Technical information
- Adware.Panda.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) statson####.pu####.b####.com:80
- TCP(HTTP/1.1) api.tui####.b####.com:80
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- TCP(HTTP/1.1) fileser####.c####.net:8080
- TCP(HTTP/1.1) 24da845####.qcloud####.com:80
- TCP(HTTP/1.1) www.pan####.net:8080
- TCP(TLS/1.0) 24da845####.qcloud####.com:443
- TCP sa.tui####.b####.com:5287
- a####.u####.co
- a####.u####.com
- api.c####.cn
- api.tui####.b####.com
- fileser####.c####.net
- sa.tui####.b####.com
- statson####.pu####.b####.com
- www.pan####.net
- 24da845####.qcloud####.com/v1/app/cms/article/getRunList?accessToken=###...
- 24da845####.qcloud####.com/v1/app/csleep/question/getTotal?accessToken=#...
- fileser####.c####.net:8080/group1/M00/07/67/Cvtlp1dQ88qAcm69AADFaHdwrmU9...
- fileser####.c####.net:8080/group1/M00/07/6B/CvtlhldRHMCAfQuZAAGlpV0dfBk0...
- fileser####.c####.net:8080/group1/M00/07/A0/Cvtlp1ds7NWASGS8AAC4HFnlFog7...
- 24da845####.qcloud####.com/v1/app/cms/app/upgrade/get
- 24da845####.qcloud####.com/v1/push/bind
- a####.u####.com.####.com/app_logs
- api.tui####.b####.com/rest/2.0/channel/4190593484665404373
- api.tui####.b####.com/rest/2.0/channel/channel
- statson####.pu####.b####.com/pushlog_special
- www.pan####.net:8080/Mini/req.action?
- www.pan####.net:8080/banner/req.action?
- www.pan####.net:8080/lscr/reqmore?
- www.pan####.net:8080/nlock/request?
- /data/data/####/2cmtPYMGuwrbMNYPt6VV7slVrhs.-1565252589.tmp
- /data/data/####/6F7HXuZZCoYfCNP1V_-06zKJOY8.1145133168.tmp
- /data/data/####/EOrtS8l3AlceNzP_9ZHKoqWm24w.1407206028.tmp
- /data/data/####/TASK_SHARED.xml
- /data/data/####/WORLD_SHARED.xml
- /data/data/####/app.xml
- /data/data/####/bindcache.xml
- /data/data/####/clife2.db-journal
- /data/data/####/com.het.c_sleepjg-1.apk.classes1982276307.zip
- /data/data/####/com.het.c_sleepjg-1.apk.classes362850970.zip
- /data/data/####/com.het.c_sleepjg.push_sync.xml
- /data/data/####/com.het.c_sleepjg.self_push_sync.xml
- /data/data/####/com.het.c_sleepjg;GSID.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/multidex.version.xml
- /data/data/####/notification_builder_storage.xml
- /data/data/####/pst.xml
- /data/data/####/pushstat_4.6.2.db
- /data/data/####/pushstat_4.6.2.db-journal
- /data/data/####/um_cache_1599155255010.env
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/.cuid
- /data/media/####/.nomedia
- /data/media/####/2183ca502a1b2b3e115f64a0bf08f26a.zip
- /data/media/####/apps
- bdpush_V2_5
- bitmaps
- memchunk
- AES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- DES
- RSA-ECB-PKCS1Padding