
4shared but that's assuming that the application has already been uploaded to 4shared correct ?
Shallowmist said:
4shared but that's assuming that the application has already been uploaded to 4shared correct ?
Click to expand...
Click to collapse
i might be, other users upload it, if theres lots be careful what you get because people are bums and they could load it up with Ads or a survey you must do to unlock the app. so you said you talked to the app developer? why not ask him for a apk file?
Trozzul said:
i might be, other users upload it, if theres lots be careful what you get because people are bums and they could load it up with Ads or a survey you must do to unlock the app. so you said you talked to the app developer? why not ask him for a apk file?
Click to expand...
Click to collapse
I did ask them for the apk file they had no idea wtf i was talking about. I got 2 women one on the regular support line one on the "computer service desk" they seemed very surprised anyone was calling them at all, and neither wanted to help. So i don't think the support is going to be the way to go for this.
Shallowmist said:
I did ask them for the apk file they had no idea wtf i was talking about. I got 2 women one on the regular support line one on the "computer service desk" they seemed very surprised anyone was calling them at all, and neither wanted to help. So i don't think the support is going to be the way to go for this.
Click to expand...
Click to collapse
oh i see where you went, im sure someone else made the app for them. at this point this is my last thought of what you can do http://forums.crackberry.com/bb10-a...w-download-apk-file-google-play-store-820107/
im sure its the only way to get the apk.
Trozzul said:
oh i see where you went, im sure someone else made the app for them. at this point this is my last thought of what you can do http://forums.crackberry.com/bb10-a...w-download-apk-file-google-play-store-820107/
im sure its the only way to get the apk.
Click to expand...
Click to collapse
Thank you kindly for the tip, i shall try it out.

What am i looking at?!?! H E L P ! ! !

I continously find weird and new folders on my phone whose content seem fishy to say the least. I feel like my husband has hacked my phone just from looking at some of the files content. Please help me decode. Thank you.
the attached file is from a bug report.
also, I forgot to mention I dont use Microsoft at all on my phone yet these 'logs' continue to pop up from time to time.
I'm using a Samsung a11.
has your husband joined up recently too ?
fb is facebook and it's likely for ads.
Do a quick search on fb.bin
bdani28 said:
also, I forgot to mention I dont use Microsoft at all on my phone yet these 'logs' continue to pop up from time to time.
I'm using a Samsung a11.
Click to expand...
Click to collapse
yea logs are your systems way of checking how your system is doing.
If you open one up it'll probably list the time, and what you did on that time frame.
That's content of fb.bin provided
Code:
c5dfe56f-f99e-4dbe-838d-1647632d1e20
bdani28 said:
I continously find weird and new folders on my phone whose content seem fishy to say the least. I feel like my husband has hacked my phone just from looking at some of the files content. Please help me decode. Thank you.
Click to expand...
Click to collapse
Apparently the other files I attached didnt go through. Those are the ones I'm really taking about. They are for Microsoft sky something.
hellofriendlymanveriosns said:
yea logs are your systems way of checking how your system is doing.
If you open one up it'll probably list the time, and what you did on that time frame.
Click to expand...
Click to collapse
Yes I am aware of that. But how are logs for microsoft sky accounts and/or sent data on my phone when I dont use any thing Microsoft on my phone.
3mel said:
has your husband joined up recently too ?
Click to expand...
Click to collapse
No. He dont use fb. Just messenger
If you are worried about your phone being hacked, you may scan your phone with some security app such as Malwarebytes, McAfee Mobile Security, etc.
bdani28 said:
No. He dont use fb. Just messenger
Click to expand...
Click to collapse
I meant joined up here on xda. someone made a post about malware a couple of days ago and said his wife had an A11 and was worried about files on her phone.

Havking problem

Hello i am new and i don't understand nothing but i am open to learn and sortout my issues Alone.. in advance i sei thank you to everyone why help me with any information about my phone my account my license on the phone updates and other thing the are supposed to hack you and mirror everysteps of your move..
OD So my question is very simple for now.. can you ple guys let me know how can i check my phone licence and secure protocol apps softwares and account any root anything that can be the door of my phone.. i have thins problem with my phone longtime ago i change phone change email and after a little time samething sameproblems come again someone hack my phone and instal somelicence thet can mirror me change app setting and more the person the do this i feel like very close guy... becouse he know everything for me and didn't stop to prove me this (how) like he show me some links ,strange names coming alone on my dekstop website change alone ar ads just like this how i am watching something and BOM something stange happen on a web and i see how someone show me that he knows what i am eating yesterday or what is my nick name in a live how my kids names and everything like this sometime sender or havker is a good and show me where to study about thing the i am interested or what to do if something not happen like i wont to do but sometime this guy is a very bad and show me and try to put in my brein story like where my kinds now what happen to them and thing like this that everyone will take sirius.. i thing my internet is a like a limited i can goo anywhere i can see enything i goo and see that what someone wont me to see i thing also that my google play store is a like not limited and is a like some other cloning app that anything in can be developed.
PLEASE GUYS LET ME FURST ALLTHIS STORY IS A POSSIBLE TO BE THEM FROM WHERE CAN BE HAPPEN INTERN WIFI PHONE NUMBER ACCOUNTS. AND HOW TO CHECK MY PHONE AND EVERYTHING FROM TIME TO TIME IS GOOD OR NOT..
THANK YOU AGAIN THIS IS VERY IMPORTANT FOR ME AND MY LIVE IN A FUTURE
I can not understand anything you wrote. Please rephrase it with paragraphing, grammar, and other English grammer rules.
sv3tlina said:
i don't understand nothing
Click to expand...
Click to collapse
If I'm not mistaken that means that you understand everything.
Deses said:
If I'm not mistaken that means that you understand everything.
Click to expand...
Click to collapse
Why would you mock them?

Categories

Resources