Flix vision 2.9.3 apk has potential malware/malicious botnet behaviour

Apparently the latest version of the app is making unexpected network requests to different sites like a botnet.

https://www.virustotal.com/gui/file/cc92feb851a815faa1105749c28c47327263bfcb101ff86ed31fd9dfd5be21e9/community

Anyone noticed anything similar?


edit: on further investigation, it is using a weird “P2P VPN” using the user’s network resources without their consent similar to what Mobdro and Hola VPN did in the past.

So I’d advise against using the app for now until the developers explain their decision and are more transparent about their processes going forward.

Welcome to /r/firetvstick.

  • Please thank the members of this community by upvoting helpful comments and posts

  • Keep it friendly!

  • IPTV discussions are currently banned due to the influx of spam they attract

  • If applicable, include Firestick and TV specs

  • For additional help, try your post on /r/firestick

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

Is this only on 2.9.3, are you able to check if 2.9.2 does the same?

The adult section was having issues in 2.9.2 many adult sections would have prompt about vpn required and still wouldn’t work with VPN. This was supposedly fixed in 2.9.3. I wonder if what you find was their “fix” or of it has existed in prior versions like 2.9.2.

Since Flix Vision is doing weird things in the background… What is the next best app to use?

When i try to install the app is displayed a messages saying this app is fake or can steal your data soo should I install it or not??

I’m a bit late but I also observed the same thing where it keeps making request to morelogin.net and thankfully my router stopped it in time. It’s one of those services where it uses you as a proxy exit node even though you agreed to have ads. I made a post about it but it got removed by the mods. I shared similar observations at the two links below.

https://www.reddit.com/r/firetvstick/comments/1fkf1z5/random_requests_to_morelogincom_what_could_it_be/

https://preview.redd.it/fbhn7sg5ku7e1.png?width=1616&format=png&auto=webp&s=4dbf7a3a0200454277258766f30bdaf43a4d5a52

I’m a HUGE fan of Stremio. With a few choice add-ons, I finally have the app customized the way I want it. The Torrentio add-on with debrid support (my RealDebrid account API key) is customizable and freaking awesome. The Stremio Add-Ons subreddit explains in detail how to set everything up perfectly.

Just had it disappear on the 3.0 version .

What’s weird is that Google, Amazon, Microsoft, major car companies are all going this AND charging YOU for it, while ALSO, selling YOUR data, and getting paid for that as well. I try to keep my apps to one scam, so using my unlimited bandwidth to hopefully help others enjoy the app as well seems like a fair trade especially considering the alternative!!!

No issues here 2.9.3

The app is fine you don’t think the other apps are doing the same BS think again

It doesn’t appear to be a new thing. The “reVPN” functionality appears to have been in the app since the very beginning, but nobody had paid enough attention to the app and what it was doing behind the scenes until now (I’m guessing most people still have no idea about it).

And is probably why Google Play Store and Virus Total have been flagging it since its inception as a malicious PUP (Potentially unwanted Program/Application), and didn’t want you installing it.

streamflix github, it’s pretty good and my main app rn.

Ultimately the best option is something truly open-source that everyone can view it’s source code since most of these “free” apps are most likely free for a reason (either stealing or selling your data), so whenever Google Play suggests something as malicious, you should probably take it a bit more seriously.

movie-web was an excellent project for this, but sadly didn’t support Firestick since it was a web-based solution.

  • Cloudstream had potential since it’s open-source, but I am not a fan of the user interface.
  • OnStream and FilmPlus are decent, assuming you have an adblocker enabled.
  • Other options are available in fmhy if you’re curious enough to try them out.

I’m personally thinking of retiring the Firestick in favour of a cheap Chromebook/laptop/windows tablet, and connect that to the TV and watch things that way (since a desktop/browser + uBlock origin is ultimately much safer if you know what you’re doing)

Don’t install it dude lol

Didn’t see your post, the mods definitely deleted it off the sub. I was initially considering joining the Flix Vision discord, and alerting the current users in there that way (but I’m sure the post would be swiftly deleted and my account blocked lol)

Either way, this post seems to be on the first page of Google when you search it, so hopefully that helps new people doing research into it.

And real-debrid is dead, no more links.

Interesting, haven’t been keeping up with it since uninstalling it.

Seems like they’ve been experimenting with its removal following this post, I did just check the latest 3.1.0r version, and that has the reVPN stuff back in (https://www.virustotal.com/gui/file/a0720c1dd2742a8c6a1631e9017d3df6bb5716857948711b4503ec35db50b325/details)

3.0.0r removed it.

3.1.0r had a new io.nn.lp.boot.BootReceiver service to replace the old io.netas.service.NetasService one.

3.0.2-beta added the io.netas.service.NetasService service back in, as well as an a new bandwidth monetisation service com.mon.app_bandwidth_monetizer_sdk.service.BootReceiver.

So yeah, it’s back, either way, I wouldn’t trust the app given their weird behind the scenes tactics.

How did you check if you had the issues? Did you check your network logs too?

Looking at the ticketmaster.com and tiktok requests on that page i’m leaning more towards it being a real issue and our IP is being unintentionally used as a VPN of some kind. I will try and do some more testing later on my computer to see for myself

The difference is there isn’t concrete evidence of the other apps doing weird shit with your data.

Until you can prove that, don’t be obtuse.