Botnet File Explorer

Can someone explain to me what the fuck just happened?

I downloaded ES file explorer to my phone and was using it to browse a SMB share on my home server. As I was browsing, I got an email notification informing me my server saying Fail2Ban blocked a SSH brute force attempt (5 tries) from my phones IP address.

What kind of chinese botnet is this? I feel like I need to wipe my phone now.

>in b4 don't download .apks from free-apps.ru

Other urls found in this thread:

virustotal.com/en/file/4af500e55258036adfb2f42060ba980fb751c22902aad27e3d3818f709d92aaa/analysis/
gawker.com/5637234/gcreep-google-engineer-stalked-teens-spied-on-chats
apple.com/business/docs/iOS_Security_Guide.pdf
twitter.com/NSFWRedditVideo

You thought Sup Forums was joking about ES being a botnet?

I have it from before it was sold (version 3.2.5.3) and i think that is the last safe version.

You're better off moving to Amaze or Solid Explorer...

Holy shit, just uninstalled that shit

Chinese scummy bastards bought the app from the devs, and gradually added adware, which gradually turned more and more into outright malware.

Happens a lot to browser extension developers too - they offer money to buy things from you, and if you accept, they will turn it into adware/malware shit.

Does anyone else have a problem with Amaze being totally unable to connect to SMB shares with a username and password - both from Samba 4 and Windows 10?

ES worked fine, so do all my Windows boxes, and so does Ubuntu 16.04 both as a client (CLI and GUI) and a server. But Amaze isn't having it, saying the username and password is incorrect.

Nothing apparently useful shows in logs, and it's not a DNS issue as firstly my DNS is correct and secondly same thing happens when I give it an IP.

tell me the last version where LAN worked

I downloaded ES explorer and thought it worked fine. Then every time I installed a new app a notification came up saying "Do you want ES explorer to analyse this all? :D" and promptly uninstalled that garbage.

I hope it left nothing bad behind

Windows is shit because of virus! They said
Linux is better because there is no virus! They said

>android is the exact same shit as linux
where there are normies, there are viruses

My LAN works just fine.

uninstalled

g e t
t h e
f u c k
o u t t a
h e r e

>install TotalCommander

How do you report an app as being malicious to google? This shit needs to be removed from Google Play. It's a literal botnet.

they added malware shit in that app
either use amaze, cabinet or solid explorer
i use amaze myself

Malware of the truly evil type. I love how they added an entire section with a cleaner feature that will delete all of your images and music to free up space, and conveniently offer you a paid upgrade to disable said functionality.

use Solid Explorer

>what is root explorer
>what is amaze

Use amaze and stfu.

This is beyond obnoxious features or unwanted ads. I just checked logs for all computers in my house running SSH servers and something on my phone tried to brute force them all at the same time.

This is actual botnet behavior.

Try solid explorer
You do need to patch it wih Lucky Patcher

Amaze a good FOSS browser

i miss es
being able to stream porn from my pc files to my phone was amazing
solid explorer is pretty good and ive been using that for a while now

your OS lets apps ruin the system to this degree?

LOL

I'm going to download it to my desktop and analyze it. If I find anything at all suspicious, I'll post it here and we'll spam the world with it so these chinks get pulled from the playstore.

>not using FX File Explorer

Godspeed user

Is this reall the last version? Anyone else verify???

>he uses a google product
>cries about muh botnet

hahaha get rekt cunts

I just ran the apk through Virus Total. While it only detects 1 instance of adware, if you click on the the file detail tab on Virus Total, you can scroll down and see a section called Interesting Strings. Scroll through that and you'll see theres a ton of baidu urls. This is what got them in trouble in the past. I wouldn't recommend using this app.

i wouldn't recommend using this operating system.

switch to iOS and secure yourselves so random apps can't screw you over.

>secure yourselves
The owner of kat.cr would like to have a word with you.

>implying google wouldn't have done the same thing

I uninstalled this almost a year ago upon seeing the ads in an update... However, reading your post makes me concerned that it might have gotten into my wifi router or something. My router software is set to prevent wifi devices from interacting with each other, and it has a pretty long password. Could ES have put something on the router, and could my phone be rooted even after I uninstalled it?

virustotal.com/en/file/4af500e55258036adfb2f42060ba980fb751c22902aad27e3d3818f709d92aaa/analysis/

The "safe" version above has a bunch of baidu links too.

Guess im switching.

>Guess im switching.

to iOS.

seriously, fuck off

did you not see the KAT thread?

of course. did you not see this?

gawker.com/5637234/gcreep-google-engineer-stalked-teens-spied-on-chats

NO to another fucking file explorer. Fuck off.

I apologize for my rude post, I did see this but it has already been a few years and I'd forgotten

so what is the way to go then, a dumb phone, or a custom rom?

a dumb phone or iOS without iCloud enabled.

You can have icloud disabled?

Doesn't iMessage still phone home though?
Also, what to do about the exorbitant costs?
Doesn't apple cease to support the latest iOS versions for older models, creating potential security risks for those who retain them?

This isn't me trying to be contrarian, I want to know.

What file explorer should I use instead?

This

>You can have icloud disabled?

Settings > iCloud > Sign Out

You can also skip iCloud sign in altogether during the initial device setup.

Also, if you do choose to sign in to iCloud, you have full control over which iCloud services are enabled:

iCloud Drive, Photos, Mail, Contacts, Calendars, Reminders, Safari, Notes, News, Wallet, Backup, Keychain, and Find My iPhone can all be enabled or disabled individually.

And, if you enable iCloud Drive to share files between your Apple devices (kind of like Dropbox), you have on/off control over which apps (if any) you want to grant access to your iCloud Drive.

>Doesn't iMessage still phone home though?

Settings > Messages > iMessage > off

>Doesn't apple cease to support the latest iOS versions for older models, creating potential security risks for those who retain them?

Apple is really good about supporting their hardware, much more so than Android, and especially with security updates. the iPhone 4S (released in October 2011) runs the latest iOS release (iOS 9.3.3, released a few days ago)

>Also, what to do about the exorbitant costs?

an iOS device is a good investment. longer software support means you'll save on the cost of having to upgrade your phone's hardware more frequently (unless you want to, of course).

the iPhone SE is a good lower-cost introductory device that should last years. just be aware that the new flagship iOS devices usually get announced in September, so it might pay to wait it out for a few months to see what gets released.

(Apple rarely if at all cuts prices, so to maximize the value you get from what you spend, it's worth it to buy in at the start of a new device's lifecycle.)

I'm running 3.0.9.0 kek if it ain't broke don't update it

also, you may be interested in the iOS Security Guide, which has a lot of useful details on the safeguards put in place throughout the operating system:

apple.com/business/docs/iOS_Security_Guide.pdf

it's also worth clarifying that disabling iCloud support for things like Notes, Calendars, Photos, etc. doesn't deny you access to use the apps locally on your device, it just disables iCloud syncing for those apps.

if you have iCloud Backups off, but you still want to back up your device, you can sync to your Mac or PC using iTunes and the USB cable included with your iPhone. this way, your data is safely stored locally on your computer, under your control, and you can restore that local backup to your device at any time through iTunes.

thanks a lot user, really mean it

Anything beyond version 3 is pure chink botnet, event version 3 is calling home at least, maybe even logging passwords.

Possible. They could be logging passwords, but I checked my router and didn't see anything weird (yet). Changed the password, changed ssh ports, revoked ssh certs and will likely wipe my phone tomorrow. I'm convinced I'm being monitored by the Chinese now.

ri rwuant rour mroney frilthy ramerican

Anything comparable to es that will let me log into my home server and access my hard drives?

I don't care if it's paid. This is some serious bullshit.

Checking our the most recent reviews for amaze on the google playstore.

Apparently, the most recent update breaks smb and removes useful features like the ability to move folders.

Any recommendations on what I should check out?

MiXplorer

Play Store reviews are indicating that a raft of features were removed with the latest update, including SMB support.

cancerous ui

and also

>asus

>asus
what?

Solid explorer

I've been reading up on the reviews and apparently Solid Explorer asks for phone permissions.

Unacceptable

There is no reason why a file explorer should need to access your call data.

How's MiXplorer? Found it looking around and it seems to have a good feature set and is free.

>I've been reading up on the reviews and apparently Solid Explorer asks for phone permissions.
>Unacceptable
>There is no reason why a file explorer should need to access your call data.
Uhh, yes there is, and they tell you exactly what it's for.

They need your IMEI number to identify the phone and check your paid license, so they don't have to use Google Play Services.

They don't have access to your calls, just the IMEI.

Any you think this is acceptable?

Shit, OP. Now I'm curious to see fail2ban working.

Get it from F-droid. Amaze hasn't been updated over there yet.

Why the fuck aren't you using FX file explorer?

>Any you think this is acceptable?
I'd much rather given them my IMEI number than my google email account info, which is how the other authentication methods work.

just download the pro version fag

I rooted my girlfriend's G3 and installed ES a while ago and forgot about it. Haven't touched her phone in a while until recently.

She complains about weird behavior on her phone, and a blue box pooping up every now and then with Chinese characters.

I look into it, and it turned out to be ES fucking with shit. It would go active when screen off, and use up data.

Uninstalled and cleaned it. Botnet for sure.

I'm on 3.2.5.5

I stopped updating because it was the last version in the old interface

Am I good?

...

Is Amaze as good as ES File Explorer?

>ES File Explorer has an FTP server
Does Amaze have that?
>ES File Explorer allows to send files over the air to another device with ES File Explorer on the same LAN (almost like Apple's Airdrop but for Android)
Does Amaze have that?

How do we replace these 2 killer features of ES File Explorer with an app that is not a botnet?

Fucking hell I'm still using ES because it's always worked nicely for me.

That said with all of the ads and shit I will probably change to Amaze or something.

ES is a botnet file explorer. Used to use it before changing to Solid Explorer. Now I'm with the masterrace FX File Explorer. Never been better.

This

So will this shit remove nicely? I must've installed this shit years ago and never even realized I still had it.

Omg, just removed this fucker and my phone is responsive again ! Wtf, all these months with my 6p being sluggish

If you're gonna download AMmaze, please do som through F-droid. The dev apparently fucked something up in the last version.

Amaze has samba features? Where?

Tbh, I main the F-Droid Amaze, but I keep a firewalled ES just because it has that save to option in the share menu. Though as far as botnet, I do have AirDroid installed because I like the easy sharing between my computer and my phone. I can also remote in to my phone so I can have it blare weeb music every time I lose it on silent.

Didn't mean to reply

>Most popular phone OS doesn't have a fast and reliable smb file explorer app
Why is this allowed reeeeee
It should be a built in functionality

This got me scared. What about total commander?

Tfw malicious chinks may already have my most used password
Thanks Android

I don't understand why it seems so hard for Google to put in a halfway-competent file system explorer in Android.

Every file explorer is adware, nagware (pls buy the pro!) or just plain botnet.

I have File Commander that comes preinstalled and can't be removed; that piece of garbage begs me to buy the premium version every time I open it and has ads that take up half the screen.

Weird, when people talk about marketshare you autist say android is linux but now its not..

>Every file explorer is adware, nagware (pls buy the pro!) or just plain botnet.

AMAZE
CABINET

I've installed this shit some months ago on my phone to create a .no media file
How fucked am I? What should I do?

is there a good non-botnet file manager which lets you browse your local network?

Bump

>modified linux kernel
>kernel = OS
How does being retarded feel?

Are you fucking serious?!?! I just bought this fucking app 2 months ago. Ahhhhh for fucks sakes!! The one time I actually breakdown and pay for an app, its literally malware.

Oh well, guess I'll try Amaze or Solid Explorer.

If this is a botnet what's an alternative? I find this useful on my $100 tablet when I wanna chill in bed and watch tv

MiXplorer is free and has all the features compared to other clients. Download it from xda.

That's the problem I guess. It is so useful. But is your privacy worth the convenience?

I just ran OS Monitor and don't see my phone making any connections to Beijing, so I guess I'm safe. Removing ES file explorer seems to have been enough.
Anyone with ES installed want to check their listening connections and post what they find? OS Monitor is on F-Droid and the Play store.

ssolid explorer's ggod
also X-plore if you want serious horsepower, free, and don't mind the ui.

Trashed ES long time ago. Solid Explorer is where it's at.

I thought ES just added an obnoxious cleaner and a homepage with ads on it? Then I figured that everyone, upon seeing the cleaner, and the new app analyzer pop-up went mental?

Is there actual malware in it? I haven't seen any usual traffic from my phone (yet).

Why would Google remove a source of their income?

>...which makes Apple the morally superior company!