Technical information
- Adware.Dowgin.3.origin
- Android.DownLoader.192.origin
- UDP(DNS) 8####.8.4.4:53
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) bj.bc####.com:80
- TCP(HTTP/1.1) connect####.gst####.com:80
- TCP(HTTP/1.1) an.ca.15####.cn:80
- TCP(HTTP/1.1) www.365####.com:80
- TCP(HTTP/1.1) downloa####.b0.upa####.com:80
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) 74.1####.205.138:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) rr2---s####.g####.com:443
- TCP(TLS/1.0) rr18---####.g####.com:443
- TCP(TLS/1.0) www.google####.com:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.2) www.go####.com:443
- UDP www.google####.com:443
- a####.bj.bc####.com
- a.y####.club
- an.ca.15####.cn
- and####.a####.go####.com
- and####.google####.com
- b.y####.club
- connect####.gst####.com
- d2.365####.com
- feed####.u####.com
- gmscomp####.google####.com
- m####.go####.com
- oc.u####.co
- oc.u####.com
- p####.google####.com
- rr18---####.g####.com
- rr2---s####.g####.com
- rr9---s####.g####.com
- s1.h####.pub
- s2.h####.pub
- sub.365####.com
- w####.c####.365####.com
- www.365####.com
- www.go####.com
- www.google####.com
- bj.bc####.com/am1028.txt
- downloa####.b0.upa####.com//dl/android/solarterm/SolarTermException
- www.365####.com/coop/softbundle.do?pm=####&channel=####
- www.365####.com/dl/android/solarterm/SolarTermException
- www.365####.com/subscribe/listHoliday.do?startdate=####&enddate=####
- an.ca.15####.cn//2351ded8/zia
- an.ca.15####.cn//2351ded8a9/zba
- /data/data/####/Download-journal
- /data/data/####/Downloado
- /data/data/####/Downloado-journal
- /data/data/####/Huangli
- /data/data/####/Huangli-journal
- /data/data/####/Log-journal
- /data/data/####/Logo
- /data/data/####/Logo-journal
- /data/data/####/SolarTermException
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/_acowanniancanqsz.xml
- /data/data/####/_acowanniancanqsz.xml.bak (deleted)
- /data/data/####/_cocowanniancanqsr.xml
- /data/data/####/com.fire.pare.jkoz.a.dex
- /data/data/####/com.fire.pare.jkoz.a.dex.flock (deleted)
- /data/data/####/com.fire.pare.jkpz.a.dex
- /data/data/####/com.fire.pare.jkpz.a.dex.flock (deleted)
- /data/data/####/com.when.wanniancanqs_preferences.xml
- /data/data/####/config.xml
- /data/data/####/configo.xml
- /data/data/####/db_ver.xml
- /data/data/####/holiday_data_cache2023
- /data/data/####/huangli.zip
- /data/data/####/index
- /data/data/####/metrics_guid
- /data/data/####/mobclick_agent_cached_com.when.wanniancanqs
- /data/data/####/mobclick_agent_state_com.when.wanniancanqs.xml
- /data/data/####/nav.xml
- /data/data/####/notify_preference.xml
- /data/data/####/the-real-index
- /data/data/####/umeng_feedback_conversations.xml
- /data/data/####/wanniancanqsoc.dex
- /data/data/####/wanniancanqsoc.dex.flock (deleted)
- /data/data/####/wanniancanqsoc.jar
- /data/data/####/wanniancanqsq.dex
- /data/data/####/wanniancanqsq.dex.flock (deleted)
- /data/data/####/wanniancanqsq.jar
- /data/media/####/.android.dat
- /data/media/####/.android.dat-journal
- /data/media/####/com.fire.pare.jkoz.a.dex
- /data/media/####/com.fire.pare.jkpz.a.dex
- /data/media/####/id
- /data/media/####/logo.png
- /data/misc/####/primary.prof
- DES
- DES-CBC-PKCS5Padding
- AES-CFB-NoPadding