FLIX VISION seems to have been disconnected to all servers, is anyone able to use it?
Just tried it all working here
1 Like
Avid08
March 23, 2025, 9:05am
3
I wonder if still has malicious code…
opened 12:58AM - 12 Jan 25 UTC
closed 09:52PM - 14 Jan 25 UTC
### Type
Bad sites
### Add additional context
Decompilation and source … code analysis was performed on app version v3.0.1r, retrieved from the official source that is provided on FMHY (https://linktr.ee/flixvision), using [jadx](https://github.com/skylot/jadx).
A few months ago, [users reported on Reddit](https://www.reddit.com/r/firetvstick/comments/1f7ywx3/flix_vision_293_apk_has_potential/) that the Flix Vision app was making unsolicited network requests (signs of internet sharing/botnet). Being a reverse engineer myself, I decided to look into the latest version of the app and check for potential malicious code.
I have discovered that the Flix Vision app has code that, at the developer's discretion, can remotely enable an internet-sharing SDK called TraffMonetizer that runs in the background. This turns the users of the Flix Vision app into exit nodes for residential proxy services that can perform web scraping and other malicious/illegal activities [1](https://www.trendmicro.com/vinfo/us/security/news/vulnerabilities-and-exploits/how-residential-proxies-and-captcha-solving-services-become-agents-of-abuse),[2](https://www.orangecyberdefense.com/be/blog/unveiling-the-depths-of-residential-proxies-providers), using the user's internet connection, without their consent or knowledge. The developers of Flix Vision get revenue from TraffMonetizer for selling user's internet connections.
The following is the flow:
On app start and in the background, a configuration file is retrieved which has the base settings for Flix Vision. There is a primary and backup URL (t.ly/gcCVh, github.com/fvision8/publish/releases/download/12/conf.json).


As of 1/11/2025, the JSON file returns the following:

Take note of the traff_sd value.
Once retrieval is complete, parseRemoteConfig is called. At its core, it's nothing special, but there's this code that checks the traff_sd boolean and sets it accordingly in pref_traff_1. It also initializes a new package with a key if it's true, and stops if it is false. What is this "hy1" package?

Looking into the package, it is initializing the TraffMonetizer SDK.

Per [TraffMonetizer](https://traffmonetizer.com/for-developers/):
> After integrating our SDK your free users will be sharing a tiny portion of their Internet bandwidth with our network (you can adjust the maximum shared traffic in your dashboard) - and we will pay you for this traffic.
This isn't the first time an Android app has been (mis)used for this purpose, but in some cases the app asks for consent. Flix Vision clearly does not.
I would recommend removing Flix Vision from the FMHY directory https://fmhy.net/android-iosguide#android-streaming, or at the least flagging a warning for this code being present as there are a number of users that may have installed this app on their Android TV device, especially as it was spread pretty widely on YouTube and various sources.
Still able to use it as of yesterday. Will try this morning.
11.53am uk time all working
1 Like
The 310 version has a different icon and the links work, the 301r very the seems to no longer work, can’t double check because I deleted it. (I might reload and check later)
310 does show show 6 hits in VirusTotal, mostly around ads, I don’t really trust it so I kill it (forse stop) when ever I shut it down.
I keep it because it has links I can’t find in other apps particularly for a current Spanish language show and I can find an English dubbed version with it.
Actually watching it as I type this.
The icon shows the name and “spydog” under it so…
I’m willing to take my chances but you guys do you.
1 Like
MarkxG
March 23, 2025, 2:01pm
8
LOL “Bad Sites” Sounds legit
I find pretty much nothing plays on Flixvision unless it is a “direct link” or real debrid link. The “embedded” and other links don’t play.
3 Likes
i have no rd and it works great always has suggest problem may be your end
They (embedded) play for me but you can’t just try one, some do not work, that’s true. But I tend to be tenacious.
1 Like
the latest version is 3.1.1.r the app will update itself if you allow
3 Likes
Shayde
March 23, 2025, 5:30pm
13
It is. Perhaps if you read beyond the part that labels bad sites, but I’m sure you don’t care because nothing can ever harm your devices and we’re all just nervous nellies for looking into it.
5 Likes
VickiS
March 24, 2025, 5:15am
14
Its working amazingly here as well. I watch it all the time
5 Likes
I clicked on the discord and it sent me to a new page called PrimeFlix
I gave up on it. No direct links, all embedded.
I use Dr Ventura in downloader code 92769, I have flixvision and it works.
Yes, I was starting to have that same problem. Updating to 3.1.1 helped and changing my player from Flix Vision Player to MX Player.
If you can’t update from the app’s settings, uninstall it and get the latest version from unlinked-code firestick. It’s latest ver. is 3.1.1, updated March 21, 2025.
When I have problems finding something on Flix Vision, I can find it on Film+.
My problem is only when I’m searching for a TV series to stream; otherwise, everything works fine. It was leading me to pay to watch. Now if it shows up in their list, it’s fine.
Still working, everything seems fine.