WARNING: browser hijacking from hidden malware - Galaxy S II General

Today, I turned on my phone to discover a strange new widget/icon on my homescreen that looked like a blue magnifying glass and was labelled 'Search'.
Of course, being suspicious I removed the widget. I then looked through the list of installed widgets and apps, but nothing unusual was there.
Later when I opened the internet browser, the usual google homepage looked a bit different - identical, tabs and all, except for the search button appearing the same as in the widget and the Google logo missing (as if it hadn't loaded yet).
I've reset my homepage to Google, but in my history the bogus sites are:
start.infospace.com
searchmobileonline.com
Scanned with both AVG and Avast, but neither picked anything strange up.
I have since found out that this is adware that some free apps on the Market are using to generate revenue. In my case I have since confirmed it came from Brightest Flashlight Free, an app with over 1 million downloads and 5 star average.
Here's an article explaining it *http://www.pcworld.com/article/245305/sneaky_mobile_ads_invade_android_phones.html*
Just though I'd warn everyone, as I'm a very careful / savvy user and only use very popular, respected apps, but still got it. Personally I think adding phantom widgets and hijacking your browser homepage with a fake google look-a-like is disgusting and bordering on criminal, as no warning or notification is made that this is going to happen, where it came from and how to remove / fix it.

AXIS of Reality said:
Today, I turned on my phone to discover a strange new widget/icon on my homescreen that looked like a blue magnifying glass and was labelled 'Search'.
Of course, being suspicious I removed the widget. I then looked through the list of installed widgets and apps, but nothing unusual was there.
Later when I opened the internet browser, the usual google homepage looked a bit different - identical, tabs and all, except for the search button appearing the same as in the widget and the Google logo missing (as if it hadn't loaded yet).
I've reset my homepage to Google, but in my history the bogus sites are:
start.infospace.com
searchmobileonline.com
Scanned with both AVG and Avast, but neither picked anything strange up.
I have since found out that this is adware that some free apps on the Market are using to generate revenue. In my case I have since confirmed it came from Brightest Flashlight Free, an app with over 1 million downloads and 5 star average.
Here's an article explaining it *http://www.pcworld.com/article/245305/sneaky_mobile_ads_invade_android_phones.html*
Just though I'd warn everyone, as I'm a very careful / savvy user and only use very popular, respected apps, but still got it. Personally I think adding phantom widgets and hijacking your browser homepage with a fake google look-a-like is disgusting and bordering on criminal, as no warning or notification is made that this is going to happen, where it came from and how to remove / fix it.
Click to expand...
Click to collapse
Good call mate! I downloaded the AirPush Detector, AdFree Android, and Addons Detector thats mentioned on the post, and they found some on my SG2.
I will give all offending apps a one star rating, and this will get these dev's to act!!
Thanks

If you're going to give these apps one star ratings, don't forget to put a very scathing review up as well. A single star rating either way isn't going to bother these people much, but if you put a really negative review up as well, it adds a little impact.
In my experience, a brutal review tends to get devs attention fairly quickly, especially those who care about the rep of their apps

... and I wondered from where that magnifying glass appeared on my homescreen.
By the way, the icon sucks
I installed one crappy app from the market but unistalled everything fishy in the moment I saw that icon ...

This has happened to me 2x wish I knew what app it was. I normally only download popular ones too.
Sent from my GT-I9100 using XDA App

I have the magnifying glass too. I didn't notice it at first because I use TWLauncher 4.5 and it only added itself to the stock launcher. I guess its time to do some forum searching or uninstall all my add based apps.

You guys (especially OP) need to use programs like Lookout or ESET and stay away from ****ty apps like AVG (Which is also **** on PC).

GRiM-UK said:
You guys (especially OP) need to use programs like Lookout or ESET and stay away from ****ty apps like AVG (Which is also **** on PC).
Click to expand...
Click to collapse
Lookout doesn't find the search adware widget.

I had that icon too.. it even changed the default search engine on my browser..
Sent from my GT-I9100 using xda premium

AXIS of Reality said:
Today, I turned on my phone to discover a strange new widget/icon on my homescreen that looked like a blue magnifying glass and was labelled 'Search'.
Of course, being suspicious I removed the widget. I then looked through the list of installed widgets and apps, but nothing unusual was there.
Later when I opened the internet browser, the usual google homepage looked a bit different - identical, tabs and all, except for the search button appearing the same as in the widget and the Google logo missing (as if it hadn't loaded yet).
I've reset my homepage to Google, but in my history the bogus sites are:
start.infospace.com
searchmobileonline.com
Scanned with both AVG and Avast, but neither picked anything strange up.
I have since found out that this is adware that some free apps on the Market are using to generate revenue. In my case I have since confirmed it came from Brightest Flashlight Free, an app with over 1 million downloads and 5 star average.
Here's an article explaining it *http://www.pcworld.com/article/245305/sneaky_mobile_ads_invade_android_phones.html*
Just though I'd warn everyone, as I'm a very careful / savvy user and only use very popular, respected apps, but still got it. Personally I think adding phantom widgets and hijacking your browser homepage with a fake google look-a-like is disgusting and bordering on criminal, as no warning or notification is made that this is going to happen, where it came from and how to remove / fix it.
Click to expand...
Click to collapse
personally i feel you should report this app to Google straight. No chances should be given for developers of such nasty lowdown apps.

I personally dont use any of the antivirus stuff but have my host file update for removing ads and use LBE security to block applications access to the internet.

Thanks
Thanks... very usefull information
Installed LBE and now monitoring apps

Thanks for the heads up and the useful apps recommended.
All clean here, but glad I checked.
Further good reasons not go down the pirate route kids - get that Blackmarket and Mobilism app off ya devices

Mobilism app isn't malware.

I use Avast and adaway and they seem to be effective enough although no doubt malaware is a cause for concern.

666fff said:
Mobilism app isn't malware.
Click to expand...
Click to collapse
I'll take your word for it. It allows you to test pro versions or other paid apps, and if you like them, you go to Android's market and buy the "proper" goods.... Sure. That's all right then.

How much does eset cost? Could only see free 30 day trial
Sent from my GT-I9100 using XDA App

B3311 said:
I'll take your word for it. It allows you to test pro versions or other paid apps, and if you like them, you go to Android's market and buy the "proper" goods.... Sure. That's all right then.
Click to expand...
Click to collapse
That's what I use it for. I like to trial an app properly. If I like, buy from the market, if it's crappy, delete.

The same happened to me, I only realised when a lot of my google searches were US based and not UK. When I clicked on the "privacy" link at the bottom of the Google page (or what I thought was google, it just had a different search icon) it brought up info about a different company, it wasnt the usual google privacy disclaimer.
In the end I think I had to uninstall all the recent apps because I wasnt sure which had done it and had to clear data on the browser to remove it.

My Samsung Galaxy Note has also been invaded by this searchmobile pest and I am looking for a lasting solution, or an app that can identify which app invited the malware. "free iPads" have also appeared annoyingly frequent.

Related

Android market app is crap... make a list shall we?

OK.. allow me to express my frustrations of this enourmously integral app on any android powered phone.
1. I am unable to do predictive search on it
2. It always use strict search queries and does not show matching spellings on the apps or even similar apps that we may like.
3. The interface is terrible
4. No straightforward way to purchase apps like the Itunes with saved credit card details.
5. No screenshot of any apps in the apps detail page.
I also use the Iphone and the app store on Iphone is MUCH MUCH better as it does everything that Android market doesnt.
What other things do you think is wrong with this app?
There is a new version of Market coming with Donut, which should resolve at least some of your concerns (see http://android-developers.blogspot.com/2009/09/some-news-from-android-market.html ).
Not sure what you mean on point 4 - buying an app is very easy IMHO, and I've only ever entered my cc details once.
Regards,
Dave
Oh - forgot to add. My biggest issue with the Market are the comments.
There are far too many duff comments against applications where either the commenter has no idea what they are talking about, has not read the instructions, or is trying to make a "clever" statement to Google (e.g. all those comments about CyanogenMod).
The comment systems needs to be cleverer so that all this trash doesn't detract from the really useful comments.
Regards,
Dave
I hope they are fixing the search function.. the UI looks a little better in the video.
Easy now. I know the martket isnt as polished at the apple appstore but remember that apples appstore is a cashcow while this doesnt being in nowhere near the same revenue.
I believe Donut is available now, along with the new market app.
http://www.androidguys.com/2009/09/30/are-we-on-eve-of-donut-rollout/
http://www.androidguys.com/2009/10/01/android-1-6-donut-ota-release-confirmed/
How can google make a search function that is so bad, they have to fix that
dieseldk said:
How can google make a search function that is so bad, they have to fix that
Click to expand...
Click to collapse
HAHAHA +1 for this one.
Been using the new market for 2 weeks now, it is better than the old android market, but still not 100%.
The most annoying things is the mini-gallery of "Featured" apps at the top.
When you use your finger to swipe them, your finger obscures the icons and more importantly the title of the "Focused" app, so you can't actually see what the name is.
Mind numbingly stupid.
Either the swipeable area needs to be vertically larger so you can swipe and not obscure the icon, and or the "focused" title should be moved above the gallery.. Can't believe no one ever tested it in the real world.
One more thing...
I live in Romania and i don't have access to payed apps....only for the free ones..... I would like to buy a navigation app and i can't....
That is because your region is not "Market Enabled" rather than an issue with the Market application itself. If you use the marker enabler (see http://code.google.com/p/market-enabler/ ) you should be able to effectively change your region to one where paid apps are available.
Regards,
Dave
Thanks Dave.
I'll try that and let you know.
One more question though....Do i need to root my hero for the market enabler to work?

List of applications Google or something else has removed from phone

I noticed an app shortcut missing from the upper right of my home screen today. I called my GF with same phone and asked her what was in the upper right on hers (I set them up to be similar layout) and she had a blank but couldn't remember what it was either.
I know something was occupying that space and I thought it was useful enough not to move it to one of the side screens, but now I can't remember what it was.
It would sure be nice if there was a log of apps installed/removed that one could access after the fact.
I noticed after one of the updates that pandora went away, but I redownloaded it and it even kept my authentication. I removed slacker a while ago because it kept losing my login info.
I think a list of what we notice missing would be interesting, so please chime in (with missing items, not trolls)
dont have a App-Backup?
Google changed some of their package names. This will cause some icons to disappear, it doesn't necessarily mean it was removed entirely.
yeah u mite just need to add shortcuts again...
I still like the topic of the thread though. If OP could update the post with the apps removed and the reason stated it could be one of XDA's great reference threads.
Noname1 - Violation of terms and security issues
Noname2 - Violation of terms and security issues
http://android-developers.blogspot.com/2010/06/exercising-our-remote-application.html
(no name stated)
That's what kills me, I don't remember.
I thought I would use it frequently so left it in a prominent position, but apparently they wiped my brain along with the app (or shortcut).
I have a stock phone. not rooted.
I haven't found a backup app or screen capture app that works with unrooted phone.
Should we guess what it was? My guess is google voice.
675 Trip said:
It would sure be nice if there was a log of apps installed/removed that one could access after the fact.
Click to expand...
Click to collapse
This won't help now but one does exist, you just have to install it beforehand. There is an app called AppHistory which keeps a list of everything you have installed and removed. I don't backup my apps and have found that useful once or twice to remember an app that I uninstalled and want to try again or something.

security app

just wanted to find out what peoples preferences were for a good security app? Doing some research at work but also have a desire hd myself, with the miui rom.
At the moment I'm using bitdefender - mainly because it's cloud based uses little mobile resources and the locater is very accurate. The only downside is that you have to be using a browser to activate the locater or wipe the phone, can't use another mobile. Not can you sound an alarm if it does get stolen or lost.
Im not too fussed on the malware scanning operation of the app because I am very careful in what i download.
i´ve been using lookout for a while now. thing is though that in over eight or nine months using it, i´ve yet to get a notification that it´s done anything.
to put that into context i´ve gone to some very sketchy pr0n sites and downloaded many many off market apps and yet not one popup saying that it´s done anything. so to be honest that begs the question do they actually do anything? are they necessary?
Just my 2 cents but these types of apps are pretty pointless unless you are always misplacing your phone. As long as you pay attention to what you are allowing apps to do "permissions" then you will be fine. Plus most apps have been built to not show up in any security apps as they don't ask for anymore permissions then most apps do.

clear recent apps?

so i have no need of it now but the top line of apps that keep track of what you have opened just keeps getting longer.. anyone now how to clear that out yet?
also if anyone is looking for a password app to bock a few apps from the kids accidently buying apps or getting into your email the app "app protector pro"(also has a trial) is one of the few that work... some on the amazon store do not block at all and some are buggy. this one i have been using since yesterday and it has several good modes. only thing with this is i had to side load a different facebook app(touch client for facebook) because the "app" for amazon just goes to the browser. and this will allow the kids on theirs without logging me out or getting into mine.
.i know people are having problems getting the regular market place in. i stopped trying and just started using blapkmarket side loaded for my apps.
also im finding kobo to be the best ereader app to side load that seems to give the best results.
hope this helps anyone with the same issues
The Recent section is one of the more annoying aspects to the UI in my opinion. First it should need to be SO LARGE... and second, it would be nice to just turn it off. Many of the "icons" displayed are terrible looking especially recent web pages etc...
The other is the lack of control buttons being available without an extra step. Coming from a Android phone it takes some getting used to. I suppose someone who has never had a droid based phone might think it is okay, but I would guess not.
To clear apps from your carousel: Settings->applications->Filter by all Apps->AppManager -> Clear Data
to clear watched videos from your carousel. Settings->More->Applications->Amazon Video-> Clear Data -> Go back to the home screen click on one of the other tabs like books and then back the the home and it is gone.
-D
worked thank you
Now we need a setting that just makes the carousel disappear completely.... most likely a different app launcher though.

Notification Bar ads for Android

While it has been rumored and feared practically since the operating system's creation, one of the nightmare scenarios for some unlucky Android users has finally become very real. Japan's second largest mobile carrier, KDDI, has gone where no carrier has dared before and has begun disguising advertisements as system notifications on their Android devices.
It seems that an app bundled with KDDI devices is the cause of the controversial ad system. The "au one market" is a secondary market application that comes with most of the smartphones on the carrier's service. This newest evil addition came in the form of an update which prompted the user with two warnings.
Quote
1. au one Market app stays resident even when you are not using the app, 2. notification space will be used to inform good deals to customers.
There are similar ad experiences from certain applications and services already in the U.S. but this is the first time we've seen this behavior from an actual mobile carrier. It's scary to think of this becoming common place so be sure to voice your opposition on this sort of guerrilla advertising to your carrier representatives before it's too late. This is also just all the more reason to keep your rootz skills as up to date as possible. Removing that carrier bloatware is becoming seemingly more and more essential these days....
Click to expand...
Click to collapse
Source: RootzWiki
Read for yourself here
since i've installed an app (don't know which one) i'm starting to something like this on my status bar... do you guys know anything about this?
This sucks... Are they even allowed to do this?
@gigeaky
Check if you have Easy Mp3 Download or DroID3Tagger. One of them should be the Ads source.
Install Airpush Detector or Addons Detector from the market to find the offending app.
Nothing root+delete offending app can't solve.
That said, still sucks, they'll probably end any warranty or whatever services they may offer if they find out. I guess you can still delete any traces of root and send it to samsung. They probably couldn't care less if you uninstalled some carrier app.
I don't mind ads at all while they aren't intrusive. I understand their purpose and their importance. But being randomly interrupted by some notification ad is the worse kind of interruption, as useless as it gets, not to mention the unsolicited data traffic and extra battery drain. I can even see them going a notch up and create random popups out of that you need to dismiss. Now, i like android the best of all mobile operative systems, but i draw a line here. If google ever enforced this at system level with no way around, i'd leave android completely.
I agree, I guess all those stuff is from carriers and not from Google so that I think it won't be difficult delete it.
gigeaky said:
since i've installed an app (don't know which one) i'm starting to something like this on my status bar... do you guys know anything about this?
Click to expand...
Click to collapse
Yes, I seem to be getting similar notifications, I can't for the life of me work out what app they are related to...

Categories

Resources