Technical information
- Adware.Dangbei.1.origin
- UDP(DNS) 2####.6.6.6:53
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) connect####.gst####.com:80
- TCP(HTTP/1.1) e####.ty####.com:80
- TCP(HTTP/1.1) new.zhaoyin####.com:8088
- TCP(HTTP/1.1) esw.ty####.com:80
- TCP(HTTP/1.1) es####.dan####.net:80
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) rr18---####.g####.com:443
- TCP(TLS/1.2) connect####.gst####.com:443
- TCP(TLS/1.2) www.go####.com:443
- TCP(TLS/1.2) 74.1####.205.101:443
- TCP(TLS/1.2) 1####.250.150.113:443
- TCP(TLS/1.2) p####.google####.com:443
- UDP p####.google####.com:443
- UDP 89.1####.188.11:8957
- UDP rr2---s####.g####.com:443
- UDP 2####.255.255.250:1900
- and####.google####.com
- connect####.gst####.com
- e####.ty####.com
- es####.dan####.net
- esw.ty####.com
- m####.go####.com
- md####.google####.com
- new.zhaoyin####.com
- p####.google####.com
- ro####.bitc####.com
- ro####.bitc####.net
- ro####.bittor####.com
- ro####.utor####.com
- rr18---####.g####.com
- rr2---s####.g####.com
- rr9---s####.g####.com
- v####.d####.cn
- www.go####.com
- www.google####.com
- esw.ty####.com/dbGold/v1/sdkSwitch.do?appkey=####&channel=####&device_na...
- new.zhaoyin####.com:8088/IFS/DataGet/SysCon.php?type=####
- new.zhaoyin####.com:8088/IFS/DataGet/sysconmy2.php?type=####&openid=####
- new.zhaoyin####.com:8088/IFS/Pub/ReportIpInfo.php?ip=####&p=####
- new.zhaoyin####.com:8088/IFS/UserLogin/CallBack/LoginCheck.php?sign=####...
- new.zhaoyin####.com:8088/IFS/UserLogin/CssJs/css/global-san.css
- new.zhaoyin####.com:8088/IFS/UserLogin/CssJs/js/jquery-1.10.2.min.js
- new.zhaoyin####.com:8088/IFS/UserLogin/CusSetup.php?type=####
- new.zhaoyin####.com:8088/IFS/UserLogin/CusState.php?uid=####&sid=####
- new.zhaoyin####.com:8088/IFS/UserLogin/Loginhtml.php?type=####
- new.zhaoyin####.com:8088/IFS/UserLogin/MakeMa.php?uid=####
- new.zhaoyin####.com:8088/favicon.ico
- new.zhaoyin####.com:8088/img/back-01.jpg
- new.zhaoyin####.com:8088/img/back-03.png
- e####.ty####.com/dbGold/v1/deviceRegister.do
- es####.dan####.net/dbzs/m1/appInfo.do
- es####.dan####.net/dbzs/m1/terminalInfo.do
- /data/data/####/.fsgkea
- /data/data/####/.jg.ac
- /data/data/####/.jg.ri
- /data/data/####/.jg.store.report_cf
- /data/data/####/.jg.store.report_pid
- /data/data/####/02ae438feb0e7e3c_0 (deleted)
- /data/data/####/044278d1646c6da8_0 (deleted)
- /data/data/####/0913335675c77fcb_0 (deleted)
- /data/data/####/098c8f6b48ee6e20_0 (deleted)
- /data/data/####/0a4c7dcdfe4938a3_0 (deleted)
- /data/data/####/0a7c67dc4b92d2df_0 (deleted)
- /data/data/####/0f3d4809666fe6fc_0 (deleted)
- /data/data/####/13e16edcfd0fcb71_0
- /data/data/####/14c9a5e02781a407_0
- /data/data/####/1e84f45e0c102b9c_0 (deleted)
- /data/data/####/1fcf978b2fa8e11e_0 (deleted)
- /data/data/####/22e61668ddcb7357_0 (deleted)
- /data/data/####/238f3bdb6eb56db2_0 (deleted)
- /data/data/####/24d5fc576882e1dc_0 (deleted)
- /data/data/####/2b7c3a4516edafb8_0 (deleted)
- /data/data/####/303355f6d2f29e16_0 (deleted)
- /data/data/####/30e130052ce07b5a_0 (deleted)
- /data/data/####/3212ca4ba5d025c5_0 (deleted)
- /data/data/####/3d34c6ccc64b1d61_0 (deleted)
- /data/data/####/3d800f14772574ee_0
- /data/data/####/45611cd7fd09e93a_0 (deleted)
- /data/data/####/45a77aa1642214ef_0 (deleted)
- /data/data/####/46b12976d77cdfaa_0 (deleted)
- /data/data/####/5a4527471bc8e6ce_0 (deleted)
- /data/data/####/617eb0f8ad8b537a_0 (deleted)
- /data/data/####/6ab1ae0f275835bb_0 (deleted)
- /data/data/####/6ccb47c4e3c5890e_0 (deleted)
- /data/data/####/6dc7f3ca241cf3f4_0 (deleted)
- /data/data/####/6dc83ed7e43d9f53_0 (deleted)
- /data/data/####/75bac2eac5463520_0 (deleted)
- /data/data/####/75d60b9aa2d15bc3_0 (deleted)
- /data/data/####/767af734a32ac450_0 (deleted)
- /data/data/####/76aa4b1ada7d32f1_0 (deleted)
- /data/data/####/78542148260632be_0 (deleted)
- /data/data/####/7d78d752c1a6ee4f_0 (deleted)
- /data/data/####/8088947df0b9d760_0 (deleted)
- /data/data/####/80f719d23c9f139e_0 (deleted)
- /data/data/####/8287d792c09e4945_0 (deleted)
- /data/data/####/88747eafde1d3cbf_0 (deleted)
- /data/data/####/894e514d181257ca_0 (deleted)
- /data/data/####/90b1f2f893728a8a_0 (deleted)
- /data/data/####/92057648383d1737_0
- /data/data/####/92057648383d1737_0 (deleted)
- /data/data/####/92057648383d1737_1
- /data/data/####/939b0f722c84fb53_0 (deleted)
- /data/data/####/9a1e6b19279a2f92_0 (deleted)
- /data/data/####/9d2006036cef3fc6_0
- /data/data/####/9d2006036cef3fc6_0 (deleted)
- /data/data/####/9e997d6167e1af27_0 (deleted)
- /data/data/####/9efbffede6067004_0 (deleted)
- /data/data/####/CHLfVtqJjCYW (deleted)
- /data/data/####/Cookies-journal
- /data/data/####/GwaFgSdqWUMz (deleted)
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/a06e00192d36cb59_0 (deleted)
- /data/data/####/a4aab1a913bb9494_0 (deleted)
- /data/data/####/a7c71308208defea_0 (deleted)
- /data/data/####/aa34c77846855904_0 (deleted)
- /data/data/####/ad257e7c167dc87a_0 (deleted)
- /data/data/####/aea492fd997eb380_0 (deleted)
- /data/data/####/b5cef8fa98d9defc_0
- /data/data/####/b5cef8fa98d9defc_0 (deleted)
- /data/data/####/c0bb68458f18cea2_0 (deleted)
- /data/data/####/c403f63700591ed2_0
- /data/data/####/c7d3be1ef40272c3_0 (deleted)
- /data/data/####/cc26223574a7eb0d_0 (deleted)
- /data/data/####/ced3b9c11baa8e19_0 (deleted)
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.oat
- /data/data/####/d206a862f01450ba_0 (deleted)
- /data/data/####/d38b1e08424a1b73_0 (deleted)
- /data/data/####/d8a3f992f57867c7_0 (deleted)
- /data/data/####/dbfile.xml
- /data/data/####/dbfile.xml.bak
- /data/data/####/e099397043aca3df_0 (deleted)
- /data/data/####/e955515963c9e8ec_0 (deleted)
- /data/data/####/f5e0aa4b36a1bb1b_0 (deleted)
- /data/data/####/f881fe531c00f6fe_0 (deleted)
- /data/data/####/fbbd77099355d4b8_0 (deleted)
- /data/data/####/index
- /data/data/####/libjiagu.so
- /data/data/####/metrics_guid
- /data/data/####/proc_auxv
- /data/data/####/sgconfig.properties
- /data/data/####/sgproxy.db
- /data/data/####/sgproxy.db-journal
- /data/data/####/the-real-index
- /data/data/####/yingyingshi.db
- /data/data/####/yingyingshi.db-journal
- /data/data/####/zhaoyingpian.d8b.com.zhaoyingpian_preferences.xml
- /data/media/####/afinalCache.0
- /data/media/####/afinalCache.1
- /data/media/####/afinalCache.idx
- /data/misc/####/primary.prof
- cat /proc/meminfo
- chmod 777 /storage/emulated/0/Android/data/<Package>/cache/afinalCache
- libDLBT
- libDLBT_API
- libeuthenia-lib
- libjiagu
- libp2ptrans
- libtpnsSecurity
- AES
- AES-CBC-PKCS5Padding