How do we TRULY protect our phone against theft... - Android Q&A, Help & Troubleshooting

I was wondering if anyone has found a way to develop any kind of protection for our phone that does more than apps that are installed once booted up? Let me explain. There are quite a few different apps that protect and find your phone and they can be protected from being uninstalled or turned off so that a thief cannot disable the protection. But there is one glaring weakness. I have yet to find any kind of protection that keeps a person from getting around all of these current apps by simply removing the battery and rebooting into Recovery and flashing to a different ROM or firmware. By doing this they are able to delete everything on the phone and they basically have a brand new phone in hand. We need a way to protect against a person being able to simply take out the battery and reboot and flash a new firmware. The protection needs to be built into the Recovery and Download modes or protect the phone before they reach Recovery or Download modes. If we can't find a way to protect prior to reaching these modes then a thief who knows anything about changing firmwares or recoveries can simply replace what is on the phone and successfully have bypassed all the protection that we invested in with these apps that are on the Play Store or at other places.
So does anyone know of any way that we can get this kind of protection? I have never seen anything that can do this. Is it even possible to build this kind of protection? If anyone knows anything, I would love to hear it. Thanks.

I heard there are apps that can be flashed to the phone and are running in the background that notify you with an sms if the sim card is changed, but they can be easily removed by wiping the cache/factory reset and/or installing a new rom.
However every GSM device as a unique IMEI code so that if your phone gets stolen you can go to your service provider or the police they can search for the code and have a basic idea of where it is. Even if you don't know the code i'm sure your service provider keeps logs of it.

gaka01 said:
I heard there are apps that can be flashed to the phone and are running in the background that notify you with an sms if the sim card is changed, but they can be easily removed by wiping the cache/factory reset and/or installing a new rom.
However every GSM device as a unique IMEI code so that if your phone gets stolen you can go to your service provider or the police they can search for the code and have a basic idea of where it is. Even if you don't know the code i'm sure your service provider keeps logs of it.
Click to expand...
Click to collapse
Yeah, I was aware of using the IMEI. But judging from the success that people have of stealing phones and never getting caught, I just assumed that for one reason or another this method just wasn't a very reliable way of getting your phone back.

Well a friend of mine found an old nokia phone in a park near where i live. She needed a 2nd phone and decided to use it. However after 2 or 3 weeks a police officer went to her home and they accused her of theft.
Anyway if you don't trust the authorities your my best guess is flashing one of those background running apps. Do a research i'm not realy familiar with them.

gaka01 said:
Well a friend of mine found an old nokia phone in a park near where i live. She needed a 2nd phone and decided to use it. However after 2 or 3 weeks a police officer went to her home and they accused her of theft.
Anyway if you don't trust the authorities your my best guess is flashing one of those background running apps. Do a research i'm not realy familiar with them.
Click to expand...
Click to collapse
It appears that relying on the IMEI is going to be the only way for true protection. The background running apps don't work if you note in my OP. All you have to do to get around them is to remove the battery and boot straight into Recovery and flash a different ROM or firmware. That will erase everything on the phone including any apps installed, even if they do run in the background. They can't run in the background if they aren't there.

Related

[Q] Galaxy S2 I9100G Lost//// Important info needed

Helo ppl....I happened to miss my S2 about a week back after which I had lodged a police complaint with IMEI and relevant details and am waiting for information about the phone. Regarding the instances and settings with which the phone was lost gave me a few doubts which I post here. Any one who could throw some light would be helpful
1) When the phone was lost it was already in 2% battery level. So as soon as I lost it when i called back to my number obviously I got a "phone switched off" message.But not sure if it had switched off by itself or if it had been switched off. I believe there is no way of knowing. But if any one has a miraculous idea or sumthing.... do post
2) I had pattern lock active on the phone so I wonder if there is any layman work around for pattern lock just to be sure if my data has been compromised. And also, if the pattern lock is active , when the phone is connected via USB does it give direct access inspite of the pattern lock or how else does it work? If my phone does end up non-traceable i just want to rest assured that the data doesnt get out and to bypass the lock the thief just formats the phone, which i would say is much better for me.
3)I came across a very promising tracking software called Plan B on the google play store and tried installing it via my computer by logging in to my gamil ID. Once i went to the google play store I could see that my ID was still associated with Galaxy S2 even after a week. So does the last active device on the gmailID still show up even if the phone has been logged of my account/phone formatted or could i take it that the device has not been logged off my gmail ID/not formatted yet??
Thanks for ur replies....
If you didn't install tracking software on your phone before you lost it, the police recovering it is your only chance. And at a rough guess, police probably recover 0.01% (1 in 10,000) of stolen mobile phones (in Australia at least)...you know the rest.
MistahBungle said:
If you didn't install tracking software on your phone before you lost it, the police recovering it is your only chance. And at a rough guess, police probably recover 0.01% (1 in 10,000) of stolen mobile phones (in Australia at least)...you know the rest.
Click to expand...
Click to collapse
So what is the best tracking software for our phones?
There's lots of them. Search Google Play. I don't use any on my phone, but I use Prey on my laptop & I've heard good things about their Android app. Try a few out & see which has the features you want & works best for you.
metinrecepi said:
So what is the best tracking software for our phones?
Click to expand...
Click to collapse
@mistah: thanks for the replyy....i too know the scenario about police helping out...but they insisted that they had retrieved quite a number of phones and since it was a smart phone it would be easier they said.......I was jus hoping if some one could enlighten me on point no 2).....

If You Bought a Used Android You Could Be Being Tracked!

I believe this information should be out there for all Android users and i dont recall seeing it anywhere but i hang out here right now and thought i would share what i discovered on accident.
i reference a RAZR M here but INSERT any Android phone as far as i can tell.
***please Devs and such i am not one so ignore my possible misuse of how exactly it operates but i just wanted to share the point of this not how the Android OS operates
i had a RAZR M with ROOT and installed Avast Mobile Security (i believe many others would do this as well) and since i was root i installed it as a /System app. this as some of you may not know makes it kinda part of the OS now. this means that a Factory Reset does not remove it but instead installs it again. i will explain how i discovered this:
- had a RAZR M as mentioned and i installed Avast as /System
- you can rename the app itself to whatever you want like "fletch33" and so anyone who finds your phone wouldnt know it was a security app and try to uninstall it. this is a great feature so i renamed it.
- this will do the standard stuff like locate your device, wipe it, make it beep, etc....
- i decided to give the phone to someone else and they wouldnt want root items or anything so i did a factory reset forgetting i had installed Avast as /System so they would have a clean start with the M
- since Avast was /System it became part of the Factory Reset process and so a what i thought was a clean fresh phone actually still had Avast on it but now since it was fresh and clean there were no signs like an app to remind me i had installed it as root. i honestly forgot it was on there.
- i had selected to get notifications of where the phone is if it traveled a distance but could see it whenever i wanted with a browser login to website and although i had reset it that STILL WORKS! i am getting emails when it moves and can login and see it.
- there are no visible signs that this is on the M (insert any phone)
- in my knowledge the only way the tracking etc... would stop is if i were to ODIN or SBF or whatever the equivalent is on that particular device or i would have to re-install Avast and it would then allow me to put in my passcode and then i could uninstall it.
the moral of the story is that any used phone could have had this done and if not by accident like mine but on purpose for whatever reason.
fortunately i gave the M to a family member and i will fix it for him but it really made me think what it could be used for ....
if this has been mentioned or i am incorrect i apologize in advance but when i started getting emails about where the phone i gave away was located all the time from Avast after a Factory Reset i decided i should share this so that others might take precautions with their second hand Android device.
1. I always Odin my phone and procedure to rooting with in a few short hours of owning device.
And if not, I'm pretty sure unlocking the device will erase everything. (in a lot of my previous cases)
2. And I see nothing wrong with the previous owner being able to track me picking up his wife and taking her back to the white house to make her my First lady
Yep, first thing I would do is wipe the phone properly.
"Factory reset" is a really bad name for the process...it does nothing of the sort.
Um, makes complete sense that you can still track the device. I assumed that before you even posted it. Same way you can track devices through android device manager, moto software, etc etc.
You're forgetting a huge oversight here.......it doesn't really do much good if stealing someones phone, then wiping it, would get rid of all tracking options. Kinda defeats the purpose. Otherwise people would steal someone's phone, factory reset, then go about their merry way and you're SOL...
TechSavvy2 said:
Um, makes complete sense that you can still track the device. I assumed that before you even posted it. Same way you can track devices through android device manager, moto software, etc etc.
You're forgetting a huge oversight here.......it doesn't really do much good if stealing someones phone, then wiping it, would get rid of all tracking options. Kinda defeats the purpose. Otherwise people would steal someone's phone, factory reset, then go about their merry way and you're SOL...
Click to expand...
Click to collapse
sure but since most Android phones dont offer a iPhone like recovery and most users dont even know what root it then to me its those people that should have concern.
i always ODIN or SBF etc.. myself if i pick up a used phone but most people woudnt even know about that.
Manufacturers should release iPhone like recovery system so that an average person can clean their phone without tech knowledge and downloading a file somewhere.

HUAWEI Y538: how to upgrade Lollipop to something usable?

I lucked into a sale on a HUAWEI Y538 smartphone at Best Buy the other day, knowing we have no Boost Network around here for the cellphone service. Perfect!
I just wanted it as a nice little media player and access to my LAN, like my KitKat tablet. Nothing terribly fancy. I rooted it with Kingo, hoping to remove that nag cellphone activation every startup. I have to press Accept, then Self Service comes in and I click the no button. In addition as many of you know, Lollipop has a lot of unwanted background apps running . I spent a whole day trying to tame this and the only good news is that I worked out the factory reset.
My real question is if it's possible to remove that startup nag entirely, but either way, to ask if it's possible to downgrade to KitKat or something else? As a WiFi-only media player Lollipop would seem to be quite awful.
I've been on computers for decades but no experience with Android except my happy KitKat tablet. If some kind soul could be persuaded to help me out, well that'd be really cool.
JoeyTablet said:
I lucked into a sale on a HUAWEI Y538 smartphone at Best Buy the other day, knowing we have no Boost Network around here for the cellphone service. Perfect!
I just wanted it as a nice little media player and access to my LAN, like my KitKat tablet. Nothing terribly fancy. I rooted it with Kingo, hoping to remove that nag cellphone activation every startup. I have to press Accept, then Self Service comes in and I click the no button. In addition as many of you know, Lollipop has a lot of unwanted background apps running . I spent a whole day trying to tame this and the only good news is that I worked out the factory reset.
My real question is if it's possible to remove that startup nag entirely, but either way, to ask if it's possible to downgrade to KitKat or something else? As a WiFi-only media player Lollipop would seem to be quite awful.
I've been on computers for decades but no experience with Android except my happy KitKat tablet. If some kind soul could be persuaded to help me out, well that'd be really cool.
Click to expand...
Click to collapse
https://www.techmesto.com/unlock-bootloader-huawei-honor/
http://forum.xda-developers.com/and...how-to-data-off-shell-command-tasker-t3370783
Well I can't thank you enough for trying, but it seems Huawei changed their procedure. I got the 4 informations required and registered with Huawei. Going to the unlock page changes to Chinese and says too much traffic for servers in English. So I emailed Huawei Mobile support and got the following reply:
Dear User,
Huawei Customer Service is pleasure to be at your service,sorry to bring you the trouble,if you want to unlock your phone, you should meet these conditions as follow:
1.Please register your Huawei ID in our official website http://huawei.com/en/ on your phone.
2.Log in your Huawei ID for continuously 14 days.
3.Each Huawei ID should not apply for the unlock code more than twice within half years.If you meet the information,please go to http://emui.huawei.com/en/ and click the 'download'button to login your Huawei ID other than any other third party ID to apply for the unlock code.Please contact us by mail or local service hotline as following if error message appears.
TEL: http://consumer.huawei.com/en/contact-us/index.htm?tag=hotline
Mail: http://consumer.huawei.com/en/contact-us/index.htm?tag=email
Please submit your mobile model, SN, IMEI/MEID and erro message in your e-mail.We also need to know that your phone is rooted, it can be out of the best working state and part of functions may not be able to work normally. In additon, the system is vulnerable to be invaded by viruses once your phone is permitted to unlock. What's more, for the lacking of fully tested, the third party software will not be compatible with your phone. Unlocking will bring unexpected negative impacts and the device will be not normal, and can not be restored, Huawei after-sales service office will not provide warranty service for your rooted phone, and you may bear the cost. So we strongly advise you to think it twice.
If you have any other problems, please send your feedback to us. We will be at your service to help you to solve your problems.
Once again thank you for contacting Huawei device.
Best Regards.
Huawei Device Customer Care Team 3206
Click to expand...
Click to collapse
If I 'm reading that right they want me to log in every day for 14 days, which is kind of nuts.
To be fair the phone may possibly be rooted using Kingo (fast boot showed an "unlocked" message which I don't know if that means rooted but probably not boot unlocked), and for all I know that changes some of the information.
So I'm just replying FYI so you know how it went. Maybe I should do factory reset and try again?
Long day I'll go crash and see how it looks in the morning. Thanks for trying!
Joey
Happy here to report a partial solution, 1/2 way there!
If you take out the SIM card inside the phone it only nags once and saves probably 30 seconds of boot-up time. It's a great improvement!
bg260 said:
https://www.techmesto.com/unlock-bootloader-huawei-honor/
http://forum.xda-developers.com/and...how-to-data-off-shell-command-tasker-t3370783
Click to expand...
Click to collapse
I bought the same phone at BB ($10 on sale) to use like you do (unactivated). What you're trying to do is actually super simple. Merely put the device in Airplane mode, then turn back on the wifi (and GPS if you like). You will not be prompted to activate your device. You actually should be doing this anyway as it saves your battery by not having the cell radio constantly trying to talk to the tower.
In case you missed it, there is a firmware update to the phone that can be downloaded via the Emui app on the phone. I'm not sure what all the update affects, but it doesn't impact your ability to use the procedure I described to avoid the constant activation reminder.
I believe this was in response to your question @JoeyTablet
bg260 said:
I believe this was in response to your question @JoeyTablet
Click to expand...
Click to collapse
Oops, sorry, yes it was meant for @JoeyTablet
zerozed99 said:
I bought the same phone at BB ($10 on sale) to use like you do (unactivated). What you're trying to do is actually super simple. Merely put the device in Airplane mode, then turn back on the wifi (and GPS if you like). You will not be prompted to activate your device. You actually should be doing this anyway as it saves your battery by not having the cell radio constantly trying to talk to the tower.
In case you missed it, there is a firmware update to the phone that can be downloaded via the Emui app on the phone. I'm not sure what all the update affects, but it doesn't impact your ability to use the procedure I described to avoid the constant activation reminder.
Click to expand...
Click to collapse
I believe this was in response to your question @JoeyTablet
Remember, quote or mention the member if you want them to be notified.
zerozed99 said:
I bought the same phone at BB ($10 on sale) to use like you do (unactivated). What you're trying to do is actually super simple. Merely put the device in Airplane mode, then turn back on the wifi (and GPS if you like). You will not be prompted to activate your device. You actually should be doing this anyway as it saves your battery by not having the cell radio constantly trying to talk to the tower.
In case you missed it, there is a firmware update to the phone that can be downloaded via the Emui app on the phone. I'm not sure what all the update affects, but it doesn't impact your ability to use the procedure I described to avoid the constant activation reminder.
Click to expand...
Click to collapse
COOL! Perfect it boots and no need to click anything further - and besides it's less stray microwaves. Also to report Huawei replied and said they accept bootloader code requests at: consumer (at) huawei.com. They say to include IMEI and serial numbers in the email. Both can be found in Settings >> about phone or underneath the back cover.
Where to go from here, I'd also like to disable sneaky RAM-stealing apps like Sprint cellphone and some apps I'll never use, such as most Google Play. Add decent firewall and decent media player, and have a good time!
Recommend root method I'm good to go.
JoeyTablet said:
COOL! Perfect it boots and no need to click anything further - and besides it's less stray microwaves. Also to report Huawei replied and said they accept bootloader code requests at: consumer (at) huawei.com. They say to include IMEI and serial numbers in the email. Both can be found in Settings >> about phone or underneath the back cover.
Where to go from here, I'd also like to disable sneaky RAM-stealing apps like Sprint cellphone and some apps I'll never use, such as most Google Play. Add decent firewall and decent media player, and have a good time!
Recommend root method I'm good to go.
Click to expand...
Click to collapse
I've read elsewhere (here on XDA) that folks have gotten root using Kingo root (mostly tethered to a Windows PC and not the app version). Note that this root method often requires you to run the rooting program multiple times before it is successful. I'm not a fan of Kingo after being forced to use it to re-root another device (it took well over a dozen times before root took). Also, Kingo doesn't use SuperSu, it installs a Kingo version of SuperSu which CAN be removed (not exactly easily) but users of the Huawei Y538 Union have gotten bootloops trying to remove Kingo's proprietary SuperSu, so not advisable at this time. Even after rooted you are not able to remove the pre-installed bloatware because of the locked bootloader (which is different than the carrier unlock). To be honest, I've pretty much decided to just not root this device and just install an SD card if I need the space...I'd rather do that than risk bricking the device when (for me) there's really no need. I'm going to wait it out and see if anybody can figure a reliable way to deal with the device without bricking before I do anything else.
If you do root using Kingo, you might be able to "freeze" the background apps you don't want using Titanium Backup. I've read that folks haven't had any luck using TB to uninstall the bloatware, but if you're just trying to free ram it *might* work. I believe the risk would be the device expecting certain apps to run, and if unable it might bootloop/brick. Without a custom recovery allowing a nand backup bricking seems like a real possibility.
Please post your results if you unlock your bootloader. It surprises me that they're offering this, as I thought they only supported carrier unlocking. If you're able to figure out how to trim down the bloat please share.
I'm currently using Google's Play Music app for music/podcasts since I've already got 20,000 song's uploaded and since I can't delete that app anyway. Otherwise I'd just use Doubletwist for offline listening.
In case you, or anyone else with this phone is interested, I ended up purchasing a cheap ($5 delivered) case for this thing. Overall I like the case, but if you have any questions about that, let me know.
Yeah that case is perfect. I might have found the same on eBay searching " Huawei Union Y538 Case Innovaa".
As for Kingo ROOT, I have one hit and one miss to report. The KitKAt tablet it worked and I un-rooted after I got my business done. But the Lollipop phone is another story. I run a really tight ship on the Windows end, and Kingo rooted Lollipop, I got some functions involving root accomplished, but it ended at some point (completely offline except for USB tether to PC).
I factory reset the phone and tried again. Kingo downloaded more stuff and my firewall asked for access to PCAccelerator and acdsee.. The former is considered a virus and the second an image viewing app, which I don't use (maybe it's payloaded who knows).
I don't wish to scare anyone nor besmirch Kingo ROOT's reputation if it's a wholesome rooting app, but advise great caution and use a firewall that notifies things like this (I use NetLimiter on PC).
So I await the boot-unlock code and hope I live to tell about it Thanks a million zerozed99! That case is icing on the cake.
For what it's worth, no reply from Hauwei, and yesterday I sent another SOS asking, if not for boot unlock code, even just a stock KitKat ROM for the Y538. We know that model ran KitKat as well as Lollipop.
It just kills me to see this cute little quadcore wasted with all the bloatware taking up valuable RAM and battery power as well.
Ladies & Gentlemen, distinguished colleagues at xda-developers... Please bear with me.
I started coding on Macs in 1981(1981!). I later went on to 5 years formal education in Computer Science at a decent University, and spent the better part of 2 decades volunteering for low and no income people- those were the best years of my life!
Now I'm on the old side, with some heart disease that has four stents in my heart and the no-fun life expectancy that goes with it.
Now, being a reasonably informed geek, I'm seeing some disturbing things I want to air out in "public" if you'll so allow me.
The idea Hauwei will send you a boot unlock code, I don't think it's true. They make it easy to fill out a form with at least four identifying informations, but I have YET to see anyone receive their code! In my case the form advances to a page written in Chinese! I believe this is a spy device and priced to spy on a certain demographic. The almost perfect unlockability and easy bootlock application with no one reporting being sent a code.... there's a reason.
Granted one thing: I've never owned a cellphone nor did I even want cell access from this. Maybe you've noticed the same thing(s) years ago. I just wanted a little quadcore computer to play around with, to access my LAN and play media, and this has me worried the kind of entities that design such forced options.
Oh well, no luck. anyone else going to wait a bit or should I trash this?
Can't tell you how much I'd like Marshmallow and the evil bootloader out of there for something else.
Lollipop is not so bad IMHO except for the lack of privs to access our own SD cards.
If you hold down the volume-down button and press the power button until the phone starts up you can boot into fastboot mode. I've read here in XDA someplace that there are 2 available builds of TWRP custom recovery for the y6, both work on our phone, tho only one of the builds works fully. I have not tried to install either on my y538 yet, but I will, and I'll let you know what I find out.
If you can get the bootloader unlocked, you should be able to flash SuperSU from TWRP.
I suggest you google the xda guide to fastboot. It is not very complicated.
I doubt we can locate any custom ROM for this device. However, if we can get rooted we can backup stock and then remove all the bloatware. ES File Explorer is great in root mode for managing the SD card.
More useful info: I pulled my SIM out before I fired up the phone for the first time, and when I turned on the phone it didn't download any of the extra crapware from Sprint! I have the Virgin version, and I expected all that stuff to download, but it did not. Also, if you look in the App Manager settings, you will see a few apps which shipped on your phone in the Disabled state!! You may wish to enable Lookout or others of the stock disabled apps. Also, without root, you can remove the Sprint ID app here, and disable any of the Google spots you don't want, like Play News or Play Movies.
This is my first Huawei device, though it's my twenty-somethingh Android, and so far I am very pleased with the layout of the settings and of the notifications tray. This is way liveable, and they allow us to disable most of the bloat.
Good luck!

New here and have a problem with my old Samsung J7 Max as well.

Aight so I have this Samsung Galaxy J7 Max that I've been trying to unlock for more than 2 years now. I of course, don't want to lose the super important data it holds. It got locked out randomly and hasn't been able to take up the pattern I had put on it till date. I'm absolutely sure no one changed its lock screen pattern and its the phone that is unable to recognize the exact same password it had before this happening. I got hold of it today and yet again, started looking for solutions on YouTube and the internet itself. After all of my research, one thing is clear. There is only one way that the pattern lock can be removed in such a condition; by deleting this system folder called gesture.key that lies within the phone itself. I am by no means a nerdy software dev or something but I do have very little knowledge about these workarounds. I used an ADB via a cmd terminal to contact my phone. But it turns out that due to my usb debugging setting not being turned on in my phone, the adb didn't have the required authorization to make any changes to the target. I then got my phone into stock recovery mode and chose the Install through ADB option there. Now when I input the command adb devices, the prompt showed me my device ID, but instead of the "unauthorized" indicator beside it, it now had the indicator "sideload". I had no idea of what had to be done when such happens, so I tried the adb shell > cd data/system > su > rm *.key [taken from an XDA forums thread] commands again. But right on the second step it displayed error this time. I have tried using a key eraser via sd card too, but it just doesn't happen, the sd card folder in the stock mode does not display the contents of the folder.
Now the phone isn't being an obstacle in my life right now, but I really hope there's a way to fix it. Early help would be appreciated. Thank You.
If the data is super important why isn't it redundantly backed up?
Having a set lock screen and storing data on the OS is a sure fire way to lose data, eventually.
Maybe you'll get lucky... is that drive encrypted?
If not it may still be corrupted and unusable.
Don't put yourself in this position again... been there, done that
@blackhawk As I said, this was an absolutely random incident, had never even thought this could've been the case someday. Its not like the phone crashed and then this happened, I turned off my phone's display and the next time I woke it up, the pattern wasn't working anymore. Furthermore, the timed attempts that happen after 5 incorrect tries wasn't existing anymore. Now it could be that someone did get the timed attempts wrong as well [it isn't my own phone]. But I really don't see any other reason to that occurrence.
About the backups, I mean cmon, I was 15 back then, a medico student even more so. I never got my hands around backing up anything. But yes, have been backing up every single bit of data within these two years.
The storage drive shouldn't be encrypted. It was a regular phone bought online that had pdfs, images, recordings and videos stored. The google account was not that of the owner either! It was my uncle's account that was being used ever since he bought it. And since there was never a problem having used his account for quite a while, we never cared to change it to a new google account. Now my uncle's google account itself handles another device, his own phone, exact same model, Galaxy J7 Max. I have tried using his account at the Google Find My Device app to locate and unlock the phone that way [I hope you know it has the three options Ring, Secure and Erase Data]. But it happens so that the Secure phone with password option only for devices that have been lost and don't have a security lock already setup, which wasn't, unfortunately, my case. So that option was greyed out.
For the data corruption, you might be correct. But that phone still does receive SMS texts, calls, whatsapp texts and other notifications. They just don't show up on the lock screen anymore. I honestly had the "Screw the data, I'll erase it anyway" thought yesterday, but during my latest tries, I found the XDA forums website to be quite helpful. Had not it been the damn USB debugging, the solution I approached from this forum would've got the job done in a couple minutes. Again, if the data might've gone corrupted, I will erase the data [I mean I would have to]. But this little glimmer of hope that I experienced yesterday is what is preventing me from doing that. I really hope there is a fix to my situation.
@Chinmay47
a phone can get booted into these modes
Normal ( AKA Android OS )
Recovery
Fastboot
Sideload
EDL
Sideload mode is used to flash OTAs and/or ROMs.
Recovery mode allows you to perform some ADB actions as e.g. pull userdata, but this reqires ADB ( read: USB debug ) got enabled.
So my guess is you can't recover phone's userdata at your own, this would have to be done by an external service who can pull out phone's internal SD-card and has the forensic tools to read it.
@jwoegerbauer Surprisingly the idea of taking the phone to a forensic service struck me yesternight too. As you mentioned, since I can't recover the phone's data myself, all tips and tweaks on the web should now be struck off of my list of solutions. I'll leave the data to some forensic services then. Let's hope the recovery is worth the hassle. The thread is still open to more suggestions though. Thanks for the replies everyone. Really appreciate it!
Chinmay47 said:
@jwoegerbauer Surprisingly the idea of taking the phone to a forensic service struck me yesternight too. As you mentioned, since I can't recover the phone's data myself, all tips and tweaks on the web should now be struck off of my list of solutions. I'll leave the data to some forensic services then. Let's hope the recovery is worth the hassle. The thread is still open to more suggestions though. Thanks for the replies everyone. Really appreciate it!
Click to expand...
Click to collapse
It not a card they can pull. More than likely it's on a BGA chipset, the hardest kind there is to work with.
If they can't access the data on/with the mobo they will have to unsolder the chipset without damaging it then put it into a test jig or another mobo (after pulling that mobo's matching chipset).
If they can access the data on the mobo, not so bad. Otherwise not so good.
Let us know how this plays out for you.
Here's one I found showing you this complex procedure: https://flashfixers.com/recover-data-dead-phone-chip-off-data-recovery/
They may be able to help you, but I have no personal knowledge of this company.
blackhawk said:
If they can't access the data on/with the mobo they will have to unsolder the chipset without damaging it then put it into a test jig or another mobo (after pulling that mobo's matching chipset).
Click to expand...
Click to collapse
Actually thought of this idea right after a couple days from the beginning of the problem. Yes its gonna take loads of precision and patience but it does sound doable. Maybe that's what is gonna be the last option for the forensic service too in case, god forbid, they aren't able to do it the "simple" way. Can't say yet, but I'm gonna keep this thread updated with all the developments that take place.
Chinmay47 said:
Actually thought of this idea right after a couple days from the beginning of the problem. Yes its gonna take loads of precision and patience but it does sound doable. Maybe that's what is gonna be the last option for the forensic service too in case, god forbid, they aren't able to do it the "simple" way. Can't say yet, but I'm gonna keep this thread updated with all the developments that take place.
Click to expand...
Click to collapse
If they need to remove the chipset the chances of failure increase. Flash memory retension is generally good for 10+ years but it may be damaged in the removal process if so, snake eyes.
Get price quotes up front for the whole process.
Once they got the phone, they got you by the balls. Not saying they aren't trustworthy but feel them out. If it's a couple hundred and you get the data back, you did good.
No idea of the cost though, my guess is $400-1000+ especially if they need to pull the chipset.
That's high risk even if they do it by the book.
If their policy is no data, no charge... expect higher rates to cover their loses.
@blackhawk All of that sounds kinda terrifying if you ask me. Well I mean, there is always a first option that can be tried without any mentions of pull-aparts. Yet I will surely judge the person well before I hand my device in his hands. I would try my level best to not take it to the critical stage, but if it needs be and there is a really high chance of losing my data, I can factory reset my data at home by myself too can't I? Future shall tell I suppose.
If you factory reset it all data will be lost.
It will not be recoverable!
If you want the data you will need to use a service like I showed you. They will need physical access to the phone to recovery the data.
The phone may be scrape afterwards
@blackhawk Sure does look like it would be! But paying to get your phone reset for you is way to harsher than doing it yourself. It is only in case the data is nearly impossible to recover that I'll reset the phone myself.
Chinmay47 said:
@blackhawk Sure does look like it would be! But paying to get your phone reset for you is way to harsher than doing it yourself. It is only in case the data is nearly impossible to recover that I'll reset the phone myself.
Click to expand...
Click to collapse
Reset? Most likely destroyed.
Do you really want the data?
blackhawk said:
Reset? Most likely destroyed.
Do you really want the data?
Click to expand...
Click to collapse
I actually do though. But well, if it ain't coming back then why wish for it. Yeah the data was really important.
Chinmay47 said:
I actually do though. But well, if it ain't coming back then why wish for it. Yeah the data was really important.
Click to expand...
Click to collapse
Call them up and see what they say.
Since it's not physically damaged they may be able to access it none invasively.
blackhawk said:
Call them up and see what they say.
Since it's not physically damaged they may be able to access it none invasively.
Click to expand...
Click to collapse
I'll do that and report back ASAP. Thanks for the help sire!

Question Help me reverse engineer this mod? How do i get my phone back to stock rom, and regain full control over it? Unroot?

I have a A52 5g and a tab S7+ wifi, that are both remotely controled and monitored, and serve as gateway to my home network and basicaly every device connected to it. I noticed it at first and mew NOTHING related to this, didnt even know what open source was. Since then i have come to understand that, somehow, my phone seems to run a custom version of android, my guess is, built from AOSP and designed to disguise itself as oem samsung ui, but in background enables remote access and total takeover of every function. I have discovered, using total commander, that storage has been partitioned in 2 separate locations, and that one folder in there is called root system file, and filled with data/apk/installkits/etc.. this has me asking for help in 2 specific questions:
Am i holding a rooted device or is there another possibility that creates this situation? I was convinced its rooted untill i read here that root prevents from using samsung pass, secure folder etc.. and those seem to work on mine(or is it a version of those apps?) If its indeed rooted, will it wype everything if i flash it with the stock rom? And should i trust a small cell repair store to do that or learn how to do it myself?
2: i have bought 3 brand new phones since august, and made sure not to use my usual accounts, no use backups, not even set it up near my home wifi, and it almost instantly started self installing harmful software in background. I see no other way for it to link itself to be owned by me at initial setup, but for the sim card, new of course, but with my usual phone number and service transfered to it. Is that enough to make a breach and compromise a new device? If so, what would be different after fpashing the stock rom, if everything reinstalls itself? Do i need to change my number? Change cellular service provider even? I know its an unusual request but im a fast learner, i have compiled lots of technical info on specific apps, ip's, servers, build id numbers etc.. that i know would make more sense to anyone more qualified than me, and i am about ready to try and wype/flash the thing myself, i just would feel better with a little help since i have gone this far pretty much alone, since no service provider or manifacturer actualy feels like this is their problem to solve....
Here you can download firmware for your phone and flash with Odin, which you can also download at the bottom of the page, there are instructions on how to do it also.
Make sure to download correct firmware for exact device you have. There are few different A52 5G models.. SM-A526B, SM-A526U, SM-A5260, SM-A526U1, SM-A526W.
You will lose all data after flashing new firmware. After this your phone will be like brand new from Samsung..
If your device is rooted then that means your warranty is void and manufacturers and carriers are under no obligation to help you.
I'm trying to understand your situation but its so conflicting I don't know where to begin.
For example, you say your device runs a custom AOSP with a Samsung UI. Thats exactly how it actually works. Samsung take the AOSP, customise it with their own functionality, then overlay their own skin as the UI. Theres absolutely nothing unusual about that.
I'm conflicted as to whether your rooted or not. If the manufacturer or carrier has physically seen the device and won't repair it then that would suggest your definitely rooted. If you spoke to them virtually and told them your rooted then they will use it as an excuse whether you're truly rooted or not. The partitions you mention could be the internal storage and an sd card which can be seen non-rooted. I dont know what you mean when you mention a "root system file". Is it an actual folder called "root" or is the app you're using just telling you that you've reached the "root" of the filesystem? I can't quite work out what you mean. You also say Knox-powered apps still work which just adds to the confusion.
You stated you have had 3 new devices and they all self-installed harmful software. To get one device compromised is possible. To get three compromised means your either a high profile government target (which I doubt because they wouldn't be so sloppy as this) or your doing something to compromise your own devices such as continuously visiting dodgy websites.
Flashing will fix things but so would having a new device. The only common denominator is you so either you're doing something wrong or you truly are a government target in which case I wish you good luck!
First let me appologise for the long silence, i cut off most online activity for a while and just read your answers. To clarify, i have not solved my prolem yet. But ill try to explain better what you ask about my situation:
About de os version arobase40 got it right. I Asked google play help reps. And a stock samsung version of android would not trigger googles warning about running a custom version of android. So that point to a modified after-the-fact more than to the fact samsung has their propierary version installed.
About beeing rooted or not, ylwhat you are asking is what im not totaly certajn of, also. I know partition can happen without rooting, its seems to have created a "virtual sd card" since its named as such when sd card slot is actualy empty. About the root files folder, i cant say for sure, all i can say is that its holding a large amount of Gigs that dont get taken into account when looking at storage capacity and usage, and accessing that folder gives me a message that root files cant be access from this device. Does it mean my device had root acess privileges revoked to prevent viewing files that hide what is given control of the software remotely, so i dont find out or have the capacity to remove or alter those files?
What is absolutely sure is that if it is rooted, it wasnt done by me. As for the chance the devices were not factory brand new, 1 of them was not, got it opend box from amazon, a saudi arabia version, but my prkblems had started months before getting it, did not keep it more than 2 months, and all others before and since are 100% pure factory new, some directly from my cellular service provider, as financed device came with 2 year agreement of service,(actualy 2 of them i got this way) and the last one is my tab s7+ i got online directly from samsung canada website, on preorder, delivered on release day.
And lastly the fact i cant seem to shake those persistent leeches, is not from having reckless habbits online, but from having careless and uneducated habbits before that all started, usual older lazy dude stuff, like not changing my wifi password after a ruff breakup with bipolar psycho ex gf, or having only a few passwords reused on most my accounts. I have stopped doing those things long ago now that i know better, but i suspect that i could have been unaware something gettnng installed and staying dormant for a while, maybe? The ex had way more opportunities than needed to do something like this and is more than psycho enough to realy do it also. For having the skills to do it, lets say she has "assets" that can easily get her guys willing to help about that. It may also be coming from somwhere else, but as you say im not a super spy or a high ranking gov. Official. Im not even that interesting, and have absolutely no usable id for fraud or anything, my credit history would raise more red flags then there is in all china. So after so long struggling with this still very active, i cant even think of a rational reason to do so much effort into this, theres nothing to gain, i only can imagine that maybe a twisted mind seeking revege, or with a sick way of amusing themselves could see the point to all that, but i dont realy care. I only want to get rid of it.
As for the way it manages to be so much persistent, i can only see one option left i didnt remove from the process, and its through my phone number/account on the sim card, even a new sim on a new phone, still is linked to my cell service. I did initial setup with only that new sim card, accounts freshely created during setup, with no info or anythink linkable to my previous accounts, and even did it sitting outside, far from any building that could get me in range of a wifi network. And it still was no more effective at staying secure.
Thats why i did not yet try to flash a stock rom myself on my device, because it would, at best, become exactly like it was when brand new, and i know that this is not enough to keep it secure, and that means theres still something im missing in the whole picture.

Categories

Resources