Technical information
- Adware.Dowgin.14.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ci.li.c####.cn:80
- TCP(HTTP/1.1) cd.md.c####.####.net:80
- TCP(HTTP/1.1) wapb####.b####.com:80
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) wapb####.b####.com:443
- TCP(TLS/1.0) ssls####.jom####.com:443
- TCP(TLS/1.0) i####.b####.com:443
- TCP(TLS/1.0) wap.n.sh####.com:443
- TCP(TLS/1.0) baik####.b####.com.####.com:443
- TCP(TLS/1.0) b####.b####.com:443
- TCP(TLS/1.0) box.jom####.com:443
- TCP(TLS/1.0) t####.jom####.com:443
- TCP(TLS/1.0) g####.b####.com:443
- b####.b####.com
- baik####.b####.com
- cd.md.c####.cn
- ci.li.c####.cn
- g####.b####.com
- g####.b####.com
- g####.b####.com
- g####.b####.com
- g####.bdst####.com
- g####.bdst####.com
- g####.bdst####.com
- i####.b####.com
- m.b####.com
- s.bdst####.com
- ti####.b####.com
- wapb####.b####.com
- cd.md.c####.####.net/offer/20171206/201712061752304.png
- cd.md.c####.####.net/offer/20181109/201811091511627.apk
- cd.md.c####.####.net/offer/20181204/201812041054759.png
- cd.md.c####.####.net/offer/20190403/201904031138116.apk
- cd.md.c####.####.net/offer/20190403/201904031407486.png
- wapb####.b####.com/item/半妖倾城/18770834
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/e65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/i65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/p65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/q65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/r65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/s65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/t65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/u65
- ci.li.c####.cn/gnehcgniqoaynab/e1e4/w65
- /data/data/####/ConfigInfo.xml
- /data/data/####/DualSimConfigInfo.xml
- /data/data/####/FULL7100_1264_1539595124_fst.dat
- /data/data/####/MultiDex.lock
- /data/data/####/TMSPropertiesAntitheftProperty.xml
- /data/data/####/TMSPropertiesNetInterfaceManager.xml
- /data/data/####/_cscombaidushujiaqierqibanyaoqingcheng_r.xml
- /data/data/####/_mjtcombaidushujiaqierqibanyaoqingchengp.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/com.ghy.ewe.jar
- /data/data/####/conch_cache.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dbconfig.xml
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/index
- /data/data/####/local_crash_lock
- /data/data/####/meriExt.db-journal
- /data/data/####/meri_config.xml
- /data/data/####/multidex.version.xml
- /data/data/####/mutil_process
- /data/data/####/native_record_lock
- /data/data/####/p_lock
- /data/data/####/piscombaidushujiaqierqibanyaoqingchengw.xml
- /data/data/####/qqsecure.db
- /data/data/####/qqsecure.db-journal
- /data/data/####/tmp-com.tencent.qqpimsecure-1.apk.classes-1294064164.zip
- /data/data/####/uhcombaidushujiaqierqibanyaoqingchengqs.xml
- /data/data/####/vacombaidushujiaqierqibanyaoqingcheng_w.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/x_rb_j_al_ct_2.dat
- /data/data/####/xdm
- /data/data/####/zscom.db
- /data/data/####/zscom.db-journal
- /data/media/####/6cf6a2abf10879c08285a274e72327e1.tmp
- /data/media/####/7fc000b614430
- /data/media/####/8950f1cae1554
- /data/media/####/8fbec85d084f84a32336fbbd8852c38e.tmp
- /data/media/####/b076ac23900b2
- /data/media/####/filesafe_db.sqlite-journal
- /data/media/####/pr.p
- chmod 0771 /data/data/com.tencent.qqpimsecure/applib
- chmod 777 /storage/emulated/0/download/omba//6cf6a2abf10879c08285a274e72327e1.tmp
- chmod 777 /storage/emulated/0/download/omba//8fbec85d084f84a32336fbbd8852c38e.tmp
- grep xdm
- pgrep xdm
- pidof xdm
- ps
- ps xdm
- sh
- sh -c ps | grep xdm
- DES
- DES