android.intent.action.VIEW
"android.intent.category.BROWSABLE
bankid:///?autostarttoken=x1111xxx-xaxx-xaxa-xxxx0-xxxxxx?=redirect=null"
"com.bankid.bus/.activities.StartupActivity"
am start -a "android.intent.action.VIEW" --es "android.intent.category.BROWSABLE" -d "bankid:///?autostarttoken=x1111xxx-xaxx-xaxa-xxxx0-xxxxxx?=redirect=null" -n "com.bankid.bus/.activities.StartupActivity"
08-17 20:58:41.836 6835 7079 D SGM:GameManager: onLooperPrepared(), msg: MSG_APP_CREATE, pkgName: com.bankid.bus, userId: 0 08-17 20:58:41.837 6835 9577 D SGM:GameManager: sendRunningComponentFocus(), pkgName: com.bankid.bus, userId: 0 08-17 20:58:41.837 6835 7079 D SGM:GameManager: onLooperPrepared(), msg: MSG_TASK_FOCUSED, pkgName: com.bankid.bus, userId: 0 08-17 20:58:41.837 6835 7079 D SGM:GameManager: handleTaskFocused(), pkgName: com.bankid.bus, userID:0 08-17 20:58:41.837 6835 7079 D SGM:GameManager: handleResume(). pkgName: com.bankid.bus, userId: 0, isTunableApp: null 08-17 20:58:41.936 6835 7079 D SGM:GameManager: onLooperPrepared(), msg: MSG_APP_RESUME, pkgName: com.bankid.bus, userid: 0 08-17 20:58:41.936 6835 7079 D SGM:GameManager: handleResume(). pkgName: com.bankid.bus, userId: 0, isTunableApp: null 08-17 20:58:41.936 6835 7079 D SGM:GameManager: notifyFocusInOut(). of pkg: com.bankid.bus, type: 4, isMinimized: false, isTunableApp: false, userId: 0 08-17 21:01:56.821 6835 6897 W UsageStatsService: Unexpected activity event reported! (com.bankid.bus/com.bankid.bus.activities.SignIdleActivity event : 23 instanceId : xxxxx)
i.Q..POST /cava/ HTTP/1.1 Host: cavanotification.bankid.com Content-Length: 12 Cache-Control: no-cache ............ POST /cava/ HTTP/1.1 Host: cavanotification.bankid.com Content-Length: 12 Cache-Control: no-cache ............HTTP/1.1 200 OK Connection: Keep-Alive185.198.4.19 Pragma: no-cache Cache-Control: private, no-store, no-cache, must-revalidate Content-Length: 16 ................
cmd package list packages -U|awk -F: '/com.bankid.bus/{print $3}' 10375
appUID=$(cmd package list packages -U|awk -F: '/com.bankid.bus/{print $3}')
iptables -I OUTPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'SNIFFING_TO_EXPOSE_NOOBS_THAT_CRY: ' --log-uid
owner: Could not determine whether revision 1 is supported, assuming it is. iptables v1.8.7 (legacy): can't initialize iptables table `filter': Permission denied (you must be root) Perhaps iptables or your kernel needs to be upgraded.
su -c iptables -I DROP -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'DROP--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I OUTPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'OUTPUT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I INPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'INPUT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I FORWARD -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'FORWARD--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I REJECT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix '-REJECT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid
SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN=wlan0 OUT= SRC=185.198.4.19 DST=192.168.1.231 LEN=210 TOS=0x00 PREC=0x00 TTL=52 ID=37793 DF PROTO=TCP SPT=80 DPT=56592 WINDOW=59 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.19 LEN=168 TOS=0x00 PREC=0x00 TTL=64 ID=21921 DF PROTO=TCP SPT=56592 DPT=80 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x8d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.19 LEN=168 TOS=0x00 PREC=0x00 TTL=64 ID=21921 DF PROTO=TCP SPT=56592 DPT=80 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x8d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN=wlan0 OUT= SRC=185.198.4.19 DST=192.168.1.231 LEN=52 TOS=0x00 PREC=0x00 TTL=52 ID=37794 DF PROTO=TCP SPT=80 DPT=56592 WINDOW=59 RES=0x00 ACK URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG IN=wlan0 OUT= SRC=185.198.4.18 DST=192.168.1.231 LEN=105 TOS=0x00 PREC=0x00 TTL=52 ID=16342 DF PROTO=TCP SPT=443 DPT=48370 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.18 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=24151 DF PROTO=TCP SPT=48370 DPT=443 WINDOW=72 RES=0x00 ACK URGP=0 UID=10375 GID=10375 MARK=0x8d
adb shell su -c tcpdump -i any -U -s0 -vvvv -ttt -A -w - 'not port 5555' | wireshark -k -i -
C:\platform-tools\adb.exe shell su -c tcpdump -i any -U -s0 -vvvv -ttt -A -w - 'not port 5555' | C:\Program\Wireshark\wireshark.exe -k -i -
cmd package list packages -U|awk -F: '/com.bankid.bus/{print $3}' 10375
appUID=$(cmd package list packages -U|awk -F: '/com.bankid.bus/{print $3}')
iptables -I OUTPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'SNIFFING_TO_EXPOSE_NOOBS_THAT_CRY: ' --log-uid
owner: Could not determine whether revision 1 is supported, assuming it is. iptables v1.8.7 (legacy): can't initialize iptables table `filter': Permission denied (you must be root) Perhaps iptables or your kernel needs to be upgraded.
su -c iptables -I DROP -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'DROP--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I OUTPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'OUTPUT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I INPUT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'INPUT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I FORWARD -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix 'FORWARD--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid su -c iptables -I REJECT -m owner --uid-owner ${appUID} -j LOG --log-level 7 --log-prefix '-REJECT--SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: ' --log-uid
SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN=wlan0 OUT= SRC=185.198.4.19 DST=192.168.1.231 LEN=210 TOS=0x00 PREC=0x00 TTL=52 ID=37793 DF PROTO=TCP SPT=80 DPT=56592 WINDOW=59 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.19 LEN=168 TOS=0x00 PREC=0x00 TTL=64 ID=21921 DF PROTO=TCP SPT=56592 DPT=80 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x8d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.19 LEN=168 TOS=0x00 PREC=0x00 TTL=64 ID=21921 DF PROTO=TCP SPT=56592 DPT=80 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x8d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG: IN=wlan0 OUT= SRC=185.198.4.19 DST=192.168.1.231 LEN=52 TOS=0x00 PREC=0x00 TTL=52 ID=37794 DF PROTO=TCP SPT=80 DPT=56592 WINDOW=59 RES=0x00 ACK URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG IN=wlan0 OUT= SRC=185.198.4.18 DST=192.168.1.231 LEN=105 TOS=0x00 PREC=0x00 TTL=52 ID=16342 DF PROTO=TCP SPT=443 DPT=48370 WINDOW=67 RES=0x00 ACK PSH URGP=0 UID=10375 GID=10375 MARK=0x3008d SNIFFING_FOR_PROOVE_THE_CYBE3R_EXPERTS_WRONG= OUT=wlan0 SRC=192.168.1.231 DST=185.198.4.18 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=24151 DF PROTO=TCP SPT=48370 DPT=443 WINDOW=72 RES=0x00 ACK URGP=0 UID=10375 GID=10375 MARK=0x8d
adb shell su -c tcpdump -i any -U -s0 -vvvv -ttt -A -w - 'not port 5555' | wireshark -k -i -
C:\platform-tools\adb.exe shell su -c tcpdump -i any -U -s0 -vvvv -ttt -A -w - 'not port 5555' | C:\Program\Wireshark\wireshark.exe -k -i -
z3s:/data/data/com.bankid.bus # cat shared_prefs/pp_shared_prefs.xml <?xml version='1.0' encoding='utf-8' standalone='yes' ?> <map> <int name="xxxxxxxxxxxxxx" value="1" /> <int name="Latest_exit_reason" value="13" /> <int name="xxxxxxxxxxxx" value="169" /> <int name="74accd_android.permission.ACCESS_FINE_LOCATION" value="xxxxxxx" /> <int name="74accd_android.permission.CAMERA" value="xxxxxxx" /> <string name="xxxxxxxxx"></string> <int name="Latest_error_code" value="15" /> <string name="language_pref_name">sv</string> <string name="xxxxxxxxx">xxxxxxxx</string> </map>
z3s:/data/data/com.bankid.bus # cat shared_prefs/pp_shared_prefs.xml <?xml version='1.0' encoding='utf-8' standalone='yes' ?> <map> <int name="xxxxxxxxxxxxxx" value="1" /> <int name="Latest_exit_reason" value="13" /> <int name="xxxxxxxxxxxx" value="169" /> <int name="74accd_android.permission.ACCESS_FINE_LOCATION" value="xxxxxxx" /> <int name="74accd_android.permission.CAMERA" value="xxxxxxx" /> <string name="xxxxxxxxx"></string> <int name="Latest_error_code" value="15" /> <string name="language_pref_name">sv</string> <string name="xxxxxxxxx">xxxxxxxx</string> </map>
Du måste vara medlem för att kunna kommentera
Flashback finansieras genom donationer från våra medlemmar och besökare. Det är med hjälp av dig vi kan fortsätta erbjuda en fri samhällsdebatt. Tack för ditt stöd!
Swish: 123 536 99 96 Bankgiro: 211-4106