[INFO][REF] DFKBootkit threat on Android!! Be Aware!! - Nexus S General

This is just an FYI on the latest malware found on Android: DFKBootkit.
Be careful when installing from 3rd parties app stores.
http://paintsthefuture.com/the-firs...tion-from-user-devices-was-finally-uncovered/

So which antivirus system should we use to prevent it?
Verstuurd van mijn Nexus S met Tapatalk

They discovered this malware months ago. Nothing to freak about, i'm sure lookout and all the other antivirus apps have already been updated to detect.

Well, you don't have to worry if you are careful with your phone and download locations.
I haven't heard anything from Lookout stating they can fix it, but NQ Mobile Security does fully protect about this:
http://www.nq.com/mobilesecurity
NQ whole research is here:
http://research.nq.com/?p=391

Related

antivirus

anyone use an antivirus on their vario2 ? I have just put on one from the same company I use for my online backups (1.5gb), anti virus, anti spam and anti malware. all this officially on 3pc's for around 50gbp for 2 years! It all works really well. had a small issue when I first installed it to my V2, that was sorted qjuickly by their 24h support; I had installed the smartphone version!
I can recommend them;
www.bullguard.com
Antivirus for WM devices is snake oil. There is no malware that will affect a WM device without agreeing to multiple popups. Most of the AV is designed to catch malware that will be caught on an on-access scan when you connect to a PC anyway.
bydandie said:
Antivirus for WM devices is snake oil. There is no malware that will affect a WM device without agreeing to multiple popups. Most of the AV is designed to catch malware that will be caught on an on-access scan when you connect to a PC anyway.
Click to expand...
Click to collapse
fair comment mate, but this was included as part of my overall package. just thlough some of you may be interested.
I could be wrong, but I have yet to read a single report of a WM-based virus...
goestoeleven said:
I could be wrong, but I have yet to read a single report of a WM-based virus...
Click to expand...
Click to collapse
Only a matter of time, IMHO. Plenty of idiots out there with nothing better to do.

Best Antivirus for ICS

Can someone suggest best antivirus for ICS?
Sent from my GT-N7000 using xda premium
None. Antivirus software for Android = a scam to make the antivirus vendors money.
Just read reviews for apps before installing them from the Market. Malware is usually pretty obvious.
Norton,avast,dr.web they were tested by some big world company wich test antiviruses so type at google best android's antivirus
Sent from my GT-I9100 using XDA
Entropy512 said:
None. Antivirus software for Android = a scam to make the antivirus vendors money.
Just read reviews for apps before installing them from the Market. Malware is usually pretty obvious.
Click to expand...
Click to collapse
Not really true. If you are tech savvy enough to be sure you don't have anything with malware then best of luck to you. You are well respected on this forum so I'm sure you'll be fine.
I'm technically minded and a software programmer by trade but I couldn't be sure that any app on the market is safe without fully reverse engineering it (which I'm not eating my time attempting) and even then some sneaky developer could push something dodgy out in an update so I'd have to check them too.
Also checking apps doesn't protect you from dodgy messages, emails, etc.
So, I have AVG on all my Android devices just in case. It uses very little resources and has caught a couple of suspect things over the last 6 months since I moved to 'Droid!
I am using Kaspersky Mobile Security. Very System friendly.
Sent from my Samsung Galaxy Note using XDA Premium App
I am taking the small risk of a data leak over a performance loss, so I am currently not running one, having said that I do run it on my pc :-/
emuX said:
.
I'm technically minded and a software programmer by trade but I couldn't be sure that any app on the market is safe without fully reverse engineering it (which I'm not eating my time attempting) and even then some sneaky developer could push something dodgy out in an update so I'd have to check them too.
Click to expand...
Click to collapse
It's not about needing to reverse engineer code!
It's more about paying attention to the permissions that the app requests when you go to install it and deciding if they are appropriate.
For example, an app that just makes farting noises almost certainly doesn't need access to your contacts, and services that cost you money.
Some people think that an Android antivirus program will protect them against such threats, and they will if the application has been "blacklisted". However, most of these programs rely on blacklists, so until a particular application is flagged as malware, you are still at risk!
The moral of the story is, nothing beats eternal vigilance!
Regards,
Dave
Sent from my GT-N7000 using Tapatalk 2
emuX said:
Not really true. If you are tech savvy enough to be sure you don't have anything with malware then best of luck to you. You are well respected on this forum so I'm sure you'll be fine.
I'm technically minded and a software programmer by trade but I couldn't be sure that any app on the market is safe without fully reverse engineering it (which I'm not eating my time attempting) and even then some sneaky developer could push something dodgy out in an update so I'd have to check them too.
Also checking apps doesn't protect you from dodgy messages, emails, etc.
So, I have AVG on all my Android devices just in case. It uses very little resources and has caught a couple of suspect things over the last 6 months since I moved to 'Droid!
Click to expand...
Click to collapse
And neither will these 'antivirus' software help if a developer slips something in, the truth is the best thing you can do it check comments malware is far less a problem on android then Windows, these companys simply try to sell you this software as so many people are used to needing it on windows they think android is the same.
All the apps do is detect known 'black listed' apps which are either not going to be on the market or have bad comments already.
While the main reason for these apps is pointless I will say some of the extra features are quite useful including device tracking etc.
However I would never buy one of these apps for sure
Avast Free s the best, enough said.
John
Tinderbox (UK) said:
Avast Free s the best, enough said.
John
Click to expand...
Click to collapse
Yep
The additional 'Theft Aware' software, is free as well
emuX said:
Not really true. If you are tech savvy enough to be sure you don't have anything with malware then best of luck to you. You are well respected on this forum so I'm sure you'll be fine.
I'm technically minded and a software programmer by trade but I couldn't be sure that any app on the market is safe without fully reverse engineering it (which I'm not eating my time attempting) and even then some sneaky developer could push something dodgy out in an update so I'd have to check them too.
Also checking apps doesn't protect you from dodgy messages, emails, etc.
So, I have AVG on all my Android devices just in case. It uses very little resources and has caught a couple of suspect things over the last 6 months since I moved to 'Droid!
Click to expand...
Click to collapse
You my friend, are to paranoid.
Sent from my GT-N7000 using xda premium
lamou1nr said:
You my friend, are to paranoid.
Sent from my GT-N7000 using xda premium
Click to expand...
Click to collapse
Better that than having all my account details hacked because some dodgy app is snooping.
Responding to the others who replied to me...
If you choose a reputable AV company like AVG or Norton you should be safe.
And, you can't tell much from the permissions. Yes, if the app asks for access to your contacts and phone identity then you could just not install it, but what if it was an alternative dialer that was ad supported? - then it would need internet access and permissions to read your phone details (like Go Dialer) and then you are stuffed.
I've got a door at the front of my house. Even though I live in a good area and have neighbours around most of the day, I still lock it!
foxmeister said:
It's not about needing to reverse engineer code!
It's more about paying attention to the permissions that the app requests when you go to install it and deciding if they are appropriate.
For example, an app that just makes farting noises almost certainly doesn't need access to your contacts, and services that cost you money.
Some people think that an Android antivirus program will protect them against such threats, and they will if the application has been "blacklisted". However, most of these programs rely on blacklists, so until a particular application is flagged as malware, you are still at risk!
The moral of the story is, nothing beats eternal vigilance!
Regards,
Dave
Sent from my GT-N7000 using Tapatalk 2
Click to expand...
Click to collapse
+1
Sent from my GT-I9100 using Tapatalk 2
emuX said:
I've got a door at the front of my house. Even though I live in a good area and have neighbours around most of the day, I still lock it!
Click to expand...
Click to collapse
To use your analogy, your "antivirus" app is like a bouncer on your front door. If a known threat pitches up and wants to come in, the bouncer will stop them, but for new and unknown threats, he'll happily wave them through.
Given that reputable app stores like Google Play or Amazon are quick to remove known threats, all you've done is bought yourself a false sense of security! Good luck with that!
Regards,
Dave
Sent from my GT-N7000 using Tapatalk 2
I was just asking about this kind of thing just the other day.
Here is what I found (http://www.av-test.org/en/tests/android/)
The Best stuff at the moment seems to be
avast! Free Mobile Security
F-Secure Mobile Security
Kaspersky Mobile Security (Lite)
. . . .McAfee Mobile Security >_> (Apparently...)
and
Zoner AntiVirus Free
I'm using COMODO on Android (good antivirus, real time scaner and great anti theft options) and on PC i'm using COMODO Internet Security (antivirus+firewall+sandbox). It's free both on Android and PC.
Avast
Avast...without doubt.Run it on my PC too.
I'm using LBE to adjust/monitor permissions for apps. I don't think antivirus programs will do you any good.
Avast is the best in my opinion. Even though its a really good AV and its also free I still dont use one. Don't need one on my mobile.
Even on Windows I never get viruses.
Most malware and viruses come in with dodgy emails and dodgy websites. Avoid those and you'll be fine.
I just use Avast even though I like it more for the Anti-theft feature than the actual anti-virus feature.

Do you have installed Avast in your Nexus?

How many of you have Avast installed? Does it use too much battery?
are you trying to have anti virus or anti theft ?
if its anti theft your looking for id suggest Cerebus. Im not to sure about the battery drain on Avast though
https://play.google.com/store/apps/...51bGwsMSwxLDEsImNvbS5sc2Ryb2lkLmNlcmJlcnVzIl0.
waste of memory and battery to have any antivirus apps installed. just dont install third-party apps from suspicious places
I've had avast installed on another phone of mine. Doesn't use a lot of resources, but it's useless most of the time.
Just install it if you're going to install an app from a shady 3rd party website to scan said app and deactivate or uninstall it of you don't need it.
Seriously all that marketing crap you hear about android and malware is loads of bollocks.... Chances of you getting a virus are like winning a lottery...
Sent from my Nexus 4 using xda premium
MattSkeet said:
Seriously all that marketing crap you hear about android and malware is loads of bollocks.... Chances of you getting a virus are like winning a lottery...
Sent from my Nexus 4 using xda premium
Click to expand...
Click to collapse
Agreed. And if someone does get a virus from a app that someone downloaded from a third-party website or third-party market (not Amazon or SlideIT though), chances are... they deserve it for pirating apps
Besides.. android has a built in malware scanner before you install a app. Not sure how good it is but yeah.
Aside from that, basic rules.
1. dont install apks from random places
2. dont install apps from play store that are just now recently published with 0 ratings [i mean you could... but be wary of it, look at the dev's other apps he made and its ratings]
if you're looking for anti theft, then get a app with only antitheft (or disable its antivirus component if bundled). cerberus is a good app, one time fee of 2.99 euros. there are free alternatives available as well.
lookout's plan b is pretty good as well (remotely install it via play store website to obtain location)
Does anyone use seekdroid for antitheft. Is it any good?
none of these anti theft sofware/app will get your phone back if it gets into the 'wrong' hands, so its the luck of the draw if you ever 'lost' your phone, good luck
cobyman7035 said:
none of these anti theft sofware/app will get your phone back if it gets into the 'wrong' hands, so its the luck of the draw if you ever 'lost' your phone, good luck
Click to expand...
Click to collapse
Even if they can't get their phone back I think users are looking for a remote wipe as a phone does contain a lot of personal information in regards to user accounts.
And some people have actually gotten their phones back with the help of police
Sent from my Nexus 4 using xda premium
zephiK said:
Even if they can't get their phone back I think users are looking for a remote wipe as a phone does contain a lot of personal information in regards to user accounts.
And some people have actually gotten their phones back with the help of police
Sent from my Nexus 4 using xda premium
Click to expand...
Click to collapse
Yes agree wipe feature is nice to have as a last resort or first if your paranoid
°°°Nexus™ 4 via XDA Premium App°°°
if people are looking for theft security. get a app that only does that, not a antivirus included.
or just go live on the high road and use Plan B

Antivirus or not?

Just wondering if it's wise to run antivirus software on my phone?
Sent from my GT-N7100 using Tapatalk 2
Fenrisulven_ said:
Just wondering if it's wise to run antivirus software on my phone?
Sent from my GT-N7100 using Tapatalk 2
Click to expand...
Click to collapse
there is a saying that prevention is better than cure. who knows what will happen so have one already.
Waste of time. I've been running Android for four years and not a single issue. Just be careful what apps you install, I.e. stay away from cracked apps, and always check the permissions before you install them. It's just the same as on a pc, you don't really need anti virus so long as you're smart enough to know how to manage the risks.
Sent from the mighty Note II.
Play store itself have malware protection, so it's only needed if you are installing cracked or other applications from untrusted sources.
dr.m0x said:
Waste of time. I've been running Android for four years and not a single issue. Just be careful what apps you install, I.e. stay away from cracked apps, and always check the permissions before you install them. It's just the same as on a pc, you don't really need anti virus so long as you're smart enough to know how to manage the risks.
Sent from the mighty Note II.
Click to expand...
Click to collapse
Saavy.
Also, If your note is UN-ROOTED, you have no danger, just watch permissions on the app you install, some pirated apps ask for SMS permissions to send massive sms to premium numbers, other simply may be an open exit node for proxies for DDOS and such.
Rooted devices are by far more vulnerable (inf fact are exposed to any thing)
Some good news for android 4.2
Android 4.2 scans sideloaded apps: While apps on Google Play are checked for malware, apps that are sideloaded (installed from elsewhere) were not checked for malware. On Android 4.2, when you first try to sideload an app, you’ll be asked whether you want to verify sideloaded apps are safe. This ensures that all apps on your device are checked for malware.
Android 4.2 blocks premium rate SMS messages: Android 4.2 prevents apps from sending premium-rate SMS messages in the background and alerts you when an app tries to do this. Malware creators use this technique to rack up charges on your cell phone bill and make money for themselves.
Thanks i won't install antivirus then
Aby idea if android 4.2 comes to the note2 or will they jump directly to 5?
Sent from my GT-N7100 using Tapatalk 2
Fenrisulven_ said:
Thanks i won't install antivirus then
Aby idea if android 4.2 comes to the note2 or will they jump directly to 5?
Sent from my GT-N7100 using Tapatalk 2
Click to expand...
Click to collapse
We might get 4.2 before 5.0 with all the S4 features. At least that's what I've read.
Fenrisulven_ said:
Thanks i won't install antivirus then
Aby idea if android 4.2 comes to the note2 or will they jump directly to 5?
Sent from my GT-N7100 using Tapatalk 2
Click to expand...
Click to collapse
They are already working on 4.2 for us, the s3 and various other devices. There is even a leaked test version of 4.2 floating around on the s3 forums, so yes I'm confident we will see 4.2 on the way to 5.
Sent from the mighty Note II.
I use Kaspersky Mobile Security not because of the antivirus, I use it because the Anti-Theft features and mugshot, also it is pretty lightweight. Regarding to the antivirus, better safe than sorry
You should. And i advise you to get TRUSTGO mobile security.
Sent from my GT-N7100 using xda app-developers app
I'm using Avast and it hasn't caught anything in 5 months. Not sure if it's doing its job or not. lol
Fenrisulven_ said:
Thanks i won't install antivirus then
Aby idea if android 4.2 comes to the note2 or will they jump directly to 5?
Sent from my GT-N7100 using Tapatalk 2
Click to expand...
Click to collapse
Note 2 will first have Android 4.2 and then Android 5.0 and then I hope we will receive another small update Android 5.1 or something like that.And after that ,who knows?
I strongly recommend you Bitdefender from Playstore.It's consumption is about 5 mb RAM .It scans every app installed ,also have nice features like Anti Theft and so on.:victory:This is what I'm using right now
If a phone thief formats the sdcard every anti-theft app will be deleted and thus useless. Only thing to do left is trying to get the imei number blocked so the phone cannot be used.
You could also use THIS
Try avast. It has one of the best anti theft program of u r rooted. It will install to secire partition and almost impossible to get rid off. I Tested installing custom firmware, stock firmware... kernel updates... The antitheft is still there tracking me and emitting very loud sirens (when u insert an unknown simcard). Access to the phone is also restricted without passcode.
I'm very impressed. And there is many commands u can do remotely....
Sent from my GT-N7100
vash_h said:
Try avast. It has one of the best anti theft program of u r rooted. It will install to secire partition and almost impossible to get rid off. I Tested installing custom firmware, stock firmware... kernel updates... The antitheft is still there tracking me and emitting very loud sirens (when u insert an unknown simcard). Access to the phone is also restricted without passcode.
I'm very impressed. And there is many commands u can do remotely....
Sent from my GT-N7100
Click to expand...
Click to collapse
What if you're not rooted :-\?
zkyevolved said:
What if you're not rooted :-\?
Click to expand...
Click to collapse
Then anyone who steals your phone can simply do a factory reset and the phone is theirs. Tracking software with root access isn't perfect either, a factory reset won't kill it but flashing new firmware will.
Sent from the mighty Note II.
I think we had better install some antivirus apps to prevent from the potential threat since our phone are always on the web which includes much virus.
I have 4 smartphone and 1 tablet, and for all no antivirus. No problem, 0 virus or others in 3 or 4 years.
(sorry for my english, i'm french)

[Q] wrong location

Hello. This is the first time im dealing with such problem in Android and thats why i am in panic mode on.
While i was on vacation still in Greece my location started behaving strange. I was chatting on fb when a girl told me that underneath my message it said location : Beijing, China. I didnt pay attention as i thought it might be a malfunction in the location system. From that day and for 15 days my telephone insisted that i was on Thailand so i managed to check my location history on Google. And that was a shock actually. I was supposed to be in greece, Istanbul and Thailand EVERY DAY. i searched the history to find when this started and it was the day i downloaded a file from Piratebay.se . I immediately wet my pants and i had my phone restored in its factory statem i kept it that way without even installing apps for 2 days. The location history was finally accurate when i decided to reinstall my apps from Google Play store. 2 days have past and today someone told me that i am again showing my location in Thailand (on fb chat). So Since i reinstalled the apps this thing keeps happening. My phone is the International version bought from an official store brand new last year and it hasnt been rooted or flashed. Sorry for the long post but i feel horrified. Thanks in advance.
Mine always thinks I'm in place I'm not. Today I am aparently somewhere in Siberia. (I've not yet decided if that is an improvement from the arse end of Serbia or not.)
If you suspect it's an app, do another reset. Then MANUALLY reinstall all your apps one by one over time (or in batches of a few.) You should be able to find the culprit that way.
Sent from my SM-N9005 using Tapatalk 2
ShadowLea said:
Mine always thinks I'm in place I'm not. Today I am aparently somewhere in Siberia. (I've not yet decided if that is an improvement from the arse end of Serbia or not.)
If you suspect it's an app, do another reset. Then MANUALLY reinstall all your apps one by one over time (or in batches of a few.) You should be able to find the culprit that way.
Sent from my SM-N9005 using Tapatalk 2
Click to expand...
Click to collapse
Dont you afraid for viruses? My mind nearly exploaded cause i work through my phone and i have so many data, bank stuff, etc Siberia though sounds cool ! :silly:
Julmaggot said:
Dont you afraid for viruses? My mind nearly exploaded cause i work through my phone and i have so many data, bank stuff, etc Siberia though sounds cool ! :silly:
Click to expand...
Click to collapse
Bank stuff and piratebay should be kept a long way from each other. Just one bad file from any filesharing site is all it takes. If you're afraid of viruses, piratebay ain't gonna cure you.
I was in France for 3 weeks a couple of years back, and throughout my trip my location was invariably Guadalajara, Mexico, a place I was last in in 1986. Even Google couldn't have known that Or could they...
Julmaggot said:
Dont you afraid for viruses? My mind nearly exploaded cause i work through my phone and i have so many data, bank stuff, etc Siberia though sounds cool ! :silly:
Click to expand...
Click to collapse
No.
I've been a pirate all my life. I download about 2TB a month from Usenet and Piratebay.
Have had a total of 4 virusses, and none of those came from those sources. Two were from websites that were infected (avg caught them) and two were from infected USB pendrives. (avg caught those too, bit I did need to do some manual cleanin.) Never had any on my Android devices.
(it was even legal here until mid2014, and they still don't enforce it.)
But I always pay attention to what I'm downloading; no books or music as executable files, no films of 30MB, etc. Those are all fake and usually contain malware.
There are no virusses for Android. Android is linux-based. Just like iOS. The only thing there is is malware.
And the chance of getting Android-based malware out of a torrentfile is incredibly small. Nonexistent if you know what you're doing.
If there is a virus in it, it's usually in a .exe or .dll, both of which are unreadable by Android. A windows-based virus, malware or spyware can't do anything to your Android device. (you can still infect your pc if you manually transfer the file to it)
The only time you run a risk is when you install a cracked .apk from an unreliable cracker or site. (yes, there are reliable ones.) if you haven't done that, there's very little chance it came from the torrent.
More likely it's some other app from the appstore.
There are more malware infected and dangerous apps on Google Play than there are on The PirateBay.
You can always have MalwareBytes and AVG or AVAST scan your phone. They're free on the Play Store and the best in terms of dealing with malware.
Now, I know this discussion is starting to approach the edge of the site's rules on warez. (If not already leaning across) But I think it's still staying on the side of troubleshooting, as he's not asking for help downloading, and we're not telling others how to.
Well, I've decided I prefer Siberia over Serbia (my last visit wasn't exactly a holiday...) so yea, sort of cool it is Bit nippy though.
Sent from my SM-N9005 using Tapatalk 2
you should install avast and do a full scan to sdcard and internal....
Yeap nothing has been detected. I've tried 3 antimalware softwares
Sent from my SM-N9005 using Tapatalk

Categories

Resources