Friday, October 2, 2015

[TUT] How to remove adobe air and measure in android phone

How to remove adobe air and measure in android phone


This another unwanted apps that installed in android phone like monkey test and time service provider. It's very annoying it can cause lag and shutdown of your phone. It always appear like "adobe air has stopped working". As you noticed in your installed apps adobe air and measure was installed automatically. Even uninstall or factory reset it always came back after rebooting. This is 100% malware  family of monkey test and time service. This was experienced mostly in Android Kitkat version from 4.4.2 to 4.4.4.
[TUT] How to remove adobe air and measure in android phone



However, this can be prevented by means of flashing custom rom nor flashing the original firmware and stock rom. To flash custom rom make sure you have already backup in case you are bootloop in the procedure. First you need to clean your phone by formatting sdcard then wipe all in custom recovery then flash your desire custom rom that available in your phone .You can proceed here for your phone. If you want to flash your original firmware proceed here. Another way to freeze it using third party apps you can proceed here

Once the malware gone, find out when and where does the malware appear?. To prevent it make sure to download apps in trusted website only.  Go to settings > Security>uncheck Unknown sources
This time will also prevent installing application from other source.

 Unknown Source Activate Preview 1
Go to settings > Security> Slide On App permissions.
Add Permissions Preview 1


Labels: , ,

Saturday, August 22, 2015

[TUT]Alternative way to remove Monkey test and Time Service Provider

I found out this trending topic about android phones. This affects 70% of the users now a days and its a serious problem. This unwanted and annoying app is always shown in the recent apps. Basically, it cannot be remove easily even on factory reset or uninstall in the setting. According to Norton, this is a malware that can consume enough space and drain your battery. Also, automatically install unwanted application without permission. As I mentioned before in my related post that I found out after extracting using APK Editor. I've noticed one of their code used "session id" it means it has access in your internet that's why it can install unnecessary app when you are connected to the internet. I don't know their main purpose but one thing is for sure it is like the other free apps with ads asking  to install their apps. I thought this malware possibly wants to earn money from their ads or maybe trying to access your account and information for their own purpose. So, do not ignore this and remove this malware as soon as possible.
Although complicated, the best way to remove this is format your phone and flash again your firmware or Stock Rom. For alternative way ,you need Titanium Backup Pro to freeze this malware to prevent from installing unwanted application.


Requirements:
Rooted
Titanium Back Up Pro

Procedure:
1. Install Titanium Back Up Pro. Tap Backup/Restore. Then Tap MonkeyTest and TimeService.

remove Monkey test and Time Service Provider
 Tap Freeze.

remove Monkey test and Time Service Provider Preview 1

remove Monkey test and Time Service Provider Preview 2

That's it! Now Titanium Backup will freeze the malware to install unwanted application.

2. Go to settings > Security>uncheck Unknown sources
This time will also prevent installing application from other source.

Unknown Sources Preview 1

3. Go to settings > Security> Slide On App permissions

Add Permissions




Conclusion:
This malware still under investigation. And still  we don't know their main purpose and no reports of  hacked account. This is an alternative tutorial only to prevent installing unwanted app without permission. It's up to you if you want to remove or ignore it. I  just warned you. And remember  the famous quote,"Prevention is better than Cure".

Labels: , ,

Friday, July 31, 2015

[TUT] How to prevent Stagefright exploitation

 How to prevent Stagefright exploitation
Recently, Google announced that there's a new bug discovered and could manipulate your  android phone. Almost 95% of android phone could be risk and vulnerable for a single text thru MMS. Hacker bind a code in this MMS and can exploit the victim even you did not download or opening it unlike in other malware. This attack severely include froyo 2.2 up to android 5.1 latest android version. Actually, Google has already patch for this to prevent it but they still contacting all the manufacturer of smartphone company. It also warned us that this is crucial and still unknown on how could this attack happen. How can you imagine this for only single text can manipulate your phone without knowing it. Perhaps can accesss your data, photos, and bank account that link in your phone.

Stagefright Exploitation Prevention


According. to forbes.com, "The weaknesses reside in Stagefright, a media playback tool in Android. They are all “remote code execution” bugs, allowing malicious hackers to infiltrate devices and exfiltrate private data. All attackers would need to send out exploits would be mobile phone numbers, Drake noted. From there, they could send an exploit packaged in a Stagefright multimedia message (MMS), which would let them write code to the device and steal data from sections of the phone that can be reached with Stagefright’s permissions. That would allow for recording of audio and video, and snooping on photos stored in SD cards. Bluetooth would also be hackable via Stagefright".

Based on my observation this stagefright has a big rule in our android phone. It seen in system libs that can access our media files, as well as audio and videos. Honestly, I don't have an idea how can manipulate it via MMS nor what the extent of the attack and how dangerous is it. Although, stagefright which access our media we can prevent it. Simply, MMS is the route we need to disable it.
I have two method to disable it one is via mms settings just off your auto retrieve and other one simply change APN of network settings. We need to prepare until waiting for the updates of Google's android. Also don't give your number to suspicious persons. Remember the famous quote, "Prevention is better than Cure".


Method 1.

Go to MMS settings>Auto Retrieve>Off

MMS SETTINGS SCREENSHOT


Method 2.
Go to settings>more>Mobile Networks>Access Point Names> Change MMS proxy and port any name you want. To disable MMS.


MMS SETTINGS SCREENSHOTS 2





Labels: , ,