Technical information
- Android.BankBot.Coper.1.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) www.ip####.com:80
- TCP(TLS/1.0) p####.l.go####.com:443
- TCP(TLS/1.0) 1####.194.222.95:443
- TCP(TLS/1.0) 1####.251.1.95:443
- TCP(TLS/1.0) p####.go####.com:443
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) www.googlet####.com:443
- TCP(TLS/1.0) rr6---s####.g####.com:443
- TCP(TLS/1.0) lh3.googleu####.com:443
- TCP(TLS/1.0) f####.google####.com:443
- TCP(TLS/1.0) fox-loo####.com:443
- TCP(TLS/1.0) www.google-####.com:443
- TCP(TLS/1.0) 64.2####.162.94:443
- TCP(TLS/1.0) sup####.go####.com:443
- TCP(TLS/1.0) sto####.google####.com:443
- TCP(TLS/1.2) 74.1####.205.95:443
- TCP(TLS/1.2) 1####.194.222.102:443
- TCP(TLS/1.2) 64.2####.162.94:443
- a####.go####.com
- bleu-t####.com
- bleu-t####.com.8.####.8
- blue-de####.com
- blue-de####.com.8.####.8
- dog-sle####.com
- dog-sle####.com.8.####.8
- double-####.com
- double-####.com.8.####.8
- f####.google####.com
- f####.gst####.com
- fox-loo####.com
- funky-####.com
- funky-####.com.8.####.8
- lh3.googleu####.com
- mind-ra####.com
- mind-ra####.com.8.####.8
- p####.go####.com
- rr6---s####.g####.com
- sto####.google####.com
- sup####.go####.com
- www.google-####.com
- www.googlet####.com
- www.gst####.com
- www.ip####.com
- www.ip####.com/json
- fox-loo####.com:443/NmFkZTc4YWM3ZTk2/
- /data/data/####/main.xml
- /data/data/####/main.xml.bak
- /data/data/####/pgyvzxblu
- /data/data/####/pgyvzxblu.dex
- /data/data/####/pgyvzxblu.dex.flock (deleted)
- /data/data/####/proc_auxv
- /data/data/####/tgmDsPM.dex
- /data/data/####/tgmDsPM.dex.flock (deleted)
- /data/data/####/tgmDsPM.json
- /data/misc/####/primary.prof
- libJcpXjyW
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS5Padding