Technical information
- Adware.Dowgin.14.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) googl####.g.doublec####.net:80
- TCP(HTTP/1.1) ip.ta####.com:80
- TCP(HTTP/1.1) nd.td.ntnew####.####.net:80
- TCP(HTTP/1.1) si.hi.shpan####.cn:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) 2####.58.212.206:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- a####.u####.com
- adser####.go####.com
- googl####.g.doublec####.net
- ip.ta####.com
- nd.td.ntnew####.cn
- si.hi.shpan####.cn
- ssl.gst####.com
- www.go####.com
- www.go####.nl
- www.gst####.com
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40-load...
- googl####.g.doublec####.net/mads/static/sdk/native/sdk-core-v40.js
- ip.ta####.com/service/getIpInfo.php?ip=####
- nd.td.ntnew####.####.net/offer/20171206/201712061752304.png
- nd.td.ntnew####.####.net/offer/20181204/201812041054103.png
- nd.td.ntnew####.####.net/offer/20181204/201812041054759.png
- nd.td.ntnew####.####.net/offer/20190304/201903041818738.png
- nd.td.ntnew####.####.net/offer/20190403/201904031407486.png
- a####.u####.com/app_logs
- si.hi.shpan####.cn/4de6/g57
- si.hi.shpan####.cn/4de6/hde
- si.hi.shpan####.cn/4de6/k4d
- si.hi.shpan####.cn/4de6/l74
- si.hi.shpan####.cn/4de6/x60
- si.hi.shpan####.cn/4de6/z60
- /data/data/####/.imprint
- /data/data/####/0017649z.jar
- /data/data/####/0023741z.jar
- /data/data/####/0033243z.jar
- /data/data/####/0041043z.jar
- /data/data/####/233c914.xml
- /data/data/####/65f0a.xml
- /data/data/####/9999011z.jar
- /data/data/####/ads-117689207.jar
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/first_time.xml
- /data/data/####/index
- /data/data/####/mobclick_agent_cached_snies.enis.ykpl2017030114
- /data/data/####/mobclick_agent_online_setting_snies.enis.ykpl.xml
- /data/data/####/preference_advertisement.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/4911569b6
- /data/media/####/4ba3b1353
- /data/media/####/78416b25d
- /data/media/####/aa8d616b6
- /data/media/####/d9befb09a
- /data/media/####/img_1555660012089.jpg
- /data/media/####/img_1555660018511.jpg
- /data/media/####/img_1555660028296.jpg
- /data/media/####/img_1555660035302.jpg
- /data/media/####/mfz.d
- DES
- AES-CBC-PKCS5Padding
- DES