Trojan in my stock rom
Trojan in my stock rom
(09-06-2018, 06:41 PM)X3non(09-06-2018, 02:24 PM)caoimhinbatista Hello everybody,
...
Hope someone could help..
whats your phone model?
and have you tried flashing the firmware for your model?
(09-06-2018, 08:35 PM)caoimhinbatista(09-06-2018, 06:41 PM)X3non(09-06-2018, 02:24 PM)caoimhinbatista Hello everybody,
...
Hope someone could help..
whats your phone model?
and have you tried flashing the firmware for your model?
Yes I have the Stock Firmware from manufactor it seems trojan is part of it.
It's Ukozi Q3 mt6737 Kernel 3.18.19 Android 6.01 , Firmware is also available on needrom.com
(09-06-2018, 10:30 PM)innagee(09-06-2018, 08:35 PM)caoimhinbatista(09-06-2018, 06:41 PM)X3non(09-06-2018, 02:24 PM)caoimhinbatista Hello everybody,
...
Hope someone could help..
whats your phone model?
and have you tried flashing the firmware for your model?
Yes I have the Stock Firmware from manufactor it seems trojan is part of it.
It's Ukozi Q3 mt6737 Kernel 3.18.19 Android 6.01 , Firmware is also available on needrom.com
have you tried flashing the firmware?
(10-06-2018, 01:35 AM)caoimhinbatista Yes of course - original firmware contains the trojan
(10-06-2018, 07:29 AM)juvette(10-06-2018, 01:35 AM)caoimhinbatista Yes of course - original firmware contains the trojan
Its possible that the firmware does contain the trojan. It must have come from whoever created the firmware (intentionally or not)
Since you're rooted, install Link2SD and use it to list all apps (userdata and system) although I think the trojan would be a system app.
You can then uninstall all suspicious apps (using Link2SD)
If you need help identifying them, attach screenshots showing all your apps so we help identify suspicious ones.
Sent from my Infinix X510 using Hovatek Mobile
(09-06-2018, 02:24 PM)caoimhinbatista Hello everybody,Good news is that your are rooted. That means your have all the tools needed.
I got a trojan in my rooted phone (MT6737) Kernel 3.18.19 Android 6.01. It is creating the folde .SDAndroid and .jm which is loaded with some strange files and will result in installing the app "settings" or sometimes "chromes" which are malware.
Since the trojan seems to be part of the stock rom I could not deleted (becaue it will crate againg this foldes byitself and install the apps mentioned)
I was currently looking for a approach to get a custom recovery so I can port a rom and install (I have opend other thread therefore) but unfortunatly I could not get a custom recovery to boot on the phone.
So I would like to ask if there is another solution to get rid of the malware/torjans of this phone. Is it possible to find the trojan causes in stock rom files (like system.img or something like that) and than to remove before flashing via SP Flashtool?
Or is it possible to get a working stock rom from another phone with same chipset? I flashed some from internet but then phone did not start..
My problem: I want to get rid of the tojan/malware !
Hope someone could help..
(11-06-2018, 07:55 AM)Protechacha(09-06-2018, 02:24 PM)caoimhinbatista Hello everybody,Good news is that your are rooted. That means your have all the tools needed.
I got a trojan in my rooted phone (MT6737) Kernel 3.18.19 Android 6.01. It is creating the folde .SDAndroid and .jm which is loaded with some strange files and will result in installing the app "settings" or sometimes "chromes" which are malware.
Since the trojan seems to be part of the stock rom I could not deleted (becaue it will crate againg this foldes byitself and install the apps mentioned)
I was currently looking for a approach to get a custom recovery so I can port a rom and install (I have opend other thread therefore) but unfortunatly I could not get a custom recovery to boot on the phone.
So I would like to ask if there is another solution to get rid of the malware/torjans of this phone. Is it possible to find the trojan causes in stock rom files (like system.img or something like that) and than to remove before flashing via SP Flashtool?
Or is it possible to get a working stock rom from another phone with same chipset? I flashed some from internet but then phone did not start..
My problem: I want to get rid of the tojan/malware !
Hope someone could help..
Now download Dr. web security, scan the phone for all the trojan apk and associated files. it may request root to succefully delete any system apks, just give it.
It may not be able to remove all the trojans, here is where you use your file manager (root) like es file manager, root browser.
Navigate to the system and search for the remaining trojan files and delete manually.
finally download afwall + apk install and activate the firewall, make sure you grant internet access to only apps you know.