• After 15+ years, we've made a big change: Android Forums is now Early Bird Club. Learn more here.

Help What is my next move:

stageone

Lurker
May 16, 2013
3
0
This is a repost as it seems the original vanished after I clicked on submit new thread. Sorry if the other showes up later!

Anyway here goes:

I was at the doctors office and after being called back to and exam room to wait for the doctor I went on my phone but had near zero signal. It showed wifi connections availible and asked if I would like to see them. I did and one of the connections was an open network labled as "guest" for the doctors office.

I connected and it worked well but after about 5 min I got a mail notification. I went to my mail to find that I had over 50 demon mailer none deliverable notices sent to the yahoo account that I was logged into at the time. I shut down the wifi connection, set the account to require a second sign in, reset the password and shut off the phone.

When I got to my computer I set up a new password and removed the second sign in. I have not had any trouble after that, that I know of but if there is anything I would say the phone may be a bit slow now.

Yahoo sent me a notice about the attack:

hack.jpg




I would like to know what I can do to check to see if there is bad mojo hidding on the phone and what to do about it if there is.

Thanks
 
You can run several antivirus programs and check. Key point is to run multiple different ones if you suspect infection. Same with antimalware/spyware. It's a shotgun approach to ensure no infection or possibility of wiping out an infection since one antivirus app can miss it that another may catch.

Or if you have proper backups already, do a hard reset back to factory defaults. Thus nuking the suspected virus/infection. That is provided that you are not rooted and/or running a custom ROM.

But maybe someone else more experienced can help you out better. I'm basing this on my experience with Windows.
 
Upvote 0
Have you tried a Virtual Private Network? I don't know much about them but I believe that everything between your device and their server is encrypted.
Yeah, I do have VPN setup in my router and Android. Don't use it much as I'm still a little paranoid with open networks regardless. VPN is ideal as it connects to your router from wherever you are. Thus providing better security and data encryption. But you need a router that supports it (through firmware) or you need to purchase a VPN subscription with a host provider. I'm trying to learn more about openVPN as that offers higher encryption/security than what Android offers through PPTP.
 
  • Like
Reactions: PiscesCloud
Upvote 0
Your next move is to change your password on anything you logged into while you were connected to that 'guest' network, whether you logged in manually or automatically. This includes anything that your phone normally connects to, such as Facebook and GMail. If your phone accessed any of these while connected to that network, your account details are probably compromised.

It sounds like it wasn't the doctor's network but a malicious one set up to harvest the login details of anyone who hooked up to it.

Its unlikely they installed anything on your phone, and it's possible that some of your accounts might not be compromised, but changing passwords now is a lot easier than recovering things if someone else takes over your account.

P.S. - if they got into your Yahoo account, they could also have gone through your mailbox searching for emails that contain login details to other accounts.
 
Upvote 0
Yeah, I do have VPN setup in my router and Android. Don't use it much as I'm still a little paranoid with open networks regardless. VPN is ideal as it connects to your router from wherever you are. Thus providing better security and data encryption. But you need a router that supports it (through firmware) or you need to purchase a VPN subscription with a host provider. I'm trying to learn more about openVPN as that offers higher encryption/security than what Android offers through PPTP.

I don't want to hijack this thread but thank you for the router tip. I must get on to that because I'm currently paying for a VPN with Witopia. They offer more protocols than PPTP as per :-

https://www.witopia.net/support/setting-up-and-using-your-vpn/android/

I use 'L2TP over IPsec' on open WiFi networks; it was quite easy to set up.
 
Upvote 0
Is this specific to Yahoo?

Probably. Yahoo sucks donkey balls BIG TIME which is why I've slowly migrated away from their email service. I've had several accounts hacked and, overall, their service is just despicable IMO. What's funny is that once I migrated my accounts to Gmail, I actually got spam from my hacked Yahoo account. Yahoo is pure fail.
 
Upvote 0

BEST TECH IN 2023

We've been tracking upcoming products and ranking the best tech since 2007. Thanks for trusting our opinion: we get rewarded through affiliate links that earn us a commission and we invite you to learn more about us.

Smartphones