Technical information
- Adware.Was.1.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) g####.62####.com:8001
- TCP(HTTP/1.1) falcons####.net:9988
- TCP(TLS/1.0) pm-gat####.superso####.com:443
- TCP(TLS/1.0) sc####.go####.com:443
- TCP(TLS/1.0) t.appsf####.com:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) outcome####.superso####.com:443
- TCP(TLS/1.0) networ####.ss####.com:443
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) ecomm####.iap.uni####.com:443
- TCP(TLS/1.0) api.appsf####.com:443
- TCP(TLS/1.0) firebas####.google####.com:443
- TCP(TLS/1.0) www.face####.com:443
- TCP(TLS/1.0) 66.1####.1.95:443
- TCP(TLS/1.0) pla####.google####.com:443
- TCP(TLS/1.0) prd-le####.cdp.inte####.####.com:443
- TCP(TLS/1.0) 74.1####.140.95:443
- TCP(TLS/1.0) i####.superso####.com:443
- TCP(TLS/1.0) co####.uca.c####.####.com:443
- TCP(TLS/1.0) c####.jq####.com:443
- TCP(TLS/1.0) sto####.google####.com:443
- TCP(TLS/1.2) firebas####.google####.com:443
- TCP(TLS/1.2) and####.cli####.go####.com:443
- a.da####.com
- and####.a####.go####.com
- and####.cli####.go####.com
- api.appsf####.com
- c####.jq####.com
- cdp.c####.uni####.com
- co####.uca.c####.####.com
- connect####.gst####.com
- ecomm####.iap.uni####.com
- falcons####.net
- firebas####.google####.com
- g####.62####.com
- g####.face####.com
- googl####.g.doublec####.net
- i####.superso####.com
- networ####.ss####.com
- outcome####.superso####.com
- pla####.google####.com
- pla####.googleu####.com
- pm-gat####.superso####.com
- sc####.go####.com
- sto####.google####.com
- t.appsf####.com
- www.face####.com
- api.appsf####.com:443/install_data/v3/<Package>?devkey=####&device_id=####
- api.face####.com:443/v5.0/2720072768220671/mobile_sdk_gk?fields=####&for...
- api.face####.com:443/v5.0/2720072768220671/model_asset?fields=####&forma...
- api.face####.com:443/v5.0/2720072768220671?fields=####&format=####&sdk=#...
- ecomm####.iap.uni####.com:443/catalog?appid=####&deviceid=####&userid=##...
- falcons####.net:9988/falcon-squad/?EIO=####&transport=####&version=####&...
- i####.superso####.com:443/sdk/v7.1.1?request=####
- networ####.ss####.com:443/mobileSDKController/mobileController.html
- sc####.go####.com:443/macros/s/AKfycbz4Ui5yQEVwKIGM0yQhuf1aGL8KyW0ISg7Rm...
- sto####.google####.com:443/falcon_squad/game_config/config.txt?p=####
- api.face####.com:443/v5.0/2720072768220671/activities
- co####.uca.c####.####.com:443/
- firebas####.google####.com:443/v1/projects/falcon-squad/installations
- g####.62####.com:8001/addNewApp
- g####.62####.com:8001/gameState
- outcome####.superso####.com:443/mediation?adUnit=####&sessionId=####&app...
- pm-gat####.superso####.com:443/auction?appKey=####&SDKVersion=####&initC...
- prd-le####.cdp.inte####.####.com:443/v1/events
- t.appsf####.com:443/api/v4/androidevent?buildnumber=####&app_id=####
- www.face####.com:443/adnw_sync2
- /data/data/####/.cl
- /data/data/####/.hptc.cache_r.attack.vip.xc
- /data/data/####/.hptc_kache_r.attack.vip.xc
- /data/data/####/.jg.ic
- /data/data/####/.jg.store.report_cf
- /data/data/####/.jgck
- /data/data/####/38b23e6bcf154a60_0
- /data/data/####/38b23e6bcf154a60_1
- /data/data/####/7aa15ccbdd3b0416_0
- /data/data/####/7aa15ccbdd3b0416_1
- /data/data/####/84b42a939c514372_0
- /data/data/####/AppEventsLogger.persistedevents
- /data/data/####/Cookies-journal
- /data/data/####/FBAdPrefs.xml
- /data/data/####/FIREBASE_CLOUD_MESSAGING_LOCAL_STORAGE
- /data/data/####/FIREBASE_CLOUD_MESSAGING_LOCKFILE (deleted)
- /data/data/####/FirebaseAppHeartBeat.xml
- /data/data/####/Mediation_Shared_Preferences.xml
- /data/data/####/PersistedInstallation.W0RFRkFVTFRd+MTo5ODIyNTcy...3.json
- /data/data/####/PersistedInstallation1726623292tmp
- /data/data/####/PersistedInstallation933005789tmp
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/admob.xml
- /data/data/####/admob_user_agent.xml
- /data/data/####/androidx.work.workdb-journal (deleted)
- /data/data/####/app_resources_lib.dex
- /data/data/####/app_resources_lib.dex.flock (deleted)
- /data/data/####/app_resources_lib.jar
- /data/data/####/appsflyer-data.xml
- /data/data/####/audience_network.dex
- /data/data/####/audience_network.dex.flock (deleted)
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cheuu
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.oat
- /data/data/####/com.facebook.ads.idfa.xml
- /data/data/####/com.facebook.internal.SKU_DETAILS.xml
- /data/data/####/com.facebook.internal.preferences.APP_GATEKEEPERS.xml
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.facebook.sdk.USER_SETTINGS.xml
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/com.facebook.sdk.attributionTracking.xml
- /data/data/####/com.google.android.datatransport.events-journal
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.os.falcon.galaxy.space.shooter.attack.vip.x...es.xml
- /data/data/####/com.os.falcon.galaxy.space.shooter.attack.vip.x...fs.xml
- /data/data/####/dfe6b2497a7513ba_0
- /data/data/####/em-notification-categories-sharedprefs.xml
- /data/data/####/f038e94cb33282ab_0
- /data/data/####/f3d51800f3d63a76_0
- /data/data/####/generatefid.lock
- /data/data/####/google_api_resources_lib.dex
- /data/data/####/google_api_resources_lib.dex.flock (deleted)
- /data/data/####/google_api_resources_lib.jar
- /data/data/####/google_app_measurement_local.db
- /data/data/####/google_app_measurement_local.db-journal
- /data/data/####/https_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/index
- /data/data/####/libjiagu.so
- /data/data/####/metrics_guid
- /data/data/####/proc_auxv
- /data/data/####/supersonic_sdk.db
- /data/data/####/supersonic_sdk.db-journal
- /data/data/####/supersonic_shared_preferen.xml
- /data/data/####/the-real-index
- /data/data/####/tmd
- /data/data/####/tv
- /data/data/####/umeng_general_config.xml
- /data/data/####/uuloi
- /data/data/####/vva
- /data/data/####/vva.dex
- /data/data/####/vva.dex.flock (deleted)
- /data/data/####/vva.jar
- /data/media/####/.nomedia
- /data/media/####/41990b053f026f7c89b885b9c7b78b96
- /data/media/####/Compat.browser
- /data/media/####/DefaultWsdlHelpGenerator.aspx
- /data/media/####/JsonFx.Json.dll-resources.dat
- /data/media/####/Library
- /data/media/####/Newtonsoft.Json.dll-resources.dat
- /data/media/####/browscap.ini
- /data/media/####/c
- /data/media/####/config
- /data/media/####/config.xml
- /data/media/####/d
- /data/media/####/e
- /data/media/####/e3c60426da58c7c5192285c918bccc8e
- /data/media/####/g
- /data/media/####/global-metadata.dat
- /data/media/####/machine.config
- /data/media/####/mscorlib.dll-resources.dat
- /data/media/####/s
- /data/media/####/settings.map
- /data/media/####/tmp_mobileController.html
- /data/media/####/values
- /data/media/####/web.config
- /data/misc/####/primary.prof
- cat /sys/class/net/wlan0/address
- libFirebaseCppApp-7_1_0
- libjiagu
- libmain
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding