Technical information
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) statson####.pu####.b####.com:80
- TCP(HTTP/1.1) 1####.202.114.42:80
- TCP(HTTP/1.1) cha####.api.d####.com:80
- TCP(HTTP/1.1) hm.bd.5####.net:80
- TCP(HTTP/1.1) www.1####.com:80
- TCP agentch####.api.d####.com:5287
- agentch####.api.d####.com
- cd.cd.c####.com
- cha####.api.d####.com
- hm.bd.5####.net
- statson####.pu####.b####.com
- www.1####.com
- cha####.api.d####.com/rest/2.0/channel/4534317128641638220
- cha####.api.d####.com/rest/2.0/channel/channel
- hm.bd.5####.net/3udwq/9cbe/e9c
- hm.bd.5####.net/3udwq/9cbe/p9c
- hm.bd.5####.net/3udwq/9cbe/q9c
- hm.bd.5####.net/3udwq/9cbe/r9c
- hm.bd.5####.net/3udwq/9cbe/s9c
- hm.bd.5####.net/3udwq/9cbe/t9c
- hm.bd.5####.net/3udwq/9cbe/w9c
- statson####.pu####.b####.com/pushlog
- www.1####.com/api/statuses/appse.php
- www.1####.com/api/statuses/list_timeline.php
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/_mgqwdu_r.xml
- /data/data/####/_mhqwduqs.xml
- /data/data/####/_mjtqwdup.xml
- /data/data/####/appconfig.xml
- /data/data/####/com.efwf.qwdu.push_sync.xml
- /data/data/####/com.efwf.qwdu.xml
- /data/data/####/com.efwf.qwdu_preferences.xml
- /data/data/####/notification_builder_storage.xml
- /data/data/####/plugin-deploy.jar
- /data/data/####/plugin-deploy.key
- /data/data/####/pst.xml
- /data/data/####/xcs.ceio.wm.av.jar
- /data/data/####/zscom.db-journal
- /data/media/####/.cuid
- /data/media/####/apps
- /data/media/####/frontia.db
- /data/media/####/frontia.db-journal
- /data/media/####/minecraft_1.db
- /data/media/####/minecraft_1.db-journal
- /data/media/####/pr.p
- /data/media/####/pushstat.db-journal
- bdpush_V1_0
- push-socket
- AES-CBC-PKCS5Padding
- DES
- RSA-ECB-PKCS1Padding
- DES
- RSA-ECB-PKCS1Padding