[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Botnet File Explorer

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 163
Thread images: 12

File: serveimage.png (153KB, 512x512px) Image search: [Google]
serveimage.png
153KB, 512x512px
Can someone explain to me what the fuck just happened?

I downloaded ES file explorer to my phone and was using it to browse a SMB share on my home server. As I was browsing, I got an email notification informing me my server saying Fail2Ban blocked a SSH brute force attempt (5 tries) from my phones IP address.

What kind of chinese botnet is this? I feel like I need to wipe my phone now.

>in b4 don't download .apks from free-apps.ru
>>
You thought /g/ was joking about ES being a botnet?
>>
>>55668831
I have it from before it was sold (version 3.2.5.3) and i think that is the last safe version.
>>
>>55669997
You're better off moving to Amaze or Solid Explorer...
>>
Holy shit, just uninstalled that shit
>>
>>55668831
Chinese scummy bastards bought the app from the devs, and gradually added adware, which gradually turned more and more into outright malware.

Happens a lot to browser extension developers too - they offer money to buy things from you, and if you accept, they will turn it into adware/malware shit.
>>
>>55670017
Does anyone else have a problem with Amaze being totally unable to connect to SMB shares with a username and password - both from Samba 4 and Windows 10?

ES worked fine, so do all my Windows boxes, and so does Ubuntu 16.04 both as a client (CLI and GUI) and a server. But Amaze isn't having it, saying the username and password is incorrect.

Nothing apparently useful shows in logs, and it's not a DNS issue as firstly my DNS is correct and secondly same thing happens when I give it an IP.
>>
tell me the last version where LAN worked
>>
I downloaded ES explorer and thought it worked fine. Then every time I installed a new app a notification came up saying "Do you want ES explorer to analyse this all? :D" and promptly uninstalled that garbage.

I hope it left nothing bad behind
>>
Windows is shit because of virus! They said
Linux is better because there is no virus! They said
>>
>>55670222
>android is the exact same shit as linux
where there are normies, there are viruses
>>
>>55670191
My LAN works just fine.
>>
>>55668831
uninstalled
>>
>>55670222
g e t
t h e
f u c k
o u t t a
h e r e
>>
>>55668831
>install TotalCommander
>>
>>55668831
How do you report an app as being malicious to google? This shit needs to be removed from Google Play. It's a literal botnet.
>>
>>55668831
they added malware shit in that app
either use amaze, cabinet or solid explorer
i use amaze myself
>>
>>55672487
Malware of the truly evil type. I love how they added an entire section with a cleaner feature that will delete all of your images and music to free up space, and conveniently offer you a paid upgrade to disable said functionality.
>>
>>55668831
use Solid Explorer
>>
>what is root explorer
>what is amaze
>>
>>55668831
Use amaze and stfu.
>>
>>55672637
This is beyond obnoxious features or unwanted ads. I just checked logs for all computers in my house running SSH servers and something on my phone tried to brute force them all at the same time.

This is actual botnet behavior.
>>
Try solid explorer
You do need to patch it wih Lucky Patcher

Amaze a good FOSS browser
>>
>>55668831
i miss es
being able to stream porn from my pc files to my phone was amazing
solid explorer is pretty good and ive been using that for a while now
>>
File: 1468893960320.png (21KB, 470x495px) Image search: [Google]
1468893960320.png
21KB, 470x495px
your OS lets apps ruin the system to this degree?

LOL
>>
>>55671609
I'm going to download it to my desktop and analyze it. If I find anything at all suspicious, I'll post it here and we'll spam the world with it so these chinks get pulled from the playstore.
>>
>not using FX File Explorer
>>
File: 1429084825903.gif (877KB, 345x270px) Image search: [Google]
1429084825903.gif
877KB, 345x270px
>>55673876
Godspeed anon
>>
>>55669997
Is this reall the last version? Anyone else verify???
>>
>he uses a google product
>cries about muh botnet

hahaha get rekt cunts
>>
>>55673970
I just ran the apk through Virus Total. While it only detects 1 instance of adware, if you click on the the file detail tab on Virus Total, you can scroll down and see a section called Interesting Strings. Scroll through that and you'll see theres a ton of baidu urls. This is what got them in trouble in the past. I wouldn't recommend using this app.
>>
>>55674268
i wouldn't recommend using this operating system.

switch to iOS and secure yourselves so random apps can't screw you over.
>>
>>55674295
>secure yourselves
The owner of kat.cr would like to have a word with you.
>>
>>55674364
>implying google wouldn't have done the same thing
>>
I uninstalled this almost a year ago upon seeing the ads in an update... However, reading your post makes me concerned that it might have gotten into my wifi router or something. My router software is set to prevent wifi devices from interacting with each other, and it has a pretty long password. Could ES have put something on the router, and could my phone be rooted even after I uninstalled it?
>>
>>55674268
https://virustotal.com/en/file/4af500e55258036adfb2f42060ba980fb751c22902aad27e3d3818f709d92aaa/analysis/

The "safe" version above has a bunch of baidu links too.

Guess im switching.
>>
>>55674534
>Guess im switching.

to iOS.
>>
>>55674581
seriously, fuck off

did you not see the KAT thread?
>>
>>55674658
of course. did you not see this?

http://gawker.com/5637234/gcreep-google-engineer-stalked-teens-spied-on-chats
>>
>>55674581
NO to another fucking file explorer. Fuck off.
>>
>>55674680
I apologize for my rude post, I did see this but it has already been a few years and I'd forgotten

so what is the way to go then, a dumb phone, or a custom rom?
>>
>>55674702
a dumb phone or iOS without iCloud enabled.
>>
>>55674766
You can have icloud disabled?

Doesn't iMessage still phone home though?
Also, what to do about the exorbitant costs?
Doesn't apple cease to support the latest iOS versions for older models, creating potential security risks for those who retain them?

This isn't me trying to be contrarian, I want to know.
>>
What file explorer should I use instead?
>>
>>55672751
This
>>
>>55674799
>You can have icloud disabled?

Settings > iCloud > Sign Out

You can also skip iCloud sign in altogether during the initial device setup.

Also, if you do choose to sign in to iCloud, you have full control over which iCloud services are enabled:

iCloud Drive, Photos, Mail, Contacts, Calendars, Reminders, Safari, Notes, News, Wallet, Backup, Keychain, and Find My iPhone can all be enabled or disabled individually.

And, if you enable iCloud Drive to share files between your Apple devices (kind of like Dropbox), you have on/off control over which apps (if any) you want to grant access to your iCloud Drive.

>Doesn't iMessage still phone home though?

Settings > Messages > iMessage > off

>Doesn't apple cease to support the latest iOS versions for older models, creating potential security risks for those who retain them?

Apple is really good about supporting their hardware, much more so than Android, and especially with security updates. the iPhone 4S (released in October 2011) runs the latest iOS release (iOS 9.3.3, released a few days ago)

>Also, what to do about the exorbitant costs?

an iOS device is a good investment. longer software support means you'll save on the cost of having to upgrade your phone's hardware more frequently (unless you want to, of course).

the iPhone SE is a good lower-cost introductory device that should last years. just be aware that the new flagship iOS devices usually get announced in September, so it might pay to wait it out for a few months to see what gets released.

(Apple rarely if at all cuts prices, so to maximize the value you get from what you spend, it's worth it to buy in at the start of a new device's lifecycle.)
>>
>>55669997
I'm running 3.0.9.0 kek if it ain't broke don't update it
>>
>>55674799
also, you may be interested in the iOS Security Guide, which has a lot of useful details on the safeguards put in place throughout the operating system:

https://www.apple.com/business/docs/iOS_Security_Guide.pdf

it's also worth clarifying that disabling iCloud support for things like Notes, Calendars, Photos, etc. doesn't deny you access to use the apps locally on your device, it just disables iCloud syncing for those apps.

if you have iCloud Backups off, but you still want to back up your device, you can sync to your Mac or PC using iTunes and the USB cable included with your iPhone. this way, your data is safely stored locally on your computer, under your control, and you can restore that local backup to your device at any time through iTunes.
>>
>>55675292
>>55675001
thanks a lot anon, really mean it
>>
>>55668831
Anything beyond version 3 is pure chink botnet, event version 3 is calling home at least, maybe even logging passwords.
>>
>>55674464
Possible. They could be logging passwords, but I checked my router and didn't see anything weird (yet). Changed the password, changed ssh ports, revoked ssh certs and will likely wipe my phone tomorrow. I'm convinced I'm being monitored by the Chinese now.
>>
>>55675752
ri rwuant rour mroney frilthy ramerican
>>
Anything comparable to es that will let me log into my home server and access my hard drives?

I don't care if it's paid. This is some serious bullshit.
>>
>>55676333
Checking our the most recent reviews for amaze on the google playstore.

Apparently, the most recent update breaks smb and removes useful features like the ability to move folders.

Any recommendations on what I should check out?
>>
MiXplorer
>>
>>55670047

Play Store reviews are indicating that a raft of features were removed with the latest update, including SMB support.
>>
>>55676690
cancerous ui

and also

>asus
>>
>>55676713
>asus
what?
>>
>>55676493
Solid explorer
>>
>>55676868
I've been reading up on the reviews and apparently Solid Explorer asks for phone permissions.

Unacceptable

There is no reason why a file explorer should need to access your call data.
>>
How's MiXplorer? Found it looking around and it seems to have a good feature set and is free.
>>
>>55676897
>I've been reading up on the reviews and apparently Solid Explorer asks for phone permissions.
>Unacceptable
>There is no reason why a file explorer should need to access your call data.
Uhh, yes there is, and they tell you exactly what it's for.

They need your IMEI number to identify the phone and check your paid license, so they don't have to use Google Play Services.

They don't have access to your calls, just the IMEI.
>>
>>55676952
Any you think this is acceptable?
>>
>>55668831
Shit, OP. Now I'm curious to see fail2ban working.
>>
>>55676493
Get it from F-droid. Amaze hasn't been updated over there yet.
>>
Why the fuck aren't you using FX file explorer?
>>
>>55677122
>Any you think this is acceptable?
I'd much rather given them my IMEI number than my google email account info, which is how the other authentication methods work.
>>
just download the pro version fag
>>
I rooted my girlfriend's G3 and installed ES a while ago and forgot about it. Haven't touched her phone in a while until recently.

She complains about weird behavior on her phone, and a blue box pooping up every now and then with Chinese characters.

I look into it, and it turned out to be ES fucking with shit. It would go active when screen off, and use up data.

Uninstalled and cleaned it. Botnet for sure.
>>
>>55669997
I'm on 3.2.5.5

I stopped updating because it was the last version in the old interface

Am I good?
>>
File: 1459969026571.jpg (25KB, 310x206px) Image search: [Google]
1459969026571.jpg
25KB, 310x206px
>>55673876
>>
Is Amaze as good as ES File Explorer?

>ES File Explorer has an FTP server
Does Amaze have that?
>ES File Explorer allows to send files over the air to another device with ES File Explorer on the same LAN (almost like Apple's Airdrop but for Android)
Does Amaze have that?

How do we replace these 2 killer features of ES File Explorer with an app that is not a botnet?
>>
Fucking hell I'm still using ES because it's always worked nicely for me.

That said with all of the ads and shit I will probably change to Amaze or something.
>>
>>55668831
ES is a botnet file explorer. Used to use it before changing to Solid Explorer. Now I'm with the masterrace FX File Explorer. Never been better.
>>
>>55673923
This
>>
So will this shit remove nicely? I must've installed this shit years ago and never even realized I still had it.
>>
Omg, just removed this fucker and my phone is responsive again ! Wtf, all these months with my 6p being sluggish
>>
If you're gonna download AMmaze, please do som through F-droid. The dev apparently fucked something up in the last version.
>>
Amaze has samba features? Where?
>>
>>55678955
Tbh, I main the F-Droid Amaze, but I keep a firewalled ES just because it has that save to option in the share menu. Though as far as botnet, I do have AirDroid installed because I like the easy sharing between my computer and my phone. I can also remote in to my phone so I can have it blare weeb music every time I lose it on silent.
>>
>>55679454
Didn't mean to reply
>>
>Most popular phone OS doesn't have a fast and reliable smb file explorer app
Why is this allowed reeeeee
It should be a built in functionality
>>
This got me scared. What about total commander?
>>
Tfw malicious chinks may already have my most used password
Thanks Android
>>
I don't understand why it seems so hard for Google to put in a halfway-competent file system explorer in Android.

Every file explorer is adware, nagware (pls buy the pro!) or just plain botnet.

I have File Commander that comes preinstalled and can't be removed; that piece of garbage begs me to buy the premium version every time I open it and has ads that take up half the screen.
>>
>>55670245
>>55670940
Weird, when people talk about marketshare you autist say android is linux but now its not..
>>
>>55679566
>Every file explorer is adware, nagware (pls buy the pro!) or just plain botnet.

AMAZE
CABINET
>>
I've installed this shit some months ago on my phone to create a .no media file
How fucked am I? What should I do?
>>
is there a good non-botnet file manager which lets you browse your local network?
>>
>>55679591
>modified linux kernel
>kernel = OS
How does being retarded feel?
>>
>>55670022
Are you fucking serious?!?! I just bought this fucking app 2 months ago. Ahhhhh for fucks sakes!! The one time I actually breakdown and pay for an app, its literally malware.

Oh well, guess I'll try Amaze or Solid Explorer.
>>
>>55668831
If this is a botnet what's an alternative? I find this useful on my $100 tablet when I wanna chill in bed and watch tv
>>
>>55674834
>>55676923
>>55679566
>>55676333
>>55680013
>>55682011
MiXplorer is free and has all the features compared to other clients. Download it from xda.
>>
>>55682011
That's the problem I guess. It is so useful. But is your privacy worth the convenience?

I just ran OS Monitor and don't see my phone making any connections to Beijing, so I guess I'm safe. Removing ES file explorer seems to have been enough.
Anyone with ES installed want to check their listening connections and post what they find? OS Monitor is on F-Droid and the Play store.
>>
>>55668831
ssolid explorer's ggod
also X-plore if you want serious horsepower, free, and don't mind the ui.
>>
Trashed ES long time ago. Solid Explorer is where it's at.
>>
I thought ES just added an obnoxious cleaner and a homepage with ads on it? Then I figured that everyone, upon seeing the cleaner, and the new app analyzer pop-up went mental?

Is there actual malware in it? I haven't seen any usual traffic from my phone (yet).
>>
>>55671609
Why would Google remove a source of their income?
>>
>>55674418
>...which makes Apple the morally superior company!
>>
>>55677122
No less acceptable than a piece of software accessing a PC's serial or other unique numeric identifiers for licensing purposes.
>>
Anyone else you Air-Droid? Web interface is pretty nice and easy to use.
And as for EX i uninstalled it after i was unable to sign into my laptop through the the LAN feature cause every time id put in my pw and user it would reset the window box saying the info was wrong
>>
File: 1463624777513.png (98KB, 500x369px) Image search: [Google]
1463624777513.png
98KB, 500x369px
>>55673777
thos trips...
>>
I always taught that the app was bloated and weird, so I deleted it. Fuck this botnet.
>>
>>55673198
What would it achieve with brute forcing your server?
>>
>>55682932
Control of the system. It could become a bot in an actual botnet

>see https://www.wiredtree.com/blog/xor-botnet-attacks-linux-servers-weak-ssh-security/
>>
Reminder that, rooting is worth the effort.
>>
>>55682971
Oh shit so it links up with other botnets and does DDoS attacks and shit? That is what I imagine.
>>
Amaze is my choice. ES was pretty suspect but I still have it on my porn tablet.
>>
>>55682974
I wish it was on my Note 5
>>
>>55682752
Malware could be being served by the ads if not a "feature" of ES
>>
>>55683115
Though that's true for anything with ads, and those only exist on the homepage. They don't even stick to your screen or change like the likes of Pixiv.

As for the features:
>App Analyst
It warns if you install something that requires certain permissions. Kind of annoying, but you can turn this off.

>Cleaner
Annoying, but more like a worse version of SD maid with about ten separate ways to get to it in the interface. You can't hide three buttons, but it never comes up on its own.

My main concern is if things are being sent to China besides the obvious Ad HTTP requests, or if this app is doing something malicious that I don't know about.

I basically feel like you all know something I don't.
>>
>>55683343
>three buttons
*these buttons
>>
>>55673876
So how is that testing is going anon?
>>
>>55673777
Yes, my OS lets me do what I want, thanks.
>>
File: tumblr_o866v07GU11qjin05o1_1280.jpg (241KB, 1280x997px) Image search: [Google]
tumblr_o866v07GU11qjin05o1_1280.jpg
241KB, 1280x997px
Are you niggers serious or is this thread made by ES competitors to shill their own product? I installed this shit because my tablet had no file manager and I couldn't access my files without downloading one. This one was the most popular on goygle pay.

What is a good nonbotnet file manager? I don't care about features. Just need one to access, move and delete my files. Can even pay for premium for a clean app with no crapware on it.
>>
Use FX like a decent human bean ffs
>>
>>55683644
Amaze from F-Droid seems to be the best I've come across.
>>
>>55683644
Also, would deleting it even change anything at this point? I've been using for a month.
>>
>>55683704
Check what outgoing connections your phone is making and use a root explorer to look for folders named baidu or diaixin
>>
>>55682182
Yeah I removed it and checked on OS monitor and it looked clean. I always had ES blocked on my firewall though.

I switched to solid explorer, hopefully it turns out being good.
>>
>>55673876
Yeah anon, hit us with your analysis
>>
>>55671043
>>55671043
>>55671043
>>55671043
>>55671043
this
>>
>>55685413
Why did you use the same quote 5 times?
>>
>>55683644
if you need something simple to just access the files on your tablet, install Cabinet
good looking and free (no ads)
but doesn't have a lot of features

Solid Explorer has a lot more features and is cheap ($1 or $2, can't remember)
>>
Why not use total commander? I have been using it for years.
>>
>>55687401
fx is better
>>
>>55681299
You tell me
>>
>>55687512
>replies over 7 hours after the other post
>>
>>55687364
>paying for a basic OS feature
>>
>>55687635
what?

read again, if you just want to browse your phone/tablet files, go ahead and install Cabinet, or another free file explorer

when you buy Solid, Amaze, ES, etc you're paying for the extra features that are not 'basic OS feature'

also, can you name one big phone OS that offers a file explorer out of the box?
android doesn't
ios doesn't
windows phone... i don't even know wtf that shit offers
>>
>>55679526
>using passwords more than once
you deserve it
>>
>he doesn't use X-Plore
lel
>>
>>55678419
>girlfriends
>my
>>
>>55687692
My S5 has a file explorer out of the box
>>
>>55688308
but that's because of samsung... every manufacturer may sell their android phones with additional apps pre-installed

it doesn't change the fact that android doesn't offer it out of the box (so it's not a 'basic OS feature')
>>
>>55688369
http://wccftech.com/how-to-access-stock-android-6-file-explorer/
Not totally true anymorex but you're right. Before 6.0 Android had no file manager
>>
>>55688513
that stock file explorer is so shit that I didn't even remembered it existed

but yeah, you're right, android does offer it out of the box
>>
Yeah, I haven't used it in a long time, got a new phone recently and decided to give it a go, jesus fuck what a clusterfuck it is now.
>>
File: j09_RTR2EVEL.jpg (131KB, 1235x768px) Image search: [Google]
j09_RTR2EVEL.jpg
131KB, 1235x768px
>>55682915
i didn't even notice :^)
>>
>>55688676
>using the smiley with a carat nose
>>
>>55683363
My downloader isn't working. Downloading from their site, but the download appears to be for an older version. Will post results if anything different from Virus Total's results, shows up.
>>
>>55668831
I thought ES was discovered to have baidu spyware like 2 years ago
>>
>>55688888
checked and witnessed
>>
>>55689277
dubs confirms
>>
>>55676743
shit
>>
File: botnet.png (188KB, 1912x418px) Image search: [Google]
botnet.png
188KB, 1912x418px
>>55688888
Still in there, too. This is a file named adjunk.txt in the assets file from the extracted apk.
>>
File: 1445785093652.png (137KB, 300x300px) Image search: [Google]
1445785093652.png
137KB, 300x300px
>>55690244
>adjunk
>>
File: fuckme.png (95KB, 198x192px) Image search: [Google]
fuckme.png
95KB, 198x192px
Welp, I tried Solid Explore. Fuck that trial-ware bullshit. I looked at Amaze and laughed.

I deiced to stay with my purchased version of ESFile Explorer. If I start noticing anything suspicious, I'll just start turning off unneeded permission access to the app.

As much as I hate supporting a malware shithole company, ES is still, by far, the best most feature filled file manager for Android.
>>
>>55673749
Bs media player
>>
X-PLORE
|
P
L
O
R
E
>>
>>55668831
i stopped using this 4 years ago, its so bloated, why not just use your stock file manager.
>>
>>55677178
nothing on f-droid supports nfs/samba.
>>
Might not even be related at all to that app
>>
>>55668831
A vast majority of android """apps""" are thinly veiled botnets. There are very few actual programs for that platform. I blame the chinks.
>>
File: tumblr_o04jecF1sj1tlp9xmo1_1280.jpg (33KB, 600x593px) Image search: [Google]
tumblr_o04jecF1sj1tlp9xmo1_1280.jpg
33KB, 600x593px
>>55692983
but the chinks are so adorable
>>
>>55682974

Hey homeslice, do MiXplorer or FX File Manager handle:

1. Logging in to Windows shares
2. Sharing between two Android devices (like ES does)

These are the features I need to replace but most people here just seem to think ES is just a local file explorer (or are pretending to understand what a file explorer is).
>>
Use F-Droid for all your main apps, and Google Play for muh gaymes and muh trendy social networking garbage


Google's insistence on no real quality control is really biting it in the ass hardcore
>>
>>55679953

Amaze is broken since their last update.
>>
>>55693159
FX does, but that requires a paid add-on.
>>
>>55693201
Get it from F-Droid. I can assure you it's not broken since it hasn't been updated.
>>55692962
What could it be then?
>>
>>55693216
>>55693159

I confirmed that MiX will login to a Windows share (crap UI layout but it works). I'll have to try it with another Android device later.
>>
>>55679432
you have to hit the + its not in the sidebar until you bookmark it

>>55691581
>i dont notice it so everything is perfectly fine
enjoy your ES installer, ES file optimizer, ES gallery, etc bullshittery - oh and ES botnet of course
>>
I've been using mixplorer off of XDA for awhile. I don't know how to set up a home server, but it does everything else I need.
Anyone know if it's full of mal/adware?
Thread posts: 163
Thread images: 12


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.