Sample Header Ad - 728x90

Android Enthusiasts

Q&A for enthusiasts and power users of the Android operating system

Latest Questions

-2 votes
0 answers
34 views
Is Android 13 auto-disabling pseudo-uninstalling some of my games?
Is Android 13 auto-disabling pseudo-uninstalling some of my games? I just installed Rainbow 6, and it didn't ask to uninstall apps to free space... I had these games working well: PUBG and Call of Duty (played it last week). Now both are grayed out on adw2launcher, I can't even open info about the g...
Is Android 13 auto-disabling pseudo-uninstalling some of my games? I just installed Rainbow 6, and it didn't ask to uninstall apps to free space... I had these games working well: PUBG and Call of Duty (played it last week). Now both are grayed out on adw2launcher, I can't even open info about the game from adw2, but I can open Play Store from it. At Play Store it says the app is not installed! At appmgr3, I can see Call of Duty there, but it has no icon. Opening the info for it, it doesn't show the game name, shows just the app technical name: androidx.multidex.multidexapplication And says it is using 8.6 GB of external storage, but I can't find the files there. How can the system have app info for an app that should be installed, but it is detected as not installed? Ahhh, it is confusing... What is going on? I didn't uninstall them.... Could it be some virus? It happened to about 8 games... Ahhh... :( Any clue? Any idea? Have you seen this mess before? I didn't drop my phone on the floor... I think I will go back to pc if I can't trust Android not failing weirdly like that :( Dude, I'm lost! This makes no sense! This should be Call of Duty info: this should be Call of Duty info But clicking the storage button does nothing. Clicking the open app button, nothing happens... What is happening??? My phone got hacked??? 😭 😭 It seems to be breaking apps that are on external storage! Even if the sdcard is working well!!! Just moved GoT Kingsroad back to internal storage. It actually just moved back the app as the data is never moved to external, that is why I had to uninstall Diablo Immortal thats was using 20GB+.
VeganEye (173 rep)
Aug 2, 2025, 08:13 AM • Last activity: Aug 2, 2025, 07:45 PM
0 votes
0 answers
47 views
Phone keeps opening the same web address spontaneously
My Samsung Galaxy keeps opening the web address `https://luckyvybz.top` Within the url, it also contains my `ISP details`, the `device details`, my `location` etc. I have ran malware scans using malwarebytes and Bitdefender but neither of these pick up any viruses Is there a recommended way to find...
My Samsung Galaxy keeps opening the web address https://luckyvybz.top Within the url, it also contains my ISP details, the device details, my location etc. I have ran malware scans using malwarebytes and Bitdefender but neither of these pick up any viruses Is there a recommended way to find culprit?
PaulMcF87 (181 rep)
Feb 4, 2025, 09:41 AM
1 votes
2 answers
5093 views
WeChat app keeps auto-opening on phone unlock
Since this morning, whenever I open and unlock my phone, it buzzes quickly upon unlock and opens the Wechat app, even though I have force closed it and cleared the cache. I have also restarted my phone and tried turning off notifications. Neither has changed the issue. I'm on a Samsung Galaxy S20, h...
Since this morning, whenever I open and unlock my phone, it buzzes quickly upon unlock and opens the Wechat app, even though I have force closed it and cleared the cache. I have also restarted my phone and tried turning off notifications. Neither has changed the issue. I'm on a Samsung Galaxy S20, have not installed any new apps to my knowledge since this behavior started happening. Googling the issue, a lot of folks mentioned a virus through a blank app causing similar behavior, but I was unable to find it. I ran Kaspersky and it didn't detect a virus. Is this an app setting, a Wechat issue or do I have a virus?
user360984 (11 rep)
Sep 29, 2021, 04:42 AM • Last activity: Oct 24, 2024, 04:32 AM
0 votes
1 answers
378 views
Unable to remove malware, even after factory reset and system flash. Sony Xperia 1 IV, XQ-CT72
I had a rooted phone, in which I misclicked an apk and installed it. Almost immediately I uninstalled it and disabled the network (I also had afwall and netguard enabled). However it was too late. I got a ~100's of 0kb system apps without icons. I re-flashed the phone with fresh stock firmware and f...
I had a rooted phone, in which I misclicked an apk and installed it. Almost immediately I uninstalled it and disabled the network (I also had afwall and netguard enabled). However it was too late. I got a ~100's of 0kb system apps without icons. I re-flashed the phone with fresh stock firmware and factory reset it, however the broken system apps (and likely the malware) are still there. Does anyone have suggestions on what can be done to fix this? Or any knowledge of similar malware? Some antivirus I could use, or maybe something stronger than a system flash? Thanks in advance. After factory reset and flash Picture after factory reset and flash.
arrmansa (101 rep)
Jan 27, 2024, 09:10 PM • Last activity: Jul 27, 2024, 07:17 PM
3 votes
0 answers
1116 views
Two Android System apps after AVG/Avast flagged it as false positive. Normal?
I have a Samsung s22. Yesterday AVG flagged an "Android system" app as malware with no ability to disable it. Appears it happened to many people. AVG looked into it and declared it to be a false positive on their end (https://support.avg.com/answers?id=9065p000000kHo1). However, I'm still a bit conf...
I have a Samsung s22. Yesterday AVG flagged an "Android system" app as malware with no ability to disable it. Appears it happened to many people. AVG looked into it and declared it to be a false positive on their end (https://support.avg.com/answers?id=9065p000000kHo1) . However, I'm still a bit confused about why there are two Android system apps showing? Is this normal? (One spelled "Android System" and one "Android system"). Android system one has no option to disable it and is only 168kb in size. Thank you all enter image description here
PaulM111 (31 rep)
Jan 6, 2023, 08:17 PM • Last activity: Jan 6, 2023, 09:55 PM
1 votes
0 answers
177 views
Prevent AdColony advertisements automatically opening the playstore?
Basically, AdColony is an advertising provider for games, however they use predatory tactics, one of these being an automatic redirect to the playstore the second the ad finishes without any clicking or interaction. Is there a way I could stop getting these playstore opens?
Basically, AdColony is an advertising provider for games, however they use predatory tactics, one of these being an automatic redirect to the playstore the second the ad finishes without any clicking or interaction. Is there a way I could stop getting these playstore opens?
Ondrashek06 (131 rep)
Sep 19, 2022, 03:10 PM • Last activity: Dec 20, 2022, 08:11 AM
2 votes
0 answers
57 views
Trojan downloaded
Not sure this is the best place to ask but I'll give it a shot... My son clicked a link in a spam message on my phone which downloaded Android/trojan.downloader.agent Instantly kaspersky and malwarebytes spotted the trojan and quarantined My question is... Should this mean that the virus has been ad...
Not sure this is the best place to ask but I'll give it a shot... My son clicked a link in a spam message on my phone which downloaded Android/trojan.downloader.agent Instantly kaspersky and malwarebytes spotted the trojan and quarantined My question is... Should this mean that the virus has been adequately dealt with or is there a chance that it may still remain on the system?
SupGen (121 rep)
Oct 11, 2022, 09:55 PM
0 votes
0 answers
80 views
Chrome (Android) auto download pdf every week (is it a virus ?)
A year ago i've been fighting against an hacker that had access to a lot of my accounts (not very difficult since my passwords were record with google account). Somehow he archives to get the codes from 2FA on my phone. I guess he had infected my phone as well (dunno if he infected my PC or my phone...
A year ago i've been fighting against an hacker that had access to a lot of my accounts (not very difficult since my passwords were record with google account). Somehow he archives to get the codes from 2FA on my phone. I guess he had infected my phone as well (dunno if he infected my PC or my phone first and if he archieve to infect both threw one). I decided to reinstall android. Now as a 2FA i'm using authenticator app from google. Since that time, I also reinstall windows on my PC to be 100% safe. I obviously changed all my passwords since that time, multiple times. I received a month ago an alert from microsoft saying that someone break in (again). So I changed the passwords (again). Im weakly checking connexions. Hackers are still trying but for now they just could not break the password. But more recently, I've notice chrome app autodownloading a PDF once or two a week. I dont have any tab open to the domain where it comes from, it never ask where i want to store the file even when I enable this parameters. The file is called **reaching-all-learners.pdf** and come from this link : https://education-static.apple.com/product/reaching-all-learners.pdf **BE CAREFUL ABOUT THE LINK** since I dont really know what is the matter with this site and how legit it is or not. I'm wondering if any of you, with cyber knowledge could tell me what is going on and how I can fix it so it stop download this file again and over again. I've ben looking on internet and no one looks having the issue. I have run couples of antimalware process (malwarebytes and the default security app from android) and nothing have been founded. Thanks for taking the time to read me .
VOGAN (1 rep)
Aug 1, 2022, 12:14 PM
1 votes
0 answers
228 views
What to do if malware not gone after complete factory reset?
I have a virus in my Samsung galaxy s21a, and even after a complete factory reset phone doesn't recover. What would be other solutions to fix it?
I have a virus in my Samsung galaxy s21a, and even after a complete factory reset phone doesn't recover. What would be other solutions to fix it?
Audrius (11 rep)
May 25, 2022, 02:57 PM
0 votes
0 answers
28 views
this isn't a supported file type - Images, movies, pdf files, voice messages cannot be opened after a while
A friend has a Nokia 7.2 (updated to Android 11) which has a problem opening images, movies, pdf files. When she makes or receives a photo or movie, she can open it normally, but after a while she gets the following message: this isn't a supported file type. So it looks like an app scans the system...
A friend has a Nokia 7.2 (updated to Android 11) which has a problem opening images, movies, pdf files. When she makes or receives a photo or movie, she can open it normally, but after a while she gets the following message: this isn't a supported file type. So it looks like an app scans the system for media, then does something to it so it can't be viewed again. She did a factory reset, but the problem persists. Do you have any ideas how this works? Is this a virus? Did it infect the factory-image? How can this be fixed?
SPRBRN (760 rep)
May 10, 2022, 05:46 PM
7 votes
1 answers
1036 views
Can I get a virus from a browser that doesn't have storage permission?
I am using Android 8.1.0 on an LML212VL LG Tracfone (more info at bottom). I downloaded the "DuckDuckGo Privacy Browser" app through the Google "Play Store" app. (This is the link I get when I click "Share" and "Copy to clipboard": https://play.google.com/store/apps/details?id=com.duckduckgo.mobile....
I am using Android 8.1.0 on an LML212VL LG Tracfone (more info at bottom). I downloaded the "DuckDuckGo Privacy Browser" app through the Google "Play Store" app. (This is the link I get when I click "Share" and "Copy to clipboard": https://play.google.com/store/apps/details?id=com.duckduckgo.mobile.android .) Later I went into the "Settings" app, and under "Apps & notifications", "App permissions", "Storage", I can see that DuckDuckGo's storage permission is disabled. (I don't remember if it was that way by default or if I did that, but I've kept it that way for most of the time I've had the app.) Also, within the "Settings" of the DuckDuckGo app, accessed via the menu at the top right, I have "Automatically Clear..." set to "Tabs and Data" and "Clear on" set to "App exit only". Basically, I hoped to have a browswer set up so that it is not able to download anything that it doesn't delete on app exit, without asking for my permission in a specific way that I recognize. (Normally when I try to make an app do something I've denied it the permission to do, a certain type of pop-up appears, and I've made sure never to check the "Don't ask this again" box. When I try to download something in this DuckDuckGo app, the pop-up says "Allow **DuckDuckGo** to access photos, media, and files on your device?", and when I tap "DENY", a banner appears at the bottom of the screen saying "Downloading requires storage permission".) One problem, though, is that it clearly does keep a cache of some kind, since I can see it in the "Settings" app, under "Apps & notifications", "App info", "DuckDuckGo", "Storage". I sometimes delete the "cache". I think website language preferences and maybe autocomplete suggestions are kept in this "cache". I can also delete the "data" that the app keeps, but that undoes the settings I set within the app, tries to make me go through the introductory tutorial when I open it, and randomly tell me about how many things trying to track me it blocked ad it does the first time or so you use the app, so I don't do this as often. **My question is this: Does this mean that I can't possibly get a virus from a website through this app, even if I click on something suspicious, as long as I don't enable these permissions? Alternatively, does it mean that any virus I do get would be trapped 'within' the app in some sense and disappear when I close the app, when I clear the cache and data in "Settings", or at least when I delete and reinstall the app?** What made me worry about this is an event that happened some months ago while I was using this browser. I clicked on a link to some website or something, but it had apparently been replaced, and a pop-up appeared telling me that malware had been detected on my computer and that I needed to download something to scan for it and get rid of it or something. I didn't trust this at all, but for some reason I clicked "ok" to close the pop-up (I think I thought I needed to do that to close the tab without closing the app). As soon as I did this, the pop-up disappeared, and a loading bar appeared on the screen behind it with some text saying what it was supposedly doing (I think downloading something). I freaked out and immediately closed the whole app (which, remember, should clear tabs and data) and/or took the battery out of my phone. I think I looked some stuff up on the internet using another device, but it didn't give me much peace, except telling me that what had just happened to me was a well-known scam to make people download malware and maybe suggesting that I use some supposedly more trustworthy malware-scanning app (I don't remember if I did, but, if so, I don't think it told me anything). When I turned my phone back on, I think I disabled "Wi-Fi" (and "Mobile data", but that was probably already disabled) in the "Settings" app, under "Network & internet"; then, I went into "Apps & notifications", "App info", "DuckDuckGo", and then probably clicked "Force Stop" and then "Uninstall", agreed that I really wanted to uninstall it, probably saw that it disappeared from both the "App info" list and my "App locker" (or whatever the place where clickable icons for every app are and that is down from the home screen is called), then (after re-enabling internet) reinstalled it through the Google "Play Store" app. I don't have any particular reason to THINK I have malware on my phone (at least not anything that isn't usually on an Android phone), but there's not any way I understand that I can really be sure, except that I could be fairly sure if I factory reset my phone, and I don't want to do that. Thus, I'm wondering if I can at least be sure on logical grounds that I don't have any malware from that particular encounter or from any other site I went to with that browser. As promised in the first paragraph here is the "more info at bottom" about my phone: In the "Settings" app under "System", "About phone", "Hardware info": - "Model number": "LML212VL" ("Up time", "S/N", "Wi-fi MAC address", and "Bluetooth address" are also given, but I don't think they would be helpful.) Under ... "About phone", "Software info": - "Android version": "8.1.0" - "Android security patch level": "June 1, 2020" - "Baseband version": "MPSS.JO.3.0.c12-00036-8937_GENNS_PACK-1.229846.1.264977.1" - "Kernel version": "3.18.71" - "Build number": "OPM1.171019.019" - "Software version": "L212VL16g" I can't guarantee that's what they were when the scare a few months ago I mentioned was, but it is what it is now, as of February 15, 2022.
Mr. Nichan (173 rep)
Feb 15, 2022, 10:55 AM • Last activity: Feb 17, 2022, 12:11 AM
1 votes
0 answers
967 views
Remove multiple viruses on Samsung A50
On my Samsung A50, it detects: - Android/Generic.S.7F619A!tr - Android/Generic.S.6C6770!tr - Android/Faketoken.SNT!tr - Trojan.Dropper.AndroidOS.Hqwar.bb - Android Generic.S.11954!tr No antivirus or anti-malware can remove them. How to remove them?
On my Samsung A50, it detects: - Android/Generic.S.7F619A!tr - Android/Generic.S.6C6770!tr - Android/Faketoken.SNT!tr - Trojan.Dropper.AndroidOS.Hqwar.bb - Android Generic.S.11954!tr No antivirus or anti-malware can remove them. How to remove them?
Ally Liz (11 rep)
Sep 24, 2021, 07:40 AM • Last activity: Feb 14, 2022, 12:01 AM
0 votes
1 answers
527 views
A malicious file keeps appearing on my phone even if I have formatted it (1_unit_15x15_3_goldenFmt)
Some days ago, a keylogger was put in my phone by a hacker, and my phone got infected. After having formatted the phone, there is a file that keeps appearing on my phone and has not been deleted. The name of the file is `1_unit_15x15_3_goldenFmt` and this is the content of the file: ``` SensorGolden...
Some days ago, a keylogger was put in my phone by a hacker, and my phone got infected. After having formatted the phone, there is a file that keeps appearing on my phone and has not been deleted. The name of the file is 1_unit_15x15_3_goldenFmt and this is the content of the file:
SensorGoldenCalTable:{   // SensorGoldenCalTable
   PixId:    3,
   SlimLscType:    0,
   Width:    0,
   Height:    0,
   OffsetX:    0,
   OffsetY:    0,
   TblSize:    0,
   IspLSCReg:    {0, 0xd048d035, 0, 0x00480041, 0},
   GainTable:    {

        0xd7, 0x73, 0xcb, 0x64, 0x84, 0x64, 0x3d, 0x63, 0x84, 0x61, 0xef, 0x55, 0x50, 0x55, 0xc9, 0x54, 
        0x6b, 0x52, 0x2d, 0x49, 0x5e, 0x48, 0x21, 0x48, 0x7e, 0x48, 0x76, 0x40, 0xb4, 0x3f, 0x7d, 0x3f, 
        0x6e, 0x41, 0x84, 0x3a, 0xa7, 0x39, 0xd1, 0x39, 0x71, 0x3c, 0xa8, 0x36, 0xae, 0x35, 0xdd, 0x35, 
        0x80, 0x39, 0x66, 0x34, 0x66, 0x33, 0xb9, 0x33, 0x5f, 0x38, 0x91, 0x33, 0x83, 0x32, 0xe6, 0x32, 
        0x89, 0x39, 0x47, 0x34, 0x3d, 0x33, 0x6e, 0x33, 0x58, 0x3c, 0x78, 0x36, 0x95, 0x35, 0x9b, 0x35, 
        0x77, 0x41, 0x3c, 0x3a, 0x5d, 0x39, 0x4b, 0x39, 0xd2, 0x47, 0x02, 0x40, 0x25, 0x3f, 0x13, 0x3f, 
        0x69, 0x51, 0x30, 0x48, 0x58, 0x47, 0x4e, 0x47, 0x50, 0x5f, 0x31, 0x54, 0x51, 0x53, 0xfa, 0x52, 
        0xb0, 0x72, 0x51, 0x64, 0x96, 0x63, 0xde, 0x62, 0xf5, 0x69, 0x62, 0x5c, 0xef, 0x5b, 0x4b, 0x5b, 
        0xb1, 0x59, 0x63, 0x4f, 0xdb, 0x4e, 0x56, 0x4e, 0x91, 0x4c, 0x02, 0x44, 0x6e, 0x43, 0x48, 0x43, 
        0x2e, 0x43, 0xf1, 0x3b, 0x44, 0x3b, 0x42, 0x3b, 0x57, 0x3c, 0x47, 0x36, 0x86, 0x35, 0xb3, 0x35, 
        0x8b, 0x37, 0x7d, 0x32, 0xb7, 0x31, 0xcf, 0x31, 0xb2, 0x34, 0x5a, 0x30, 0x82, 0x2f, 0x9f, 0x2f, 
        0xa7, 0x33, 0x99, 0x2f, 0xc8, 0x2e, 0xe1, 0x2e, 0xba, 0x34, 0x5f, 0x30, 0x89, 0x2f, 0x92, 0x2f, 
        0x70, 0x37, 0x7a, 0x32, 0xad, 0x31, 0xdf, 0x31, 0x33, 0x3c, 0x18, 0x36, 0x4e, 0x35, 0x58, 0x35, 
        0x8f, 0x42, 0x58, 0x3b, 0xc3, 0x3a, 0xbf, 0x3a, 0x61, 0x4b, 0xf3, 0x42, 0x62, 0x42, 0x11, 0x42, 
        0xdd, 0x57, 0xb2, 0x4d, 0x1b, 0x4d, 0xc2, 0x4c, 0x55, 0x66, 0x45, 0x5a, 0xc3, 0x59, 0x1c, 0x59, 
        0xa9, 0x5f, 0x09, 0x54, 0xc5, 0x53, 0xa2, 0x53, 0x03, 0x52, 0x8a, 0x48, 0x46, 0x48, 0x1c, 0x48, 
        0xf9, 0x45, 0x12, 0x3e, 0xb1, 0x3d, 0x73, 0x3d, 0x30, 0x3d, 0xaf, 0x36, 0x38, 0x36, 0x10, 0x36, 
        0xaf, 0x36, 0x80, 0x31, 0xf6, 0x30, 0xd6, 0x30, 0x04, 0x32, 0xf2, 0x2d, 0x48, 0x2d, 0x4b, 0x2d, 
        0x1d, 0x2f, 0xe2, 0x2b, 0x45, 0x2b, 0x52, 0x2b, 0x08, 0x2e, 0x28, 0x2b, 0x7b, 0x2a, 0x8a, 0x2a, 
        0x09, 0x2f, 0xd3, 0x2b, 0x2b, 0x2b, 0x47, 0x2b, 0xcf, 0x31, 0xec, 0x2d, 0x52, 0x2d, 0x60, 0x2d, 
        0x4b, 0x36, 0x5b, 0x31, 0xd5, 0x30, 0xd1, 0x30, 0x6e, 0x3c, 0x51, 0x36, 0xd2, 0x35, 0xcf, 0x35, 
        0xf5, 0x44, 0x4d, 0x3d, 0xdf, 0x3c, 0xc2, 0x3c, 0x46, 0x50, 0x2b, 0x47, 0xdb, 0x46, 0xc2, 0x46, 
        0xea, 0x5c, 0xe7, 0x51, 0xa2, 0x51, 0x23, 0x51, 0x1c, 0x58, 0x86, 0x4d, 0xc5, 0x4d, 0x21, 0x4d, 
        0x25, 0x4c, 0x4f, 0x43, 0x3d, 0x43, 0xe1, 0x42, 0xd4, 0x40, 0xa4, 0x39, 0x82, 0x39, 0x1d, 0x39, 
        0x48, 0x38, 0xc5, 0x32, 0x7e, 0x32, 0x3b, 0x32, 0xed, 0x31, 0xb8, 0x2d, 0x57, 0x2d, 0x3b, 0x2d, 
        0x26, 0x2d, 0x23, 0x2a, 0xb6, 0x29, 0xb3, 0x29, 0x48, 0x2a, 0x0b, 0x28, 0x9d, 0x27, 0x9c, 0x27, 
        0x2a, 0x29, 0x4c, 0x27, 0xd8, 0x26, 0xd9, 0x26, 0x0a, 0x2a, 0xf5, 0x27, 0x83, 0x27, 0x9d, 0x27, 
        0xe8, 0x2c, 0x04, 0x2a, 0x95, 0x29, 0xac, 0x29, 0x80, 0x31, 0x8c, 0x2d, 0x24, 0x2d, 0x2b, 0x2d, 
        0xac, 0x37, 0x63, 0x32, 0x13, 0x32, 0x06, 0x32, 0xc0, 0x3f, 0x06, 0x39, 0xc5, 0x38, 0xa0, 0x38, 
        0x5f, 0x4a, 0x3a, 0x42, 0x2d, 0x42, 0xd7, 0x41, 0xb4, 0x55, 0xeb, 0x4b, 0xcf, 0x4b, 0x5c, 0x4b, 
        0x1c, 0x53, 0x47, 0x49, 0x75, 0x49, 0x02, 0x49, 0xa0, 0x47, 0xa4, 0x3f, 0xb0, 0x3f, 0x2b, 0x3f, 
        0xaa, 0x3c, 0x5e, 0x36, 0x6d, 0x36, 0xf3, 0x35, 0x66, 0x34, 0xc2, 0x2f, 0xa5, 0x2f, 0x59, 0x2f, 
        0xef, 0x2d, 0xb8, 0x2a, 0x86, 0x2a, 0x61, 0x2a, 0x5a, 0x29, 0x2a, 0x27, 0xec, 0x26, 0xe3, 0x26, 
        0x63, 0x26, 0x08, 0x25, 0xc4, 0x24, 0xc7, 0x24, 0x4e, 0x25, 0x44, 0x24, 0xf0, 0x23, 0x05, 0x24, 
        0x3e, 0x26, 0xeb, 0x24, 0x93, 0x24, 0xaa, 0x24, 0xf8, 0x28, 0xfb, 0x26, 0xb1, 0x26, 0xbe, 0x26, 
        0x84, 0x2d, 0x79, 0x2a, 0x3a, 0x2a, 0x3d, 0x2a, 0xe1, 0x33, 0x52, 0x2f, 0x3b, 0x2f, 0x17, 0x2f, 
        0xe2, 0x3b, 0xc2, 0x35, 0xaa, 0x35, 0xb5, 0x35, 0x2e, 0x46, 0x9e, 0x3e, 0x97, 0x3e, 0x8b, 0x3e, 
        0x68, 0x50, 0xb7, 0x47, 0xe7, 0x47, 0x96, 0x47, 0x4b, 0x4f, 0x4a, 0x46, 0x99, 0x46, 0x45, 0x46, 
        0x4b, 0x44, 0xf7, 0x3c, 0x22, 0x3d, 0xd3, 0x3c, 0xcb, 0x39, 0x1b, 0x34, 0x27, 0x34, 0xe9, 0x33, 
        0x82, 0x31, 0x86, 0x2d, 0x9b, 0x2d, 0x4d, 0x2d, 0x0f, 0x2b, 0x8f, 0x28, 0x7a, 0x28, 0x58, 0x28, 
        0x6a, 0x26, 0xe9, 0x24, 0xd0, 0x24, 0xca, 0x24, 0x96, 0x23, 0xd5, 0x22, 0xa4, 0x22, 0xaa, 0x22, 
        0x8f, 0x22, 0x06, 0x22, 0xd9, 0x21, 0xe7, 0x21, 0x6b, 0x23, 0xac, 0x22, 0x7f, 0x22, 0x8e, 0x22, 
        0x11, 0x26, 0xbe, 0x24, 0x93, 0x24, 0xb3, 0x24, 0x7e, 0x2a, 0x2d, 0x28, 0x16, 0x28, 0x25, 0x28, 
        0xee, 0x30, 0x23, 0x2d, 0x1f, 0x2d, 0x03, 0x2d, 0x0a, 0x39, 0x77, 0x33, 0x92, 0x33, 0x5b, 0x33, 
        0x49, 0x43, 0x0e, 0x3c, 0x26, 0x3c, 0xd6, 0x3b, 0xaa, 0x4d, 0xc5, 0x44, 0x16, 0x45, 0x9a, 0x44, 
        0x1f, 0x4d, 0x91, 0x44, 0xf7, 0x44, 0x82, 0x44, 0xae, 0x42, 0x91, 0x3b, 0xe5, 0x3b, 0xab, 0x3b, 
        0x18, 0x38, 0xac, 0x32, 0xdc, 0x32, 0x95, 0x32, 0x91, 0x2f, 0x04, 0x2c, 0x24, 0x2c, 0xe9, 0x2b, 
        0x2b, 0x29, 0x1c, 0x27, 0x20, 0x27, 0x04, 0x27, 0x9f, 0x24, 0x8d, 0x23, 0x7c, 0x23, 0x87, 0x23, 
        0xcd, 0x21, 0x5d, 0x21, 0x48, 0x21, 0x69, 0x21, 0xbe, 0x20, 0x8e, 0x20, 0x7a, 0x20, 0x92, 0x20, 
        0x9a, 0x21, 0x41, 0x21, 0x29, 0x21, 0x3d, 0x21, 0x29, 0x24, 0x47, 0x23, 0x3a, 0x23, 0x43, 0x23, 
        0x96, 0x28, 0xd0, 0x26, 0xc6, 0x26, 0xb4, 0x26, 0xf3, 0x2e, 0xb4, 0x2b, 0xd1, 0x2b, 0xb3, 0x2b, 
        0x0c, 0x37, 0x11, 0x32, 0x3f, 0x32, 0x09, 0x32, 0x00, 0x41, 0x7c, 0x3a, 0xcf, 0x3a, 0x7f, 0x3a, 
        0xb4, 0x4a, 0x18, 0x43, 0x75, 0x43, 0x08, 0x43, 0x96, 0x4c, 0xbc, 0x43, 0x4f, 0x44, 0xff, 0x43, 
        0x04, 0x42, 0xec, 0x3a, 0x59, 0x3b, 0xf8, 0x3a, 0x41, 0x37, 0x08, 0x32, 0x58, 0x32, 0x11, 0x32, 
        0xd4, 0x2e, 0x6e, 0x2b, 0xbb, 0x2b, 0x84, 0x2b, 0x50, 0x28, 0x83, 0x26, 0xa8, 0x26, 0x98, 0x26, 
        0xc7, 0x23, 0xf3, 0x22, 0x00, 0x23, 0x06, 0x23, 0xfb, 0x20, 0xb6, 0x20, 0xb9, 0x20, 0xc2, 0x20, 
        0x0b, 0x20, 0x08, 0x20, 0x05, 0x20, 0x04, 0x20, 0xd6, 0x20, 0xa9, 0x20, 0xa5, 0x20, 0xb2, 0x20, 
        0x59, 0x23, 0xb4, 0x22, 0xae, 0x22, 0xb2, 0x22, 0xc1, 0x27, 0x2d, 0x26, 0x3f, 0x26, 0x44, 0x26, 
        0x16, 0x2e, 0x13, 0x2b, 0x44, 0x2b, 0x26, 0x2b, 0x1e, 0x36, 0x73, 0x31, 0xb1, 0x31, 0x6d, 0x31, 
        0x15, 0x40, 0xb4, 0x39, 0x16, 0x3a, 0xd1, 0x39, 0xd5, 0x49, 0x3f, 0x42, 0xcf, 0x42, 0x39, 0x42, 
        0x4e, 0x4c, 0xcf, 0x43, 0x75, 0x44, 0x0a, 0x44, 0x97, 0x41, 0xd4, 0x3a, 0x5a, 0x3b, 0xf4, 0x3a, 
        0x1f, 0x37, 0x2c, 0x32, 0x89, 0x32, 0x26, 0x32, 0xe1, 0x2e, 0x9a, 0x2b, 0xe2, 0x2b, 0x9d, 0x2b, 
        0x67, 0x28, 0x9a, 0x26, 0xc5, 0x26, 0xb9, 0x26, 0xea, 0x23, 0x10, 0x23, 0x33, 0x23, 0x2c, 0x23, 
        0x2e, 0x21, 0xed, 0x20, 0xfc, 0x20, 0x0c, 0x21, 0x34, 0x20, 0x2d, 0x20, 0x36, 0x20, 0x49, 0x20, 
        0x0b, 0x21, 0xdb, 0x20, 0xe8, 0x20, 0xf1, 0x20, 0x88, 0x23, 0xd3, 0x22, 0xec, 0x22, 0xe8, 0x22, 
        0xeb, 0x27, 0x4c, 0x26, 0x73, 0x26, 0x6b, 0x26, 0x48, 0x2e, 0x3b, 0x2b, 0x8e, 0x2b, 0x50, 0x2b, 
        0x99, 0x36, 0xa2, 0x31, 0xf8, 0x31, 0xcf, 0x31, 0xbb, 0x40, 0x16, 0x3a, 0x71, 0x3a, 0x39, 0x3a, 
        0x90, 0x4a, 0xa2, 0x42, 0x2b, 0x43, 0xc4, 0x42, 0xeb, 0x4d, 0x27, 0x45, 0xd1, 0x45, 0x34, 0x45, 
        0x18, 0x43, 0xd7, 0x3b, 0x5a, 0x3c, 0xe9, 0x3b, 0x6a, 0x38, 0x15, 0x33, 0x81, 0x33, 0x2b, 0x33, 
        0x0c, 0x30, 0x6d, 0x2c, 0xbb, 0x2c, 0x95, 0x2c, 0x8f, 0x29, 0x6b, 0x27, 0xa8, 0x27, 0x8a, 0x27, 
        0xf3, 0x24, 0xe4, 0x23, 0x04, 0x24, 0x07, 0x24, 0x41, 0x22, 0xcf, 0x21, 0xdd, 0x21, 0xf4, 0x21, 
        0x49, 0x21, 0x16, 0x21, 0x2a, 0x21, 0x30, 0x21, 0x09, 0x22, 0xa6, 0x21, 0xbe, 0x21, 0xc4, 0x21, 
        0x97, 0x24, 0xab, 0x23, 0xc8, 0x23, 0xcd, 0x23, 0x06, 0x29, 0x29, 0x27, 0x65, 0x27, 0x4d, 0x27, 
        0x87, 0x2f, 0x20, 0x2c, 0x77, 0x2c, 0x37, 0x2c, 0x96, 0x37, 0x83, 0x32, 0x08, 0x33, 0x9a, 0x32, 
        0xa7, 0x41, 0x00, 0x3b, 0x8a, 0x3b, 0x23, 0x3b, 0x5c, 0x4b, 0xb3, 0x43, 0x60, 0x44, 0xa9, 0x43, 
        0x75, 0x51, 0x7b, 0x47, 0x37, 0x48, 0x9b, 0x47, 0xa2, 0x45, 0xe7, 0x3d, 0x73, 0x3e, 0x1b, 0x3e, 
        0xb4, 0x3a, 0xd1, 0x34, 0x2e, 0x35, 0xe2, 0x34, 0x20, 0x32, 0x1c, 0x2e, 0x74, 0x2e, 0x28, 0x2e, 
        0xad, 0x2b, 0x0b, 0x29, 0x47, 0x29, 0x27, 0x29, 0x11, 0x27, 0x8f, 0x25, 0xad, 0x25, 0xad, 0x25, 
        0x53, 0x24, 0x7c, 0x23, 0x95, 0x23, 0xa3, 0x23, 0x38, 0x23, 0xb4, 0x22, 0xc4, 0x22, 0xce, 0x22, 
        0x05, 0x24, 0x45, 0x23, 0x61, 0x23, 0x5b, 0x23, 0xa1, 0x26, 0x57, 0x25, 0x73, 0x25, 0x6e, 0x25, 
        0x2e, 0x2b, 0xe0, 0x28, 0x10, 0x29, 0xe9, 0x28, 0x9d, 0x31, 0xc0, 0x2d, 0x19, 0x2e, 0xc7, 0x2d, 
        0xad, 0x39, 0x3e, 0x34, 0xbe, 0x34, 0x4b, 0x34, 0x0b, 0x44, 0xee, 0x3c, 0x88, 0x3d, 0x17, 0x3d, 
        0x20, 0x4e, 0xd5, 0x45, 0x96, 0x46, 0xe6, 0x45, 0xc5, 0x54, 0x22, 0x4b, 0x1f, 0x4c, 0x5b, 0x4b, 
        0xd8, 0x48, 0xf7, 0x40, 0xa4, 0x41, 0x29, 0x41, 0xc1, 0x3d, 0x7a, 0x37, 0xeb, 0x37, 0x94, 0x37, 
        0x55, 0x35, 0x9d, 0x30, 0xeb, 0x30, 0x9c, 0x30, 0xe5, 0x2e, 0x8f, 0x2b, 0xc0, 0x2b, 0x92, 0x2b, 
        0x2d, 0x2a, 0xf4, 0x27, 0x1b, 0x28, 0x12, 0x28, 0x5d, 0x27, 0xeb, 0x25, 0xfc, 0x25, 0xfd, 0x25, 
        0x50, 0x26, 0x28, 0x25, 0x3b, 0x25, 0x2a, 0x25, 0x12, 0x27, 0xc1, 0x25, 0xdb, 0x25, 0xd1, 0x25, 
        0xc7, 0x29, 0xd8, 0x27, 0xeb, 0x27, 0xd4, 0x27, 0x5e, 0x2e, 0x50, 0x2b, 0x8a, 0x2b, 0x43, 0x2b, 
        0xb5, 0x34, 0x38, 0x30, 0x9b, 0x30, 0x2f, 0x30, 0xe5, 0x3c, 0xd7, 0x36, 0x42, 0x37, 0xcb, 0x36, 
        0x8a, 0x47, 0xed, 0x3f, 0x70, 0x40, 0x01, 0x40, 0x14, 0x52, 0x53, 0x49, 0xf7, 0x49, 0xf0, 0x48, 
        0x5b, 0x5b, 0xf5, 0x4f, 0x05, 0x51, 0x5f, 0x50, 0x1c, 0x4e, 0x3c, 0x45, 0xcc, 0x45, 0x44, 0x45, 
        0x0b, 0x42, 0x29, 0x3b, 0x92, 0x3b, 0x11, 0x3b, 0x7c, 0x39, 0xf1, 0x33, 0x47, 0x34, 0xfa, 0x33, 
        0x21, 0x33, 0xd3, 0x2e, 0x06, 0x2f, 0xda, 0x2e, 0x60, 0x2e, 0x43, 0x2b, 0x62, 0x2b, 0x42, 0x2b, 
        0x79, 0x2b, 0x31, 0x29, 0x3f, 0x29, 0x1b, 0x29, 0x5e, 0x2a, 0x67, 0x28, 0x6d, 0x28, 0x58, 0x28, 
        0x27, 0x2b, 0xf3, 0x28, 0x0f, 0x29, 0xea, 0x28, 0xe2, 0x2d, 0xfc, 0x2a, 0x1a, 0x2b, 0xdd, 0x2a, 
        0x82, 0x32, 0x85, 0x2e, 0xcc, 0x2e, 0x54, 0x2e, 0xd5, 0x38, 0x75, 0x33, 0xda, 0x33, 0x4f, 0x33, 
        0x1e, 0x41, 0x59, 0x3a, 0xd7, 0x3a, 0x1d, 0x3a, 0x49, 0x4c, 0x17, 0x44, 0xa3, 0x44, 0xd0, 0x43, 
        0x88, 0x57, 0x03, 0x4e, 0xc5, 0x4e, 0xa7, 0x4d, 0x87, 0x63, 0x15, 0x57, 0xd6, 0x57, 0xf7, 0x56, 
        0x76, 0x54, 0xf4, 0x4a, 0x7f, 0x4b, 0xdb, 0x4a, 0xc5, 0x47, 0x10, 0x40, 0x75, 0x40, 0xf2, 0x3f, 
        0xb5, 0x3e, 0x55, 0x38, 0xb6, 0x38, 0x34, 0x38, 0x4b, 0x38, 0xf4, 0x32, 0x27, 0x33, 0xe0, 0x32, 
        0x92, 0x33, 0x6a, 0x2f, 0x84, 0x2f, 0x46, 0x2f, 0xb9, 0x30, 0x3d, 0x2d, 0x40, 0x2d, 0x22, 0x2d, 
        0x79, 0x2f, 0x6d, 0x2c, 0x71, 0x2c, 0x4d, 0x2c, 0x3b, 0x30, 0x03, 0x2d, 0x16, 0x2d, 0xd7, 0x2c, 
        0xfe, 0x32, 0x17, 0x2f, 0x3c, 0x2f, 0xe3, 0x2e, 0x72, 0x37, 0x95, 0x32, 0xd3, 0x32, 0x65, 0x32, 
        0xc9, 0x3d, 0xc8, 0x37, 0x25, 0x38, 0x6e, 0x37, 0x9d, 0x46, 0x2d, 0x3f, 0xb5, 0x3f, 0xec, 0x3e, 
        0x88, 0x52, 0x90, 0x49, 0x2e, 0x4a, 0x39, 0x49, 0x3b, 0x5f, 0xaa, 0x54, 0x8b, 0x55, 0x1e, 0x54, 
        0x41, 0x6d, 0xb9, 0x5f, 0x9d, 0x60, 0x43, 0x5f, 0xe2, 0x5c, 0xdb, 0x51, 0x88, 0x52, 0x9a, 0x51, 
        0xaf, 0x4e, 0xee, 0x45, 0x5f, 0x46, 0x90, 0x45, 0x00, 0x45, 0x9d, 0x3d, 0xca, 0x3d, 0x54, 0x3d, 
        0x33, 0x3e, 0xc6, 0x37, 0xfa, 0x37, 0x96, 0x37, 0x1c, 0x39, 0xdd, 0x33, 0x07, 0x34, 0xae, 0x33, 
        0x4d, 0x36, 0xb1, 0x31, 0xbc, 0x31, 0x66, 0x31, 0xe9, 0x34, 0xd0, 0x30, 0xd7, 0x30, 0xa4, 0x30, 
        0xa8, 0x35, 0x59, 0x31, 0x66, 0x31, 0x2d, 0x31, 0x63, 0x38, 0x7b, 0x33, 0x9c, 0x33, 0x3e, 0x33, 
        0xe3, 0x3c, 0x30, 0x37, 0x6f, 0x37, 0xd7, 0x36, 0xb9, 0x43, 0xba, 0x3c, 0x25, 0x3d, 0x6a, 0x3c, 
        0xec, 0x4c, 0xa1, 0x44, 0x2c, 0x45, 0x4b, 0x44, 0x12, 0x5a, 0x29, 0x50, 0xc9, 0x50, 0x8b, 0x4f, 
        0x27, 0x69, 0x40, 0x5d, 0xeb, 0x5d, 0x68, 0x5c, 
   },
},
I don't know if it has happened to anyone here, but I'd be grateful if someone could tell me if this is a threat and I should worry about it or not.
Busto (3 rep)
Jan 5, 2022, 03:23 PM • Last activity: Jan 6, 2022, 07:09 AM
0 votes
0 answers
158 views
Built-in Trojan?
So I bought this tablet from a little-known company called iGet. The tablet was brand new and all the apps you see on the following screen came with the tablet or were installed from the Play store (Camera, Clock, FM Radio, and Sound Recorder are built-in). [![apps on the tablet][1m]][1] The model o...
So I bought this tablet from a little-known company called iGet. The tablet was brand new and all the apps you see on the following screen came with the tablet or were installed from the Play store (Camera, Clock, FM Radio, and Sound Recorder are built-in). apps on the tablet The model of the tablet is Smart W103. It runs Android 9 Pie. The problem is that ESET finds a trojan as part of the OS. Or could it be a false positive? AVG was not able to detect it. **TrojanDropper.Agent.DHC** is the culprit in question. It's in **MtkSettings.apk** as part of settings. ESET scan Some other info: When you press **Build number** in settings several times, you get developer as usual. However, pressing **Custom build version** several times reveals the **Device info** option. Custom build version There it's possible to get to several advanced features: - pressing **ProductName info** several times opens **MTKLogger** - pressing **LCM info** several times opens **EngineerMode** - pressing **TP driver** opens **Hardware Check** Device info MTKLogger EM HC Also "spam" links open in Chrome randomly on their own from time to time. What's up with that? See attached screenshot for reference. spam
IJK_Principle (1 rep)
Nov 28, 2021, 08:11 PM • Last activity: Nov 29, 2021, 04:04 AM
1 votes
1 answers
377 views
I connected my phone with usb debugging to an infected computer
I have a computer that used to have malware. During the time it had malware, I connected my phone to it with usb debugging (was unaware of the malware). I have no signs of malware but I'm still worried about the virus being able to propogate to my phone and stay hidden. Do I 1. Leave it 2. Factory r...
I have a computer that used to have malware. During the time it had malware, I connected my phone to it with usb debugging (was unaware of the malware). I have no signs of malware but I'm still worried about the virus being able to propogate to my phone and stay hidden. Do I 1. Leave it 2. Factory reset my phone 3. Reflash the phone Threat model is a regular computer user. I also probably enabled usb tethering or other stuff that could have helped the malware propagate.
computeruser6789 (11 rep)
Nov 11, 2021, 04:03 PM • Last activity: Nov 11, 2021, 07:56 PM
0 votes
0 answers
186 views
Malware propgating through usb debugging
Summary: Computer probably had malware. Didn't know. Connected phone to use as midi. Could have turned on usb debugging or usb tethering to see if that helped without knowing what it does as I was an idiot at the time. 4 months or so has passed. No evidence of malware. Should I bother with formattin...
Summary: Computer probably had malware. Didn't know. Connected phone to use as midi. Could have turned on usb debugging or usb tethering to see if that helped without knowing what it does as I was an idiot at the time. 4 months or so has passed. No evidence of malware. Should I bother with formatting it? Questions: 1. Should I bother with formatting it? 2. Is it even possible for malware to exist without any indicators? Extra info: Did antivirus scans with Avast, Malwarebytes, Kaspersky and Google Play Protect. None of them found anything.
user362700
Nov 3, 2021, 06:28 AM • Last activity: Nov 3, 2021, 06:45 AM
1 votes
0 answers
253 views
Can any virus be removed easily on non-rooted phones?
I know that all android devices are hackable whether they are rooted or not. I have general idea of protecting an android phone (or staying safe with android device) from any viruses. What I want to know is curing an android phone. In other words, removing virus on it once it is infected. Are non-ro...
I know that all android devices are hackable whether they are rooted or not. I have general idea of protecting an android phone (or staying safe with android device) from any viruses. What I want to know is curing an android phone. In other words, removing virus on it once it is infected. Are non-rooted phones easier to remove viruses (even backdoors)? For example, by doing factory reset **on** **non-rooted phone**, are all viruses gone? Can malware exist on /system partition or /boot partition **on non-rooted phone**? (In that case, I know I need to re-flash the ROM instead of doing factory reset) I know many known viruses can be detected easily by anti-virus softwares. But nowadays hackers can easily make undetectable malwares. P.S. My phone is not rooted and its bootloader is locked. Can all virus be gone after factory reset on my phone?
Enthalpy127 (23 rep)
Oct 20, 2021, 02:21 PM
0 votes
0 answers
124 views
Mysterious grey rectangles on notification panel
Got a new Nokia 5.4 that has just recently been updated to Android 11 with no 3rd-party apps installed except Kaspersky. However, I've been noticing a rather strange behaviour where there seems to be an almost invisible app running in the background. Dragging down the notifications (one level down,...
Got a new Nokia 5.4 that has just recently been updated to Android 11 with no 3rd-party apps installed except Kaspersky. However, I've been noticing a rather strange behaviour where there seems to be an almost invisible app running in the background. Dragging down the notifications (one level down, not all the way) and there seems to be some sort of app/icon when I tap the area. Attached are screenshots so it's clearer. ![](https://i.sstatic.net/7NHzql.png) ![](https://i.sstatic.net/OVQ3Rl.png) ![](https://i.sstatic.net/D1qF2l.png) Run a virus scan but nothing shows up. Whatever it is, it seems to have been on the phone before unboxing and first boot. To clarify, this behavior has been there even before I installed anything on the phone. Spoke to Nokia support and they said it's not something they're aware of and suggested I report it as a bug. I've asked this question in Nokia's community forum to see if it's something that's present on all Nokia 5.4 models. Wanted to get more thoughts if this is some spyware on the phone, which I highly suspect it is, and how do I remove it. Any idea what it is? Is this some embedded spyware?
Dot Lee
Sep 16, 2021, 06:34 AM • Last activity: Sep 16, 2021, 05:46 PM
3 votes
0 answers
312 views
Notification showing on my android without a specific App
I have a Xiaomi Note 9s phone updated with the latest security patched running MIUI Global 12.0.4.0(RJWMIXM) Android version: RKQ1.200826.002 Android Security Update: 2021-07-01 I am getting a notification on my phone that does not specify which app is sending it. It looks pretty phishy and I have n...
I have a Xiaomi Note 9s phone updated with the latest security patched running MIUI Global 12.0.4.0(RJWMIXM) Android version: RKQ1.200826.002 Android Security Update: 2021-07-01 I am getting a notification on my phone that does not specify which app is sending it. It looks pretty phishy and I have not tapped it yet, afraid it might be from an attacker or a virus. Especially that it is titled "Delete User" in Arabic. I have taken a screenshot and added to my question here. The Arabic title translates to "Delete User and the body translates to "Listen to your own voice" I tried to block it but it cannot be blocked as every time I click on "more settings" it displays a message saying "the app wasn't found in the list of installed apps". How is it possible that I receive a notification from an app that isn't installed on my phone? and could this be an attacker? I tried using the built in security scanner and it said there are no viruses. What should i do to get rid of it? This is the notification message i see.
Mahmoud Abdalla (31 rep)
Aug 28, 2021, 05:38 AM
3 votes
0 answers
310 views
How can I check if my Android device is infected with Pegasus Spyware?
I am referring to this Spyware which as been on the news lately: https://en.wikipedia.org/wiki/Pegasus_(spyware) How can I check an Android device for it? I would prefer step-by-step instructions, even if they are very technical, to other answers like "install an anti-virus" program, if possible. I...
I am referring to this Spyware which as been on the news lately: https://en.wikipedia.org/wiki/Pegasus_(spyware) How can I check an Android device for it? I would prefer step-by-step instructions, even if they are very technical, to other answers like "install an anti-virus" program, if possible. I deliberately leave out details about my OS and phone model because I have several I need to check, and because I believe this question can and should be made at a more generic level.
pgr (131 rep)
Jul 21, 2021, 10:49 AM • Last activity: Jul 21, 2021, 12:10 PM
Showing page 1 of 20 total questions