PDA

View Full Version : Possible Malware inside of Kodi...



4me2c
09-21-2018, 02:16 AM
https://koditips.com/kodi-malware-bubbles-gaia/

C/P :

by Admin | Sep 14, 2018 | 0 Comments

How to Check if you are Infected by Kodi Malware from Gaia

NOTE: You can only be affected if you are using either Windows or Linux. Android Kodi users are not involved in this Kodi Malware scheme at all.

From the Kodi home screen, navigate to SYSTEM (cog wheel) > SYSTEM SETTINGS
Change the settings level in the bottom level to Advanced or Expert
Click on Addons
Click Manage Dependencies
Scroll down to Simplejson and right click or press the menu button (‘c’).
Click on Information
If you have version 3.4.1 installed, then you have been infected with Kodi malware and need to get version 3.4 from the official Kodi repository instead.
Find the Kodi addons folder and delete the script.module.python.requests folder.

If you have been infected, you should use an anti-malware software to scan and block these threats:

CoinMiner.II and CoinMiner.MK on Windows
CoinMiner.BC, CoinMiner.BJ, CoinMiner.BK, and CoinMiner.CU on Linux


... I have no Knowledge of CoinMiner, etc, so Use At Your OWN RISK...! ;)

dishuser
10-01-2018, 04:28 PM
stay away from tvaddons

4me2c
10-07-2018, 05:56 PM
stay away from tvaddons

My Thoughts Exactly :

Best Regards,

TV ADDONS

6228 Saint Jacques Street
Montreal Quebec H4B 1T6
CANADA

Marley
10-25-2018, 06:18 PM
olpair and other have virus which dont show tell to late and bitch to remove them if you have windows10

12icer
10-18-2020, 03:26 AM
There is a problem with P2P being used on android systems Since Kodi runs a lot of P2P programs, it is possible to be used as transfer station or as a link to transmit data pacs for another uploader. I got hit with a letter from some agency about a movie being downloaded to one of my devices and it said I had distributed the movie in violation of copyright laws. That was with Popcorn Time P2P, and I never even downloaded the movie.

Here is an article about Android hacking.


https://arstechnica.com/information-technology/2020/10/thousands-of-infected-iot-devices-used-in-for-profit-anonymity-service/"]https://arstechnica.com/information-technology/2020/10/thousands-of-infected-iot-devices-used-in-for-profit-anonymity-service/

4me2c
10-18-2020, 01:05 PM
From Inside of 12icer's above link :

"Bitdefender estimated that there are about 9,000 unique devices, with the vast majority of them being Android devices. Only about 1 percent of the devices run Linux, and only one machine is believed to run Darwin. Based on clues gathered from the operating system version and, when available, the hostname and user names, the security firm has identified specific models of routers, NAS devices, TV receivers, and multipurpose circuit boards and microcontrollers (e.g., Raspberry Pis) that likely make up the botnet.

Many criminals use anonymous proxies to transmit illegal data, such as child pornography, threats, and swatting attacks. Thursday’s report is a good reminder why it’s important to always change default passwords when setting up Internet-of-things devices and—when possible—to also disable remote administrative access. The cost of not doing so may not only be lost bandwidth and increased power consumption, but also criminal content that might be traced back to your network."

Thanks for the Link, Very Informative Indeed...!!! Hope More will visit it in a "New Tab"...!!

1944
10-18-2020, 03:52 PM
I have version 3.16.1 is this one OK????

4me2c
10-18-2020, 05:17 PM
As 4me doesn't use that Add-on, here is a suggestion...! Using Your Computer, go to where You downloaded that App/APK and download it onto Your Computer...! Don't Open or Run it, put Your Mouse Over it and Right-click it... You should get a small window with Options... One or more should bee to Scan It with what-ever Anti-virus, Anti-spyware or what-ever You have on Your Computer... Click to Scan that File and wait for the results, You will bee Informed if there is something in there that shouldn't be there...! Choose Wisely...! Stay Safe...!!

duhhud
10-18-2020, 06:16 PM
also if any app asks to use idle resources DO NOT ALLOW IT TO they could use your ip as a proxy as well.

andkaal
12-07-2020, 02:58 PM
I have version 3.16.1 is this one OK????

Is this version 3.16.1 O.K. I also would like to know if anyone has the answer. Thanks andkaal

Shooty
12-09-2020, 06:18 PM
On Kodi, System settings/ system/ services -Control tab.
allow remote control via http - Off (unless required by you, then change the default port/user/pw).
allow remote control from apps on this system - Off (on will allow passthrough control from a kodi installed addon)
allow remote control from apps on other systems - Off

As for Android apps, each one has permissions that can be checked.
/Shooty

andkaal
12-10-2020, 12:45 AM
[QUOTE=Shooty;276837]On Kodi, System settings/ system/ services -Control tab.
allow remote control via http - Off (unless required by you, then change the default port/user/pw).
allow remote control from apps on this system - Off (on will allow passthrough control from a kodi installed addon)
allow remote control from apps on other systems - Off

As for Android apps, each one has permissions that can be checked.
/Shooty[/QUOT
Thanks Shooty for the advice. andkaal

4me2c
12-10-2020, 02:33 PM
Yeppers, Good Post @ Shooty... Thanks...!!!