Technical information
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) t####.me####.com:80
- TCP(HTTP/1.1) r####.s####.k####.####.com:80
- TCP(HTTP/1.1) s####.m.me####.com:80
- TCP(HTTP/1.1) www.google-####.com:80
- TCP(HTTP/1.1) is.ca.15####.cn:80
- TCP(HTTP/1.1) h####.b####.com:80
- TCP(HTTP/1.1) pl####.k####.cn:80
- h####.b####.com
- is.ca.15####.cn
- mvp.me####.com
- o####.web.r####.####.cn
- pl####.k####.cn
- s####.m.me####.com
- t####.me####.com
- www.google-####.com
- r####.s####.k####.####.com/988880d084bfd7e2302b935361ce5d94/5c79c43b/res...
- s####.m.me####.com/s?adspaceid=####&os=####&imei=####&imei_md5=####&imsi...
- s####.m.me####.com/s?switch=1?os=####&imei=####&imsi=####&mac=####&model...
- s####.m.me####.com/update?sdkv=####&nsdkv=####&imei=####&model=####&chan...
- www.google-####.com/__utm.gif?utmwv=####&utmn=####&utme=####&utmcs=####&...
- h####.b####.com/app.gif
- is.ca.15####.cn/5a50f67/zia
- is.ca.15####.cn/5a50f67/zib
- pl####.k####.cn/webmusic/st/getMuiseByRid
- t####.me####.com/t?type=####
- /data/data/####/QHAD_ACTON_COUNT20190301.xml
- /data/data/####/QHAD_ADCOUNTER_UPLOADED_20190301.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/_acobbsqgushiz.xml
- /data/data/####/baoyinovels
- /data/data/####/baoyinovels-journal
- /data/data/####/baoyinovels1
- /data/data/####/baoyinovels1-journal
- /data/data/####/bbsqgushiq.jar
- /data/data/####/data.xml
- /data/data/####/google_analytics.db-journal
- /data/data/####/qh_crash.log
- /data/data/####/qh_swich.cfg
- /data/data/####/qhad_PkgInfoHandler_190302.xml
- /data/data/####/qhad_dynamic1113.jar
- /data/data/####/qhadsdkerrordaycheck.xml
- /data/data/####/ver_info.xml
- /data/media/####/.cuid
- /data/media/####/8138D8EFAFD71682.txt
- /data/media/####/qhad_sdk_error.log
- /data/media/####/qhad_updatesdk_error
- /data/media/####/tingshu.db-journal
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DES
- AES
- DES