I jumped on the bandwagon and installed the 2.1 Leaked rom for my Droid Eris as soon as possible.
Last week my gmail accounts password was stolen. Also, my gmail account was sending out spam.
I ran a ESET32 Anti-virus security scan and found no threats. Afterwards I ran Malwarebytes and also found the same results, nothing. I changed my gmail password and all other accounts associated with my gmail.
I am a competent computer user and keep my Windows 7 64bit install clean, tidy, and updated. I use Google Chrome to browse the web carefully and I only visit websites I trust. Although it is very possible, I find it highly unlikely that my system was infiltrated.
I assumed I screwed up somewhere and my desktop was hacked.
Heres where the interesting part starts, Although I changed my password around a week ago, apon logging into Gmail today I was notified about my account being accessed on June 3 (3 days ago) from 6 different Chinese Ip's. I changed my password and security question today and closed all of the email sessions located in China.
My system shows 0 threats after running ESET ENOD32 Anti-Virus and Malwarebytes.
I don't have any other device that stores my Email password besides my Droid Eris.
I could be stepping out onto a limb here, but I still have to enter my Gmail password everytime upon opening the Android Market. I know this has been listed as a bug before. Also, I can't enter my password to enter the Market unless my 3G AND GPS is turned on. It does not work if the GPS is off.
Could it be possible that everytime I enter my GMAIL password into the Market app, it sends a copy out to China?
Why does my GPS have to be turned on to accept my password?
Is the "leaker" from china who released the 2.1 ROM to XDA a trusted source?
Help me out guys!
update to the latest leak and you wont be having these problems
rohanic said:
Is the "leaker" from china who released the 2.1 ROM to XDA a trusted source?
Click to expand...
Click to collapse
The leak, although it appeared to come from riverrunner, actually was leaked by one of the devs that has put in a lot of work in making the eris awesome.
Like Royel said, update to the latest version of the leak and you shouldn't have any of the password login problems.
Not sure about the gmail problems, but I've been running all the leaked versions and had no problems so far.
This post prompted me to check on my account also
Confirmed, IP in China has been logging into my gmail account also.
LexusBrian400 said:
This post prompted me to check on my account also
Confirmed, IP in China has been logging into my gmail account also.
Click to expand...
Click to collapse
Where do you find out how to check.
Log in to Gmail, scroll all the way to the bottom. It will show which IP you last logged in from. Next to it is a link, I think it says "details". A window will pop up showing you all IP addresses that your account has been logged in from.
korben dallas said:
Where do you find out how to check.
Click to expand...
Click to collapse
I am a new user, so I can't post links to the how to. Basically log in to gmail, click on settings, scroll down to the bottom where it shows how much storage you are using, just below that in tiny print is "last account activity", click on details.
I just checked the details on my account and I am getting no logins from China, or anywhere that isn't me.
Just a thought, but have you checked to see if it's the same IP address each time? If so, you may be getting a weird IP address from VZW that google is geo-locating to be from China even if it isn't.
Unless we start getting a lot more people confirming this, I would say it is probably not an issue with the leaked rom but more likely something else (virus on your computer, an app that logs into google accounts for you).
wow, weird. i've often checked my "last account activity."
i'll randomly get some logins (all mobile logins) from another state (Michigan... right next door to me). i imagine it's just due to the IP that i'm getting on my phone...
now, i've NEVER seen anything from China before... and i've run just about all the leaked ROMs out there
strange indeed... i'm assuming all the "china" IP's were mobile logins?
I just checked mine and I had multiple logins from two different IPs. The ones from a desktop were my IP (in Oklahoma) and all of the ones from a mobile device were from a Florida IP. I logged off all of the other accounts and changed the password to a long string of letters and numbers, then logged in on both my desktop and my phone. After that the same two IPs were logged in, so apparently my verizon IP is somewhere in Florida.
I'm not sure why they would use an IP in china, but it could be a similar thing happening to you guys.
While blocks of IP addresses are allocated regionally (hence the different IP registries such as ARIN, RIPE, and APNIC, this happens at very small prefixes (huge blocks of IP addresses).
Geo-location of an IP address is imprecise for a wide variety of reasons. (Despite what you see on popular "crimefighter" TV shows). An AS (BGP Autonomous System) can emit packets from multiple points within their network, depending on instantaneous routing conditions; this is especially true for large national carriers such as Comcast, Verizon, Sprint, AT&T, etc.
One thing that no-one mentioned here is that every one of the Leak ROMs were cryptographically signed by somebody at HTC. If there is malicious code in the ROM, it came from HTC. Seems kind of unlikely. Feasible, but still seems unlikely.
bftb0
Leak isn't sending out passwords. In fact, if i remember right your pass isn't stored on the phone, a key is.
Virus scan won't catch everything, especially new things.
1) Do any OS upgrade on your PCs, I recommend for non techies http://tinyurl.com/m7r5h or for techies http://tinyurl.com/mkly.
2) change all your passwords
3) dont cross use passwords
4) choose complex passwords >10char in length.
jcase said:
Leak isn't sending out passwords. In fact, if i remember right your pass isn't stored on the phone, a key is.
Virus scan won't catch everything, especially new things.
1) Do any OS upgrade on your PCs, I recommend for non techies http://tinyurl.com/m7r5h or for techies http://tinyurl.com/mkly.
2) change all your passwords
3) dont cross use passwords
4) choose complex passwords >10char in length.
Click to expand...
Click to collapse
2nd to that, also Another great one for techie http://www.archlinux.org only if you like getting ur hand dirty and learn more about how Linux work from ground up, less hassle than doing Linux from Scratch lol, although it's fun, very rewarding experience and it'll come in handy when you want to do ROM cooking since it's based on Linux.
Just opened my viewsonic Gtablet from Tigerdirect. Ran the OTA update and now running 3588, otherwise straight out of the box.
I am unable to log into any account using an app (mail, contacts, skype, tdameritrade, twitter apps). I am able to log in fine when I visit the website and login through the web.
Is there someplace I have to grant apps permissions to use the internet? Why can't I log in?
Thanks.
Just checking if anyone else had this problem. If not other responses, I'll let this thread die. Thanks for reading.
seldeen said:
Just opened my viewsonic Gtablet from Tigerdirect. Ran the OTA update and now running 3588, otherwise straight out of the box.
I am unable to log into any account using an app (mail, contacts, skype, tdameritrade, twitter apps). I am able to log in fine when I visit the website and login through the web.
Is there someplace I have to grant apps permissions to use the internet? Why can't I log in?
Thanks.
Click to expand...
Click to collapse
No. There is no special place to grant permissions to use the internet. Do you get any kind of error message? Force Close? Some indication of symptoms might help us diagnose the problem.
Get an app called Superuser. You will need to root the tab, as well. I think there's something like "oneclickroot" out there.
Honestly, grab a custom ROM, they all come with this standard.
Rooting shouldn't be necessary to make any of those apps work so I doubt that will help him.
Google login fails, 2 step verification is culprit
This may not solve your problem, but it knocked me for a loop for a whole evening with my new motorola defy this week.
You get a new android device, and everything looks so nice, but then you try to log in to your google account. Repeatedly. You keep getting an error that says the username or password are wrong, even though you can log in on your pc. OBVIOUSLY the password is fine, but it wont work on your new android device.
Well, if you turned on 2-part authentication then you have a problem. (If you have never heard of 2-part authentication then move on, you would have to have done this on purpose and it is way to painful to forget having done it.)
Android doesnt support 2-part authentication. So you have to generate a special password for your android device.
Start by logging in to gmail, or whatever google service you wish. Go to your account settings (the little gear-looking thing in the upper right.) Under Personal Settings, Security you'll see an entry called "Authorizing applications & sites". Go here and make an entry for your device, and it will generate a special password for that specific google application that doesnt happen to support 2-part authentication. Enter your super-secret password.
Suddenly the world is golden.
Probably not what the OPs problem was, but I wanted to put it SOMEWHERE.
grrrr....
Hi. I'm glad to finally be here.
Let me explain the context of my question. I'm designing an application in Android that works consuming a web service. For all inquiries carried out to that web service, you must authenticate to each perform.:silly:
I tried to use SSL certificates for greater security, but at the moment it is too advanced for me just knowing how to create a certificate, then install it on the server and on the client and the connection between them that way (If anyone has a tutorial will be welcome).
For now, I managed to connect via http without any protection. To authenticate the device that performs, IMEI shipping plus a random password (created in the registry).
Well, my question is whether this is an acceptable way or is there more optimal way that take care information that those using the app.
Thank you very much for your help, since I have no one else to turn.
I have been trying to get a distributor certificate but everytime I log in th=o the Tizen site it asks for my author user name and password and then just kicks me out without going to the certificate page. I have double checked all passwords, tried this on two PC units and tried it on a Mac. Everytime I get the same results. (Video ) http://popogigo.synology.me/tizen-auth.mp4
Please help if you can..
I would like to use an android as a Windows 10 PC terminal. I'm using a Samsung Fold3 running Android 12 if it matters. It seems like a fairly simple process. Enable Remote Desktop on the Windows 10 PC. Make sure the PC's firewall (and virus protection software) passes Remote Desktop access. Install Remote Desktop Client on the Android and setup the connection to the PC.
The Remote Desktop Client sees the PC, fills in the active user account and requests the user password. I can enter the password but the android does not respond to the "Continue" button and all I can do is cancel out of it. I can also try to edit the PC configuration to setup a user account so that a password does not need to be entered each time but in this case the save button is unresponsive whether or not a password is entered.
This same thing happens whether I select the PC found on the local wifi or I enter the PC's IP address manually (with or without the 3389 port number).
Can anyone give me a clue as to what I'm doing wrong or how to proceed?
Sorry. User error. I was doing something stupid.
Never mind.
These remote desktop options allows you to access Windows from Android easily with just one click.https://www.anyviewer.com/how-to/remote-control-windows-10-from-android-0427.html
Oliviaaaa7 said:
These remote desktop options allows you to access Windows from Android easily with just one click.https://www.anyviewer.com/how-to/remote-control-windows-10-from-android-0427.html
Click to expand...
Click to collapse
Thanks for the link.
My initial problem was just a usage error getting Microsoft Remote Desktop Client to work when on the same network. I fixed that issue and am able to use it to control my PC from an android as long as I'm on the same local network which is useful but I would also like to be able to do it from anywhere on the internet.
Your link led to a discussion of this issue with the possibility of using port forwarding or a VPN to allow access to my PC from an external network with varying degrees of complexity and hacking potential.
The link also discussed using chrome and a google account to access my PC remotely. This is unacceptable because I won't use chrome and have uninstalled it from all my android devices plus although I do have a Google account, I only use it to explicitly download apps from the store and otherwise disable Google Play Services and the Google Play Store and will not use any app that requires Google Play Services to function. So this option is out.
The final option requires me to create an account at a third party site and presumably direct all of my traffic through this third party. This too is unacceptable to me.
So the question is, is there a simpler method to access my PC from an android device that's on a different network than having to setup a vpn or enabling port forwarding on my router, that doesn't require registering for and using a third party service to accomplish the goal?