Possible Malware inside of Kodi...

4me2c

3 Time Nascar Pool Winner
May 15, 2015
6,754
71
0
Out There...!
Code:
https://koditips.com/kodi-malware-bubbles-gaia/

C/P :

by Admin | Sep 14, 2018 | 0 Comments

How to Check if you are Infected by Kodi Malware from Gaia

NOTE: You can only be affected if you are using either Windows or Linux. Android Kodi users are not involved in this Kodi Malware scheme at all.

From the Kodi home screen, navigate to SYSTEM (cog wheel) > SYSTEM SETTINGS
Change the settings level in the bottom level to Advanced or Expert
Click on Addons
Click Manage Dependencies
Scroll down to Simplejson and right click or press the menu button (‘c’).
Click on Information
If you have version 3.4.1 installed, then you have been infected with Kodi malware and need to get version 3.4 from the official Kodi repository instead.
Find the Kodi addons folder and delete the script.module.python.requests folder.

If you have been infected, you should use an anti-malware software to scan and block these threats:

CoinMiner.II and CoinMiner.MK on Windows
CoinMiner.BC, CoinMiner.BJ, CoinMiner.BK, and CoinMiner.CU on Linux


... I have no Knowledge of CoinMiner, etc, so Use At Your OWN RISK...! ;)
 
There is a problem with P2P being used on android systems Since Kodi runs a lot of P2P programs, it is possible to be used as transfer station or as a link to transmit data pacs for another uploader. I got hit with a letter from some agency about a movie being downloaded to one of my devices and it said I had distributed the movie in violation of copyright laws. That was with Popcorn Time P2P, and I never even downloaded the movie.

Here is an article about Android hacking.

Code:
https://arstechnica.com/information-technology/2020/10/thousands-of-infected-iot-devices-used-in-for-profit-anonymity-service/"]https://arstechnica.com/information-technology/2020/10/thousands-of-infected-iot-devices-used-in-for-profit-anonymity-service/
 
Last edited by a moderator:
  • Like
Reactions: 4me2c
From Inside of 12icer's above link :

"Bitdefender estimated that there are about 9,000 unique devices, with the vast majority of them being Android devices. Only about 1 percent of the devices run Linux, and only one machine is believed to run Darwin. Based on clues gathered from the operating system version and, when available, the hostname and user names, the security firm has identified specific models of routers, NAS devices, TV receivers, and multipurpose circuit boards and microcontrollers (e.g., Raspberry Pis) that likely make up the botnet.

Many criminals use anonymous proxies to transmit illegal data, such as child pornography, threats, and swatting attacks. Thursday’s report is a good reminder why it’s important to always change default passwords when setting up Internet-of-things devices and—when possible—to also disable remote administrative access. The cost of not doing so may not only be lost bandwidth and increased power consumption, but also criminal content that might be traced back to your network."

Thanks for the Link, Very Informative Indeed...!!! Hope More will visit it in a "New Tab"...!!
 
As 4me doesn't use that Add-on, here is a suggestion...! Using Your Computer, go to where You downloaded that App/APK and download it onto Your Computer...! Don't Open or Run it, put Your Mouse Over it and Right-click it... You should get a small window with Options... One or more should bee to Scan It with what-ever Anti-virus, Anti-spyware or what-ever You have on Your Computer... Click to Scan that File and wait for the results, You will bee Informed if there is something in there that shouldn't be there...! Choose Wisely...! Stay Safe...!!
 
On Kodi, System settings/ system/ services -Control tab.
allow remote control via http - Off (unless required by you, then change the default port/user/pw).
allow remote control from apps on this system - Off (on will allow passthrough control from a kodi installed addon)
allow remote control from apps on other systems - Off

As for Android apps, each one has permissions that can be checked.
/Shooty
 
On Kodi, System settings/ system/ services -Control tab.
allow remote control via http - Off (unless required by you, then change the default port/user/pw).
allow remote control from apps on this system - Off (on will allow passthrough control from a kodi installed addon)
allow remote control from apps on other systems - Off

As for Android apps, each one has permissions that can be checked.
/Shooty[/QUOT
Thanks Shooty for the advice. andkaal