[Root][TWRP][COTR][BOOTLOADERS]Kindle Fire Utility v0.9.9 (4/5/13) [1st Gen Only!]

Search This thread

Duncan Idaho

Member
Oct 26, 2015
46
0
For anyone new, please do NOT use the9.9 version in the OP, its not a legit link nor a legit file, all it does is download a trojan virus that will proceed to infect your machine with a plethora of uneeded crap.

ESET Id's it as a variant of kryptik.GGEO trojan. The file is NOT safe.

Also I leave the malwarebytes log:


Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 4/28/18
Scan Time: 7:49 PM
Log File: cb66ba22-4b3e-11e8-a69a-386077e7149d.json
Administrator: Yes

-Software Information-
Version: 3.4.5.2467
Components Version: 1.0.342
Update Package Version: 1.0.4910
License: Free

-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Luis-PC\Luis

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 312736
Threats Detected: 119
Threats Quarantined: 119
Time Elapsed: 33 min, 10 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 20
Adware.FastDataX.EncJob, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\FASTDATAX TASK, Delete-on-Reboot, [2089], [407191],1.0.4910
Adware.FastDataX.EncJob, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CBB1C130-2C01-461D-9831-2D08ED1A5F12}, Delete-on-Reboot, [2089], [407191],1.0.4910
Adware.FastDataX.EncJob, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{CBB1C130-2C01-461D-9831-2D08ED1A5F12}, Delete-on-Reboot, [2089], [407191],1.0.4910
Adware.FastDataX.EncJob, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FastDataX_is1, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.Wajam, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, Delete-on-Reboot, [433], [-1],0.0.0
Adware.Tuto4PC, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\EWMON, Delete-on-Reboot, [3004], [411133],1.0.4910
Adware.FastDataX, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\FastDataX, Delete-on-Reboot, [4009], [484533],1.0.4910
PUP.Optional.Tuto4PC, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\wewewe, Delete-on-Reboot, [576], [339689],1.0.4910
Adware.Tuto4PC, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\BIGTIME, Delete-on-Reboot, [3004], [411132],1.0.4910
Adware.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\APreSam, Delete-on-Reboot, [3004], [451260],1.0.4910
Adware.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\MPrForShutT, Delete-on-Reboot, [3004], [451257],1.0.4910
Adware.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\NSaveA, Delete-on-Reboot, [3004], [451259],1.0.4910
Adware.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\PrAmNP, Delete-on-Reboot, [3004], [451258],1.0.4910
Adware.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\PrIncub, Delete-on-Reboot, [3004], [451256],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\{78CFF7EF-744F-96AA-77C8-62F389096473}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{54C9AEE0-C82B-4616-A9AE-E3F6FC223CE9}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{54C9AEE0-C82B-4616-A9AE-E3F6FC223CE9}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\{3D22BC61-7A68-5F97-6035-446A362EA859}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0F6D1896-8F1B-49BF-B03E-1C4FB38CEC81}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{0F6D1896-8F1B-49BF-B03E-1C4FB38CEC81}, Delete-on-Reboot, [394], [511696],1.0.4910

Registry Value: 7
Adware.Wajam, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Delete-on-Reboot, [433], [-1],0.0.0
Adware.Wajam, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Delete-on-Reboot, [433], [-1],0.0.0
Adware.Wajam, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYOVERRIDE, Delete-on-Reboot, [433], [-1],0.0.0
Adware.Wajam, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Delete-on-Reboot, [433], [-1],0.0.0
Adware.Tuto4PC, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\EWMON|PARTNER, Delete-on-Reboot, [3004], [411133],1.0.4910
Adware.Tuto4PC, HKU\S-1-5-21-2774592961-2643736497-1890012436-1000\SOFTWARE\MICROSOFT\BIGTIME|PARTNER, Delete-on-Reboot, [3004], [411132],1.0.4910
Adware.FastDataX.EncJob, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CBB1C130-2C01-461D-9831-2D08ED1A5F12}|PATH, Delete-on-Reboot, [2089], [407189],1.0.4910

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 17
Adware.FastDataX.EncJob, C:\PROGRAM FILES (X86)\FASTDATAX, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.Tuto4PC, C:\PROGRAM FILES (X86)\WEATHERINSPECT, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\6HDE6F1XRC, Delete-on-Reboot, [3004], [487473],1.0.4910
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\ad76a4d8-2bc7-0, Delete-on-Reboot, [649], [407181],1.0.4910
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\ad76a4d8-3a03-1, Delete-on-Reboot, [649], [407181],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\META-INF, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\images, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\js, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\USERS\LUIS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\eunz05jy.default\EXTENSIONS\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233, Delete-on-Reboot, [1155], [450133],1.0.4910
Adware.FastDataX.EncJob, C:\Users\Luis\AppData\Local\FastDataX\log\installer, Delete-on-Reboot, [2089], [474798],1.0.4910
Adware.FastDataX.EncJob, C:\Users\Luis\AppData\Local\FastDataX\log, Delete-on-Reboot, [2089], [474798],1.0.4910
Adware.FastDataX.EncJob, C:\USERS\LUIS\APPDATA\LOCAL\FASTDATAX, Delete-on-Reboot, [2089], [474798],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\BESTDOWNLOADER, Delete-on-Reboot, [3004], [515829],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\BOOSTPC, Delete-on-Reboot, [3004], [515830],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\CLEANCOMPUTERNEW, Delete-on-Reboot, [3004], [515831],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\PUBLICHOTSP, Delete-on-Reboot, [3004], [515832],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\SHUTDOWNTIME, Delete-on-Reboot, [3004], [515833],1.0.4910

File: 75
PUP.Optional.Amonetize.Gen, C:\PROGRAMDATA\ad76a4d8-2bc7-0\BITB85C.tmp, Delete-on-Reboot, [3817], [257931],1.0.4910
PUP.Optional.Amonetize.Gen, C:\PROGRAMDATA\ad76a4d8-3a03-1\BITB2EE.tmp, Delete-on-Reboot, [3817], [257931],1.0.4910
Adware.FastDataX.EncJob, C:\WINDOWS\SYSTEM32\TASKS\FASTDATAX TASK, Delete-on-Reboot, [2089], [407191],1.0.4910
Adware.FastDataX.EncJob, C:\PROGRAM FILES (X86)\FASTDATAX\UNINS000.DAT, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.FastDataX.EncJob, C:\Program Files (x86)\FastDataX\bwpah.dll, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.FastDataX.EncJob, C:\Program Files (x86)\FastDataX\FastDataX.exe, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.FastDataX.EncJob, C:\Program Files (x86)\FastDataX\unins000.exe, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.FastDataX.EncJob, C:\Program Files (x86)\FastDataX\unins000.msg, Delete-on-Reboot, [2089], [407194],1.0.4910
Adware.Tuto4PC, C:\PROGRAM FILES (X86)\WEATHERINSPECT\CAST.CONFIG, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\Program Files (x86)\WeatherInspect\4MH6CSEJ66WZYN4.exe.config, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\Program Files (x86)\WeatherInspect\config.conf, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\Program Files (x86)\WeatherInspect\RDZY7.exe.config, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\Program Files (x86)\WeatherInspect\uninstaller.exe, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Tuto4PC, C:\Program Files (x86)\WeatherInspect\uninstaller.exe.config, Delete-on-Reboot, [3004], [419918],1.0.4910
Adware.Wajam, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\S2S.EXE, Delete-on-Reboot, [433], [455164],1.0.4910
Adware.Tuto4PC, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\6HDE6F1XRC\OneTwo.exe.config, Delete-on-Reboot, [3004], [487473],1.0.4910
Adware.Tuto4PC, C:\Users\Luis\AppData\Local\Temp\6HDE6F1XRC\OneTwo.exe, Delete-on-Reboot, [3004], [487473],1.0.4910
Adware.Tuto4PC, C:\Users\Luis\AppData\Local\Temp\6HDE6F1XRC\SecondL.exe, Delete-on-Reboot, [3004], [487473],1.0.4910
Adware.Tuto4PC, C:\Users\Luis\AppData\Local\Temp\6HDE6F1XRC\SecondL.exe.config, Delete-on-Reboot, [3004], [487473],1.0.4910
Adware.Tuto4PC, C:\Users\Luis\AppData\Local\Temp\6HDE6F1XRC\up.exe, Delete-on-Reboot, [3004], [487473],1.0.4910
Adware.Tuto4PC, C:\Users\Luis\AppData\Local\Temp\6HDE6F1XRC\up.exe.config, Delete-on-Reboot, [3004], [487473],1.0.4910
PUP.Optional.BitsInstall.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [649], [-1],0.0.0
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\images\icon-128.png, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\images\icon-18.png, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\images\icon-48.png, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\images\icon-64.png, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\js\background.js, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\META-INF\manifest.mf, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\META-INF\mozilla.rsa, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\META-INF\mozilla.sf, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\bg.jpg, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\index.html, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\main.js, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\manifest.json, Delete-on-Reboot, [1155], [450133],1.0.4910
PUP.Optional.SuperFind, C:\Users\Luis\AppData\Roaming\Mozilla\Firefox\Profiles\eunz05jy.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233\style.css, Delete-on-Reboot, [1155], [450133],1.0.4910
Adware.FastDataX.EncJob, C:\Users\Luis\AppData\Local\FastDataX\log\installer\28-03-2018(18-07).log, Delete-on-Reboot, [2089], [474798],1.0.4910
Adware.FastDataX.EncJob, C:\Users\Luis\AppData\Local\FastDataX\log\installer\28-03-2018(18-08).log, Delete-on-Reboot, [2089], [474798],1.0.4910
Adware.FileTour, C:\WINDOWS\SYSTEM32\TASKS\{78CFF7EF-744F-96AA-77C8-62F389096473}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.FileTour, C:\WINDOWS\SYSTEM32\TASKS\{3D22BC61-7A68-5F97-6035-446A362EA859}, Delete-on-Reboot, [394], [511696],1.0.4910
Adware.WizzMonetize.Generic, C:\PROGRAM FILES\0R2QE3R18N\UNINSTALLER.EXE, Delete-on-Reboot, [12060], [516622],1.0.4910
Adware.Tuto4PC.Generic, C:\PROGRAM FILES (X86)\MOLPIA\4680074.EXE, Delete-on-Reboot, [3778], [414802],1.0.4910
Adware.LoadMoney, C:\PROGRAM FILES (X86)\MINIMAL ADB AND FASTBOOT\ZIPKFHD7TWRP2_8_7_0RECOVERY.EXE, Delete-on-Reboot, [391], [513452],1.0.4910
Adware.LoadMoney, C:\PROGRAM FILES (X86)\MINIMAL ADB AND FASTBOOT\ZIPKFHD7TWRP2_8_7_0RECOVERY.RAR, Delete-on-Reboot, [391], [513452],1.0.4910
Adware.Adposhel, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\IS-EH4NS.TMP\BWPAH.DLL, Delete-on-Reboot, [444], [425937],1.0.4910
Adware.Tuto4PC.Generic, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\IS-T565B.TMP\RELATIONSHIP.EXE, Delete-on-Reboot, [3778], [414802],1.0.4910
Adware.Tuto4PC.Generic, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\IS-JHU5J.TMP\KILO.EXE, Delete-on-Reboot, [3778], [414802],1.0.4910
Adware.Tuto4PC.Generic, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\IS-T565B.TMP\SETUP.EXE, Delete-on-Reboot, [3778], [489336],1.0.4910
Adware.FileTour, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\RAR$EXA3084.36231\KINDLE_FIRE_UTILITY_V0_9_9.EXE, Delete-on-Reboot, [394], [516505],1.0.4910
Adware.FastDataX, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\DATA.EXE, Delete-on-Reboot, [4009], [463466],1.0.4910
Adware.Elex, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\ZDJ.EXE, Delete-on-Reboot, [682], [515352],1.0.4910
Adware.Downloader, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\WEBUPD.EXE, Delete-on-Reboot, [390], [499620],1.0.4910
Trojan.Agent, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\WIGETFL.EXE, Delete-on-Reboot, [382], [434714],1.0.4910
PUP.Optional.DriverToolkit, C:\USERS\LUIS\DOWNLOADS\DRIVERTOOLKITINSTALLER.EXE, Delete-on-Reboot, [879], [512879],1.0.4910
Adware.FileTour, C:\USERS\LUIS\DOWNLOADS\KINDLE_FIRE_UTILITY_V0_9_9.RAR, Delete-on-Reboot, [394], [516505],1.0.4910
PUP.Optional.BundleInstaller, C:\USERS\LUIS\DOWNLOADS\IMPALER_PSX_EBOOT_CREATOR.ZIP, Delete-on-Reboot, [393], [507577],1.0.4910
Adware.FileTour, C:\USERS\LUIS\APPDATA\ROAMING\Microsoft\Windows\Recent\Kindle_Fire_Utility_v0_9_9(1).lnk, Delete-on-Reboot, [394], [516505],1.0.4910
Adware.FileTour, C:\USERS\LUIS\DOWNLOADS\KINDLE_FIRE_UTILITY_V0_9_9(1).RAR, Delete-on-Reboot, [394], [516505],1.0.4910
Adware.LoadMoney, C:\USERS\LUIS\DOWNLOADS\ZIPKFHD7TWRP2_8_7_0RECOVERY.RAR, Delete-on-Reboot, [391], [513452],1.0.4910
Generic.Malware/Suspicious, C:\DOWNLOADS\TRAINER.ZIP, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\NSME6E7.TMP\KMSAUTO NET.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\SETUP.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\INSTALLER_MI.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\BUT-SETUP-9.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\APPDATA\LOCAL\TEMP\WEATHERINSPECT.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\DOWNLOADS\1123_JADE_EMPIRE_SPE.ZIP, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\DOWNLOADS\SETUPIMGBURN_2.5.8.0.EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\DOWNLOADS\SETUPIMGBURN_2.5.8.0(1).EXE, Delete-on-Reboot, [0], [392686],1.0.4910
Generic.Malware/Suspicious, C:\USERS\LUIS\DOWNLOADS\WINISO.EXE, Delete-on-Reboot, [0], [392686],1.0.4910

Physical Sector: 0
(No malicious items detected)


(end)
 

sd_shadow

Recognized Contributor / XDA Welcome Team
Sep 21, 2011
18,989
2
10,019
South Dakota
goo.gl
Motorola Droid X
Amazon Fire
For anyone new, please do NOT use the9.9 version in the OP, its not a legit link nor a legit file, all it does is download a trojan virus that will proceed to infect your machine with a plethora of uneeded crap.

ESET Id's it as a variant of kryptik.GGEO trojan. The file is NOT safe.

Also I leave the malwarebytes log:
Yes, read the last few pages...

Sent from my PH-1 using Tapatalk

---------- Post added at 08:45 PM ---------- Previous post was at 08:38 PM ----------

https://xdaforums.com/showpost.php?p=73801216&postcount=478
 

Duncan Idaho

Member
Oct 26, 2015
46
0

sd_shadow

Recognized Contributor / XDA Welcome Team
Sep 21, 2011
18,989
2
10,019
South Dakota
goo.gl
Motorola Droid X
Amazon Fire
XDA No Longer Recommends Dev-Host
http://www.xda-developers.com/xda-devhost/

---------- Post added at 08:50 PM ---------- Previous post was at 08:48 PM ----------

So why is the OP still using links that lead to a trojan virus? Why hasn't a mod edited them out or placed actually legit links or a warning? I suffered a scare because the trojan specifically targets bank login information.
Why are you downloading it, this hasn't been relevant
For several years
 

Duncan Idaho

Member
Oct 26, 2015
46
0
Last edited:

R3SiEViL

Senior Member
Dec 13, 2010
97
41
Anyone with a link to the v0.9.9 version? The posted link doesn't work. . Thanks in advance.
 

rubikana

New member
Apr 22, 2019
2
0
Re: [Root][TWRP][FFF+FFFExtended]Kindle Fire Utility v0.9.7+ (3/16/13) [1st Gen Only!

Hi there,

almost succeeded but the server doesn't work anymore. now Kindle Fire (1st gen) device slowed down.
not sure why. Any help on the link to get back to the original and re-root all over again?
 
Last edited:

Speed_freak5150

New member
Jun 2, 2013
2
0
I know this is an old post. I am trying to root an OKF that is no longer supported by Amazon, but is still usable if I could get apps back on it after doing a factory reset.
 

triangleonastick

New member
Jun 3, 2020
3
0
i tried to use this specifically the 9.9 one (on my windows 10 (64)) and it seems to not play nicely with my fire specifically it cannot see the boot status of the kindle it says boot status: unknown if I do attempt to root it tells me this WARNING: Couldn't compute FAST_CWD pointer.
if i run it as admin it cant find the get file
please help i cant find any resources as to how solve these issues as most talk about fixing the adb status from offline (mine is online)
 

sd_shadow

Recognized Contributor / XDA Welcome Team
Sep 21, 2011
18,989
2
10,019
South Dakota
goo.gl
Motorola Droid X
Amazon Fire
i tried to use this specifically the 9.9 one (on my windows 10 (64)) and it seems to not play nicely with my fire specifically it cannot see the boot status of the kindle it says boot status: unknown if I do attempt to root it tells me this WARNING: Couldn't compute FAST_CWD pointer.
if i run it as admin it cant find the get file
please help i cant find any resources as to how solve these issues as most talk about fixing the adb status from offline (mine is online)
This really doesn't work anymore.
Which firmware is on the Fire?

Sent from my Moto E (4) using Tapatalk
 

Top Liked Posts

  • There are no posts matching your filters.
  • 114
    WARNING: The following files ONLY work for the Original KF. Running this on a 2nd Generation KF will brick the device.

    From Original thread:

    Hi all, some of you may have seen my utility over in the de-bricking thread. My goal at this point is to try and make lives easier for everyone I can.

    So what I have done is created a script that can be used to handle a lot of common things people may want, and I will continue to add things people request that I think would be easy, and beneficial. I just wanted to make this situation easier for the average person.

    You will see how the tool detects you at the default screen, and can refresh it by hitting 0 at any menu to have it refresh ADB/Fastboot and see what mode the kindle is in.

    Currently the tool comes packaged with the drivers required to operate ADB and Fastboot.

    Please note: If your device can't be seen in fastboot mode, please make sure to install the drivers packaged with this, as it will show up afterwards. You can use the install_drivers.bat with the device plugged in for this.

    Usage should be straight forward for the tool. If you are having issues with something, this tool has a good chance of getting you back on track.

    Rooting has been tested with the latest update (6.3.2) and it works 100%. Be sure to have your device booted up in normal mode before running the root.

    Features:
    • Automatic elevation to root for tool operations.
    • Full root install.
    • Auto detect current bootmode.
    • Auto Detect ADB/Fastboot Online/Offline.
    • Auto download update.zip from Amazon.
    • Auto download and install TWRP Recovery.
    • Auto download and install COTR Recovery.
    • Auto download and install FFF Bootloader.
    • Manage current bootmodes.
    • Manage Read/Write.
    • Install GoogleApps/Market/GoLauncherEX.
    • Lock/Unlock the Wallpaper from being changed.
      As of 3/16/2013:
    • Doesn't support CWM for now bad DL link and seems there is no updated, stable version.
    • Automated Dual-Boot installation and Un-Dual Boot
    • Choose Amazon Firmware to update to
    • More to come... This needs a bit of a code re-write from the things I added. Expect it to be updated soon.
    Please feel free to contact me if I should add even more features to this :)

    Here are some screen-shots:



    More to come...

    Please leave a message if this tool does not help you, malfunctions, or just to say thank you, or request more features!

    Don't forget to donate to teamwin for their awesome recovery system over at: Team Win Website

    Current Downloads:

    v0.9.9 Download

    Older Downloads:

    v0.9.8 Download

    Changelog:
    Code:
    4/5/13: v0.9.9 now has an option to install COTR recovery. 
    Squashed a few bugs including the superuser.apk not 
    installing bug.
    
    
    3/17/13: v0.9.8+ includes even more bug fixes from v0.9.8 
    and now implements the dual boot feature. 
    Please read the README.txt inside the zip.
    
    
    3/16/13: A few major code bugs fixed. Removed DL link for v0.9.7 
    because of these bugs. 100% tested and working with everything.
    
    3/15/13: Initial upload... v0.9.7

    Credits: VashyPooh for script and permission to maintain.

    Initial work by ubeezee & yareally on there forum thread.
    Full revert based off method from Clavin, "tweaked" by Vashypooh.
    Full credit of TWRP goes to Team Win for releasing an awesome tool! Good job guys.
    I checked with Dees_Troy prior to integrating TWRP install into the tool, and he was alright with it. If this changes, it will be changed or completely removed per their request.
    rooobbbbb on XDA for the Wallpaper Lock trick.
    Jolleyboy/Bandage on XDA for Android Market guide/ Android Apps.
    Sync settings found by Abramel @ XDA.
    Zeb for testing 0.9.4!




    If you are asking for help and can't post here, please post in Q&A forums here.
    If you CAN post and are asking for help please provide some required information listed below to receive best solutions right away.


    Provide:
    • Windows Verson
    • 32-bit or 64-bit
    • What steps you have taken
    • What device manager says about your device
    • Version of KFU you are using
    • Exact error you recieve
    6
    Awesome! Will this work with Linux too?

    Sent from my Amazon Kindle Fire using Tapatalk HD

    Not yet but I do have plans ;)
    5
    so i lost my root due to the update. tried rooting with the new kfu. well when i slected that option, i selected normal boot. the kindle rebooted. well after it reboot i acidently selected fastboot. the kindle rebooted and i cant get it past the kindle fire screen. now what do i do? please help.

    UPDATE: i got it fix. i select the wrong command. it rebooted in to twrp after installing fff, twrp, and setting the recovery bootmode. rebooted and stil didnot achive root. what did i do wrong?

    Don't know what you did... Try the root option again. Maybe it will work. Be sure to have run the install_drivers.bat and to double check what option you're selecting and have your kindle powered up and booted into normal mode before running the root option.

    I tried to install permanent superuser to get my root back (that it had for 6.3.1) using the 2nd selection but I just have dual boot and no root!
    what happened?


    What option did you select? Again, be sure to double check what you select and if you don't want dual boot run the un-dual boot option, then re-run the root option.


    To all users:
    This utility has been tested thoroughly. There is no reason to have such major issues if you: A. Follow directions properly and read the onscreen instructions. and B. Run the install_drivers.bat executable and install your drivers. then finally C. Have your device booted up into Normal mode before proceeding with installations unless you are bricked you can have your device in any mode to install TWRP and FFF... :p
    Just puttin that out there so there can be less questions here :)

    Good luck to all of you.
    5
    @soupmagnet

    Im well aware of my own post in another section.This post is in regards to the kindle fire utility and the bundled drivers and installer. While that post is a more broad post looking for an outside solution to my issue.Since the kindle connects as a adb device, MTP device, and mass storage device there is a more complex setup than most devices
    Okay first off, arguing with another developer about how well their "works" work will get you nowhere on this site and you put yourself at risk of getting a Moderator involved...but that's just some friendly advice from one user to another, so you can take it for what it's worth.


    The point of directing you to your original post, where I had posted another link, was so you can educate yourself and have a better foundation that can empower you to make a more educated suggestion/bug report/whatever.

    Having said that, if you used the information that you learned from that post, compared it to the way KFU's driver install package works, and respectfully offered a suggestion to the developer that can help to make the KFU work better in more situations, I'm absolutely positive you would get a better response from him and possibly even lead to an updated version that will work in yours and possibly other situations.
    4
    Just picked up the my kindle fire 6.3.2- sorry for the neewb question, however I want to make sure I have the process correct.

    download and extract utility to my pc
    run.bat
    install root and SU
    install TWRP
    install FFF
    install custom rom

    Thank you for taking the time sorry for the questions

    You got it right, except install drivers first before run.bat :p
    Then you just hit the root option and it will install FFF and TWRP on its own ;)

    Sent from my Amazon Kindle Fire using xda app-developers app