GSM-Forum

GSM-Forum (https://forum.gsmhosting.com/vbb/)
-   Infinity-Box (https://forum.gsmhosting.com/vbb/f296/)
-   -   Looking for FullDump infected with "Monkey Test" and "Timer Service" apps. (https://forum.gsmhosting.com/vbb/f296/looking-fulldump-infected-monkey-test-timer-service-apps-1995438/)

JayDi 09-27-2015 07:24

Looking for FullDump infected with "Monkey Test" and "Timer Service" apps.
 
Better 2-3. To make one-click removing without root, flash and e.t.c.

pradeep_kus 09-27-2015 07:52

have lot's of phone uploading ;)

sneha 09-27-2015 07:57

Quote:

Originally Posted by JayDi (Post 11311736)
Better 2-3. To make one-click removing without root, flash and e.t.c.


its possible ?? if yes great news

i have readed FF with system and user data infected can i uploadt it ?

JayDi 09-27-2015 07:59

It possible, but depend on availability of testing material.

debeliamark 09-27-2015 08:30

Pfu ... yesterday cleaned one fake Lenovo S850w ...

debeliamark 09-28-2015 10:58

Huh ... a next one was come just - now S660w fake Lenovo.
Full dump is on Uploaded .
Hope we have fast solution soon.

WBR, DebeliaMark, BG

Nasir Mobiles 09-29-2015 09:58

CALME SPARK S9

Code:

Operation : Read Flash [ v1.32 ]

1. Power Off Phone , Remove battery , Insert back
2. Insert USB cable. In some cases require hold BootKey

Wait for phone...
Phone found! [ 5 ]
Sync...
Inital regs read done
Boot Info :
BB_CPU_ID : 6572
BB_CPU_HW : CA01
BB_CPU_SW : 8C00
BB_CPU_SB : 0000
BB_CPU_NM : [MediaTek] MT6572_S00
Processing BROM stage
BLVersion : 0x01
SecCfgVal : 0x00000000
BromVersion : 0xFF
BLVersion : 0x01
Preloader Status : Alive
Processing DA stage
DA Select done , sending
DA Ver : MTK_AllInOne_DA_v7.1533.03
NAND_ID : 00000000000000000000000000000000
eMMC_ID : 45010053454D30344728535F78B79063
DA Stat : v4.2 on BBID : 0x88
DA Sent. Configure setting now ...
DA started successuflly
eMMC FlashIC initialized
[eMMC] : FLASH_VEN : 0045 , OEM : 0100
[eMMC] : FLASH_INF : G40ME
[eMMC] : FLASH_CID : 45010053454D30344728535F78B79063
[eMMC] : FLASH_EXT : 00200000/00200000
[eMMC] : FLASH_LEN : 0x00000000EC000000
INT RAM    : 0x00020000
EXT RAM    : 0x20000000
BOOT TYPE  : EMMC_FLASH_BOOT
SOC VERIFY : C1
Boot Ok!

Reading Flash Conent now ...

Read Ok , collect info
MTKxCPU  : MT6572
File conversion error, file already exists! Saved as default!

Done!
Elapsed: 00:18:36
Reconnect Power/Cable!

CM2MTK.4shared.com

asad_nomy7 09-29-2015 17:13

Qmobile x6 Time service and other virus active backup.

https://mega.nz/#!J10HmLKL!t5z2Dz5mB...HtYTG2cinAQCVw

Take 8 hours for Upload.Now understand how difficult for Product manager manage file servers.

syed tuqeer 09-30-2015 13:29

Zte v795
 
ZTE V795 Factory Firmware (infected)
https://forum.gsmhosting.com/vbb/****************************/?c99vzh8yah2mpf8

rehmani 09-30-2015 14:09

micromaxx a177 dump
 
1 Attachment(s)
here is a177 links..............


JayDi 09-30-2015 14:16

Ok, have enough material to make something.
Plan make "permanent" protection, if all be as want - phone will be unreceptive and protected from those viruses.

chandanps18 09-30-2015 14:36

Quote:

Originally Posted by JayDi (Post 11318283)
Ok, have enough material to make something.
Plan make "permanent" protection, if all be as want - phone will be unreceptive and protected from those viruses.

Is this possible without data loss?
If yes, then its great.

Anyway, for ur idea permanent protection, will charge double from the customer.

Just one question, how long it will protect i.e untill the next format ,flash, erase....?

JayDi 09-30-2015 15:00

Quote:

Originally Posted by chandanps18 (Post 11318368)
Is this possible without data loss?
If yes, then its great.

Anyway, for ur idea permanent protection, will charge double from the customer.

Just one question, how long it will protect i.e untill the next format ,flash, erase....?

It will remove them.
USerData - there was no target about it, because phone have full functionality and enough just backup it.
About other - not sure. Will infect all phones, which have and try :D

sneha 09-30-2015 15:35

after permanat protction if cusmer want instal some cracked software it able it to instal it ?

or any restriction in intalation app ??

Nasir Mobiles 09-30-2015 17:31

protection will do nothing if you root phone again.
root will allow virus to again blend with system.

Nasir Mobiles 09-30-2015 17:38

Quote:

Originally Posted by sneha (Post 11318563)
after permanat protction if cusmer want instal some cracked software it able it to instal it ?

or any restriction in intalation app ??

there is already protection with every android device for to avoid untrusted apps.
just turn it off. if customer or you sure about app turn it on for a while.

simple answer yes you can install any app but be sure about source before installation. and avoid add clicking while browsing or with apps.

universalmobil 10-01-2015 05:29

already upload oppo r831 k bakup
http://forum.gsmhosting.com/vbb/f296.../#post11269290

JayDi 10-01-2015 14:59

Good news - CM2 can reset 4 types of virus for the 40 seconds.
Bad news - UserData will be lost.
Work Around - Forensic or manual backup before.
Side Effect - made full forensic engine :D

Rest - "protection" work randomly. I'm want force phone completely ignore those virus after removing by CM2. When finish - will put beta here.

sneha 10-01-2015 15:15

in most case custmer ready for lost user data .. contacs we backup and images and videos also take backup so no worry for that .. they want jsut repair there set

Nasir Mobiles 10-03-2015 16:02

another virus "P*O*R*N*CLUB" recovery format & CM2 Full Factory Reset did nothing.
so if you already dont have this sample I can upload dump.
asking before cuz you know android dumps are not easy to upload.

JayDi 10-03-2015 16:10

I will not make "Antivirus" from service SW, sorry.

Can just make some "Signature" mode, where user can add virus signature to remove it. But it require FW dig skills, what mean no one will do that.

Nasir Mobiles 10-03-2015 16:36

I don't know what you will give us what not... I just know that this thread start by you and my post related to this topic.
its strange yesterday you want to do something and ask for support and now your mode changed why you don't make a sticky thread with your mode status.

JayDi 10-03-2015 16:58

I will add mentioned 3-5 types, which face everyone, but add one-by-one over9000 existing viruses for android - not a good idea.
There is alternate way exists, but it take much time. It count by 4-5 month.

GSM.solve 10-04-2015 10:26

I8552 Win

infacted Version

MT6572__samsung__GT-I8552__y7252_fl__4.1.2__JZO54K.I8552XXAMDB - Download - 4shared - shanoo khan

Br
GSM.SOLVE

GSM.solve 10-04-2015 16:26

S7582 MTK 6572 Clone

Infacted file Dump.

MT6572__samsung__GT-I8262__GT-I8262__4.0.4__ALPS.JB3.MP.V1 - Download - 4shared - shanoo khan

Br
GSM.SOLVE

JayDi 10-04-2015 16:51

Thanks , for now enough dumps. I found inside them and other dumps approx ~90 different types. Too much.
I decide make "Heuristic" method, instead of fixed one. ETA - Unknown.

malka4u 10-05-2015 06:42

if dont want to delete data and have time and dont want full flash then
search virus inside phone and can delete one by one

need to seek and destroy one by one..this is only if u dont want full fash or want to save userdata

for example
http://forum.gsmhosting.com/vbb/f906.../#post11327535

JayDi 10-05-2015 10:35

Quote:

Originally Posted by malka4u (Post 11327539)
if dont want to delete data and have time and dont want full flash then
search virus inside phone and can delete one by one

need to seek and destroy one by one..this is only if u dont want full fash or want to save userdata

for example
http://forum.gsmhosting.com/vbb/f906.../#post11327535

Just delete results, but not a virus itself :D
And only one.
Good work :)


All times are GMT +1. The time now is 21:34.


vBulletin Optimisation provided by vB Optimise (Pro) - vBulletin Mods & Addons Copyright © 2024 DragonByte Technologies Ltd.
- GSM Hosting Ltd. - 1999-2023 -

Page generated in 0.21762 seconds with 6 queries

SEO by vBSEO