I have got a new S22 ultra and my company installed the MS Intune portal, is there a way to remove it?
Will it help if I install clean official firmware?
Factory reset didn't help.
Have you tried Settings< Accounts and Backup<Manage Accounts< and then delete work account?
Yes, it is blocked by the policy that enforced by KNOX.
The account can't be removed.
Then I am afraid that your network administrator will need to delete the device from the company account before you can remove that safety feature.
Is it your own phone? Sounds like it's company's phone or your phone has been "invaded" by your company via intune device management...`
If it is your phone then you can remove it otherwise no
Did you remove Company Portal/Intune from Device Admin Apps before trying to Uninstall?
If Intune is on it that means its a company phone , there is probably a company polisy about this , ask your company IT if it is alowed to remove it.
lokto7 said:
Is it your own phone? Sounds like it's company's phone or your phone has been "invaded" by your company via intune device management...`
Click to expand...
Click to collapse
It is the company's phone
dadmi said:
Did you remove Company Portal/Intune from Device Admin Apps before trying to Uninstall?
Click to expand...
Click to collapse
Tried to, it is impossible
YoramZa said:
Tried to, it is impossible
Click to expand...
Click to collapse
Strange, I never had issues uninstalling company portal after removing as device admin.
Related
Hi,
I am already rooted. I wanted to remove my user id from gmail account so that my wife can put hers. I also deleted some of the AT&T apps after following the rooting guide.
When I tried to delete my gmail account its saying that I have to reset my phone to factory settings. My question is that can I do that knowing that I am rooted. Also what would happen to my paid and downloaded apps? Please guide.
Also I heard that new upgrade is coming will there be an issue upgrading to the new OS?
Please help..
ask_j said:
Hi,
I am already rooted. I wanted to remove my user id from gmail account so that my wife can put hers. I also deleted some of the AT&T apps after following the rooting guide.
When I tried to delete my gmail account its saying that I have to reset my phone to factory settings. My question is that can I do that knowing that I am rooted. Also what would happen to my paid and downloaded apps? Please guide.
Also I heard that new upgrade is coming will there be an issue upgrading to the new OS?
Please help..
Click to expand...
Click to collapse
You can do a factory reset and it will still be rooted, as for your paid apps they are tied to your Google ID so you will not be able to reinstall them if you set it up under your wife's account. You will still be able to get the upgrade but you should check the forum before you upgrade as you may lose your root with an upgrade.
Thanks/One more question
jhernand1102 said:
You can do a factory reset and it will still be rooted, as for your paid apps they are tied to your Google ID so you will not be able to reinstall them if you set it up under your wife's account. You will still be able to get the upgrade but you should check the forum before you upgrade as you may lose your root with an upgrade.
Click to expand...
Click to collapse
Thanks for the quick reply. Have one more question. I see that this phone is attached with my gmail id as you mentioned. I also realized that as soon as I go and buy any app it just goes through the google checkout. Is there any security I can add?
Can anyone pls help?
ask_j said:
Thanks for the quick reply. Have one more question. I see that this phone is attached with my gmail id as you mentioned. I also realized that as soon as I go and buy any app it just goes through the google checkout. Is there any security I can add?
Click to expand...
Click to collapse
Hi,
Can anyone please help?
Thanks
ask_j said:
Thanks for the quick reply. Have one more question. I see that this phone is attached with my gmail id as you mentioned. I also realized that as soon as I go and buy any app it just goes through the google checkout. Is there any security I can add?
Click to expand...
Click to collapse
Well if you look in the market for antivirus it will pull up quite a few apps that say it protects you from ID theft and such...some are free and some you have to pay for. I personally do not use any but I don't do a lot of sensitive stuff on my phone..
Do you consider buying apps sensitive?
I also do not do any sensitive stuff only buy apps. The problem is that it does not reconfirm the password when you buy any app.
ask_j said:
Thanks for the quick reply. Have one more question. I see that this phone is attached with my gmail id as you mentioned. I also realized that as soon as I go and buy any app it just goes through the google checkout. Is there any security I can add?
Click to expand...
Click to collapse
jhernand1102 said:
Well if you look in the market for antivirus it will pull up quite a few apps that say it protects you from ID theft and such...some are free and some you have to pay for. I personally do not use any but I don't do a lot of sensitive stuff on my phone..
Click to expand...
Click to collapse
@jhernand1102 I too was going to do a hard reset, will i have to re due the settings.db file or will that stick along with root? thanks
According to facebook report over my mail, someone has entered in to my fb via Xperia XA, Saratoga, CALIFORNIA, US. I am at Europe.
Most likely i was blocked because my phone Ip have changed somehow.Now i cant enter in to my account with msnger and facebook (only from browser) app on my phone. Think the security system is blocking my phone.
Ps: i had to swap Wifi with 4g in order to get access.
Did you use any vpn to access Fb?
Think not, just standart office Wifi connection. And i just check , my office location (according to my laptop is Europe), but according to my phone 4g i am at California ,Saratoga. So whats going on ?
Its something from the phone system, i changed the firmware few days ago, and the phone is encrypted now, so maybe its forcing the apps to connect via VPN network, or who knows...
really ?? my phones comes with greek firmware and now I use south Africa firmware !! is there any problem ?
Have you some apps from unofficial markets like Aptoide? Have you some apps downloaded from file-sharing links or P2P? If yes, don't search away, you probably have a malicious app.
If you are rooted, use a permission manager app, Xprivacy is good for that and allow blocking strange permissions (Facebook, Google accounts, contacts, device ident, ... for an app who don't need them).
rrvuhpg said:
Have you some apps from unofficial markets like Aptoide? Have you some apps downloaded from file-sharing links or P2P? If yes, don't search away, you probably have a malicious app.
If you are rooted, use a permission manager app, Xprivacy is good for that and allow blocking strange permissions (Facebook, Google accounts, contacts, device ident, ... for an app who don't need them).
Click to expand...
Click to collapse
Might have some. How to detect which one is virus ?
hp6830s said:
Might have some. How to detect which one is virus ?
Click to expand...
Click to collapse
1) Try to re-download apps from trusted sources.
2) Try AVG app integrated in the device to scan it.
3) Use Xprivacy and block unnecessary permissions on suspicious apps, make some test (block/unblock) to understand what mean each permissions. For sample, a game generally don't need root, phone contacts or SMS and needs sensors, storage and Internet.
rrvuhpg said:
1)
3) Use Xprivacy and block unnecessary permissions on suspicious apps, make some test (block/unblock) to understand what mean each permissions. For sample, a game generally don't need root, phone contacts or SMS and needs sensors, storage and Internet.
Click to expand...
Click to collapse
nICE,will try that ,got some apps which are not suitable for my device. Think they might be suspicious.
So Xprivacy installs xFrame too ?
hp6830s said:
nICE,will try that ,got some apps which are not suitable for my device. Think they might be suspicious.
So Xprivacy installs xFrame too ?
Click to expand...
Click to collapse
Not suitable ?? Big targets to be suspicious are warez/cracked apps.
rrvuhpg said:
Not suitable ?? Big targets to be suspicious are warez/cracked apps.
Click to expand...
Click to collapse
One reason I'll never use apps like that in the first place. Just asking for trouble.
Sent from my Xperia XA using XDA Labs
aidy.lucas said:
One reason I'll never use apps like that in the first place. Just asking for trouble.
Sent from my Xperia XA using XDA Labs
Click to expand...
Click to collapse
if you know what the app is its ok I think !
rrvuhpg said:
Not suitable ?? Big targets to be suspicious are warez/cracked apps.
Click to expand...
Click to collapse
yea few which i was trying to connect a DSLR and use the phone for shutter remote.
It looks like i have already removed the antivirus app.
Hi,
Here's the problem: my company introduced mandatory installation of Microsoft Company Portal application for devices that want to access company mail etc.
I have a private SGS7, and up until now I used Outlook in Secure Folder - this way I could give company Admin rights, but only to the container. Now usage of MS Company Portal app is mandatory, and the damn app detects: a) if device is rooted (it's not, because I like KNOX) b) if it's run from Secure Folder. If either happens, it will refuse to start.
A friend of mine has Xiaomi phone and he used multi-user profiles so that his private stuff can still be private (without company admin over them), but the feature is disabled in SGS7, and to reenable you need root (so, no-go for me).
Do you have any idea how to keep going? Maybe there's some modification that can be made to Company Portal app to disable Secure Folder check? Or some other way to NOT give the company admin rights over entire phone, but still run Company Portal?
Stasheck said:
Hi,
Here's the problem: my company introduced mandatory installation of Microsoft Company Portal application for devices that want to access company mail etc.
I have a private SGS7, and up until now I used Outlook in Secure Folder - this way I could give company Admin rights, but only to the container. Now usage of MS Company Portal app is mandatory, and the damn app detects: a) if device is rooted (it's not, because I like KNOX) b) if it's run from Secure Folder. If either happens, it will refuse to start.
A friend of mine has Xiaomi phone and he used multi-user profiles so that his private stuff can still be private (without company admin over them), but the feature is disabled in SGS7, and to reenable you need root (so, no-go for me).
Do you have any idea how to keep going? Maybe there's some modification that can be made to Company Portal app to disable Secure Folder check? Or some other way to NOT give the company admin rights over entire phone, but still run Company Portal?
Click to expand...
Click to collapse
https://www.theandroidsoul.com/add-multi-user-galaxy-s7-s7-edge-note-7/
Correct me if I'm wrong, but won't installing TWRP trip Knox?
Stasheck said:
Hi,
Here's the problem: my company introduced mandatory installation of Microsoft Company Portal application for devices that want to access company mail etc.
I have a private SGS7, and up until now I used Outlook in Secure Folder - this way I could give company Admin rights, but only to the container. Now usage of MSCompany Portall app is mandatory, and the damn app detects: a) if device is rooted (it's not, because I like KNOX) b) if it's run from Secure Folder. If either happens, it will refuse to start.
A friend of mine has Xiaomi phone and he used multi-user profiles so that his private stuff can still be private (without company admin over them), but the feature is disabled in SGS7, and to reenable you need root (so, no-go for me).
Do you have any idea how to keep going? Maybe there's some modification that can be made to Company Portal app to disable Secure Folder check? Or some other way to NOT give the company admin rights over entire phone, but still run Company Portal?
Click to expand...
Click to collapse
You can try this app: https://play.google.com/store/apps/details?id=com.oasisfeng.island&hl=en_US
And install the MSCompany Portall app inside Island.
Ex novo said:
You can try this app: https://play.google.com/store/apps/details?id=com.oasisfeng.island&hl=en_US
And install the MSCompany Portall app inside Island.
Click to expand...
Click to collapse
This may not work, I don't have anything M$ on any system I own.
However, you could try using Magisk to root the device and then hide magisk/root from the portal using magisk hide feature. I use it on my system and it roots and hides root etc., from my banking and other apps very well.
I take no responsibility for what happens if you do try.
For more info search XDA.
Hi,
I tried with Island, and initally it was quite promising - allowed to install MSCompany Portal, which run and connected to servers. Unfortunately, the app was unable to send proper device information to Intune (serial, phone number etc.), so it's impossible to check device compliance and authorize. This is despite making Island and Company Portal inside Island as device admins
As for Magisk, using Magisk = KNOW blown, so this is not an option.
Hi guys, I believe my galaxy tab s4 is contaminated with a virus . I already did many factorys resets and didnt installed no apps but from time to time , even when Im at the home screen with Avast only or with the antivirus that comes with the tablet activated, google play store opens without my request showing a program called IQ Option broker. What should I do?
malandrex said:
Hi guys, I believe my galaxy tab s4 is contaminated with a virus . I already did many factorys resets and didnt installed no apps but from time to time , even when Im at the home screen with Avast only or with the antivirus that comes with the tablet activated, google play store opens without my request showing a program called IQ Option broker. What should I do?
Click to expand...
Click to collapse
Could be a fake Play store app reinstalling itself somehow eg from SD card. Is your antivirus scanning your external storage also? Check if you have more than one play store app shown in settings>apps (not your normal apps screen as they can be hidden there). Or it could be an overlay made to look like Playstore screen ... you did get official Avast app right?
else something has installed itself in system folder which is why factory reset not working and you will need to reinstall your FULL Samsung factory ROM suggest you use Samsung SmartSwitch like RootJunky here (use high quality cable eg samsung usb cable, else danger of bricking)
https://m.youtube.com/watch?v=9QhJngOuLQ4
malandrex said:
Hi guys, I believe my galaxy tab s4 is contaminated with a virus . I already did many factorys resets and didnt installed no apps but from time to time , even when Im at the home screen with Avast only or with the antivirus that comes with the tablet activated, google play store opens without my request showing a program called IQ Option broker. What should I do?
Click to expand...
Click to collapse
Download Odin 3.xx (current version)
Browse SamMobile for firmware for your device, download factory ROM. Pay close attention to the region code for your ROM, CSC code. Use one compatible with your device and regional settings. It can be found on the IMEI sticker on the back of the device
Follow the flashing instructions to the letter that you will find on SamMobile website.
Once completed the device is fully refreshed and has latest available software at the time of the build. Do device setup and download app updates.
Enjoy.
Many thanks for both replies , but I have a few more questions:
a) Does this virus have the power to attack my router? If so, what should I inspect at my router? Should I use my brotherĀ“s ios iphone as a router while cleaning my device?
b) If I attach the tablet at my PC to perform the firmwire installation, could the virus be transmitted to it? What should I do to avoid it?
c) Where can I safely download this ODIN?
And answering some questions you made:
a) The avast app was downloaded from the store
b) Ive already tried disconnecting the sd card, perform a factory reset without the card but the problem persists.
c) I logged at my google account and when looking at my registered activity, Google claims I did opened the Google Play Store and searched for the IQ Option Broker app. So the virus acts as if it was me.
malandrex said:
Many thanks for both replies , but I have a few more questions:
a) Does this virus have the power to attack my router? If so, what should I inspect at my router? Should I use my brotherĀ“s ios iphone as a router while cleaning my device?
b) If I attach the tablet at my PC to perform the firmwire installation, could the virus be transmitted to it? What should I do to avoid it?
c) Where can I safely download this ODIN?
And answering some questions you made:
a) The avast app was downloaded from the store
b) Ive already tried disconnecting the sd card, perform a factory reset without the card but the problem persists.
c) I logged at my google account and when looking at my registered activity, Google claims I did opened the Google Play Store and searched for the IQ Option Broker app. So the virus acts as if it was me.
Click to expand...
Click to collapse
b) Possibly access is possible via your modem (or Bluetooth as serious bug was just patched this month if an attacker knows your BT MAC ... though likely take a while to rollout to all Samsung so you moray not be patched). If you suspect modem then you need to therefore also update your modem firmware (assuming its been patched & is not old & still vulnerable to some old bug, or buy new one) AND change both user & admin passwords
There is an XDA article with link to safe Odin download, google to find. But I'd recommend using Samsung SmartSwitch as this is official way & no special knowledge required.
Re item c) then possible it's just someone trying to load an app remotely via your Google account, does it show any unrecognised login from another device? Also I'm not 100% sure if this requires user to tap install on newer phones, so might not be what you are seeing. Change Google password. (your phone not infected in this case as you didn't click install) Always use a different password)(used same password then check your email address on have I been pwnd)
See below
IronRoo said:
b) Possibly access is possible via your modem (or Bluetooth as serious bug was just patched this month if an attacker knows your BT MAC ... though likely take a while to rollout to all Samsung so you moray not be patched). If you suspect modem then you need to therefore also update your modem firmware (assuming its been patched & is not old & still vulnerable to some old bug, or buy new one) AND change both user & admin passwords
There is an XDA article with link to safe Odin download, google to find. But I'd recommend using Samsung SmartSwitch as this is official way & no special knowledge required.
Re item c) then possible it's just someone trying to load an app remotely via your Google account, does it show any unrecognised login from another device? Also I'm not 100% sure if this requires user to tap install on newer phones, so might not be what you are seeing. Change Google password. (your phone not infected in this case as you didn't click install) Always use a different password)(used same password then check your email address on have I been pwnd)
Click to expand...
Click to collapse
b) I have 2 modens here, one from the internet provider , which is at bridge mode and one that spreads the signal. THe last one is modern and updated and the bridged one , there is no way I can acesss the firmwire besides its info. However , when I had to put it at bridge mode, I had to use an ethernet cable with a computer which maybe wasnt the most protected one. Could that process corrupts a firmwire modem?
c) But I have 2 stage factor. Shouldnt my phone receive an SMS alerting someone is logging at my account? And no, I havent seen any unrecognized login when I accessed my google account.
But your reply gave me an idea...: Maybe an access to my google account was made from a "public" computer and since the access wasnt terminated, as I use this computer a lot, a bot may be trying to remotely install this app.
malandrex said:
b) I have 2 modens here, one from the internet provider , which is at bridge mode and one that spreads the signal. THe last one is modern and updated and the bridged one , there is no way I can acesss the firmwire besides its info. However , when I had to put it at bridge mode, I had to use an ethernet cable with a computer which maybe wasnt the most protected one. Could that process corrupts a firmwire modem?
c) But I have 2 stage factor. Shouldnt my phone receive an SMS alerting someone is logging at my account? And no, I havent seen any unrecognized login when I accessed my google account.
But your reply gave me an idea...: Maybe an access to my google account was made from a "public" computer and since the access wasnt terminated, as I use this computer a lot, a bot may be trying to remotely install this app.
Click to expand...
Click to collapse
b) would need to be a modem exposed hero their internet with known vulnerability, so not sure.
C) yes, should have got a msg so can role that out, I guess.
Suppose it' possible that public pc could be comprised and doing that ... bit of a long shot ...
IronRoo said:
b) would need to be a modem exposed hero their internet with known vulnerability, so not sure.
C) yes, should have got a msg so can role that out, I guess.
Suppose it' possible that public pc could be comprised and doing that ... bit of a long shot ...
Click to expand...
Click to collapse
I think I found the culprit , when I reviewd the few apps Ive installed on my tablet and googled them . There is Netflix, Omega Wars game, PUBG and COD Mobile, handycalc, Go Read, Hube and... QuickPic gallery!!!!!!!!! I used this app on my ancient galaxy S2 and at my other 2 previous tablets. When I looked for the program at Google Play one hour ago ,QuickPic wasnt available anymore!!!! I googled about it and saw many people complaining about this program when a chinese company bought it a few years ago . Maybe QuickPiC installed some crapware at my device!!!!
malandrex said:
Hi guys, I believe my galaxy tab s4 is contaminated with a virus . I already did many factorys resets and didnt installed no apps but from time to time , even when Im at the home screen with Avast only or with the antivirus that comes with the tablet activated, google play store opens without my request showing a program called IQ Option broker. What should I do?
Click to expand...
Click to collapse
BTW, can you find same app on Google, is it called IQ Forex, is closest I could fined
IronRoo said:
BTW, can you find same app on Google, is it called IQ Forex, is closest I could fined
Click to expand...
Click to collapse
The name of the program is IQ Option , from IQ Option developer
malandrex said:
The name of the program is IQ Option , from IQ Option developer
Click to expand...
Click to collapse
I can't find this one but doesn't mean anything, maybe not available in my country or not compatible with my phone.
PS: Don't rule out a compromised router even top of her range can be affected eg
https://threatpost.com/critical-netgear-bug-impacts-nighthawk-router/153445/
IronRoo said:
I can't find this one but doesn't mean anything, maybe not available in my country or not compatible with my phone.
PS: Don't rule out a compromised router even top of her range can be affected eg
https://threatpost.com/critical-netgear-bug-impacts-nighthawk-router/153445/
Click to expand...
Click to collapse
Dont have much free time , but despite the fact I think the router is still safe, Ill reset it on a weekend and change again its id and password as this is a process that takes too much time ( mostly due to my ignorance at the beginning of the process ).
Im thinking about taking my tablet for a Samsung assistance, but Im worried theyll change one virus for another if the employees are corrupt. Do you think I should take the risk or Im beeing too paranoic?
Hello,
I purchase a SM-G950U , I am able to sign in with my google account, some features like Face Unlock , and Factory Data Reset are greyed out. It looks like this is a corporate device that was managed with AirWatch Samsung Admin, and another app called HUB. I can not deactivate these two apps, greyed out as well.
Is there a way to reflash the factory firmware into it?
Thanks.
flfatboy said:
Hello,
I purchase a SM-G950U , I am able to sign in with my google account, some features like Face Unlock , and Factory Data Reset are greyed out. It looks like this is a corporate device that was managed with AirWatch Samsung Admin, and another app called HUB. I can not deactivate these two apps, greyed out as well.
Is there a way to reflash the factory firmware into it?
Thanks.
Click to expand...
Click to collapse
Hello,
Can someone help me please
flfatboy said:
Hello,
Can someone help me please
Click to expand...
Click to collapse
Is there any way to turn off the Airwatch app?
Here is an article that I found providing the details on how to remove Airwatch Intelligent Hub
How to Uninstall VMware Intelligent Hub from Android
[Solved] How to Uninstall VMware WorkspaceOne Intelligent Hub from Android mobile phone, Removing VMware Hub from my mobile phone
g33ktricks.blogspot.com