Technical information
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) www.xueyazh####.com:80
- TCP(HTTP/1.1) i.a.15####.com:80
- TCP(HTTP/1.1) dm.bd.5####.####.net:80
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) f####.google####.com:443
- a####.u####.com
- dm.bd.5####.net
- f####.google####.com
- f####.gst####.com
- i.a.15####.com
- regi####.xm####.xi####.com
- www.go####.com
- www.gst####.com
- www.xueyazh####.com
- dm.bd.5####.####.net/apk/20180606/20180606953162.png
- dm.bd.5####.####.net/apk/20180702/201807021745608.apk
- www.xueyazh####.com/api/alert/android_push/?last_time=####&succ=####&app...
- www.xueyazh####.com/api/daily_request/?phone=####&app=####&platform=####...
- www.xueyazh####.com/api/launch_request/?app=####&platform=####&systemVer...
- www.xueyazh####.com/api/v4/health_program/push_messages/?app=####&platfo...
- a####.u####.com/app_logs
- i.a.15####.com//137a2742/zia
- i.a.15####.com//137a2742/zib
- i.a.15####.com//137a2742/zic
- i.a.15####.com//137a2742/zid
- i.a.15####.com//137a2742/zie
- /data/data/####/.imprint
- /data/data/####/BloodAssistant.BodyCheck.db-journal
- /data/data/####/BloodAssistant.CChong.db
- /data/data/####/BloodAssistant.CChong.db-journal
- /data/data/####/_acoandroidsz.xml
- /data/data/####/_bcoandroidsn.xml
- /data/data/####/_gcoandroidss.xml
- /data/data/####/afc.pro
- /data/data/####/androidsq.jar
- /data/data/####/com.tijianbao.androids_preferences.xml
- /data/data/####/comm.cchong.BloodAssistant.Service.NewsPullService.xml
- /data/data/####/deviceid.xml
- /data/data/####/g7_cookie_store.xml
- /data/data/####/g7_cookie_store.xml.bak
- /data/data/####/mipush.xml
- /data/data/####/mobclick_agent_online_setting_com.tijianbao.androids.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/uscom.db
- /data/data/####/uscom.db-journal
- /data/data/####/webview.db-journal
- /data/media/####/.nomedia
- /data/media/####/2018-10-28
- /data/media/####/DailyRequestManager
- /data/media/####/afc.pro
- /data/media/####/egnaro_etceles_egap_d
- /data/media/####/egnaro_gbntb_d
- /data/media/####/ehcac_ntb_mottob
- /data/media/####/elcric_cs_d
- /data/media/####/enil_efas
- /data/media/####/enil_efas_d
- /data/media/####/enil_jt_d
- /data/media/####/erahs_ntb_mottob
- /data/media/####/eulb_gbntb_d
- /data/media/####/gb_datuctrohs_d
- /data/media/####/gb_gmi
- /data/media/####/gb_gmi_d
- /data/media/####/gb_mottob
- /data/media/####/gb_pot
- /data/media/####/gb_pot_d
- /data/media/####/gb_sdrowda
- /data/media/####/gb_tluafed_d
- /data/media/####/journal.tmp
- /data/media/####/kcab_pop
- /data/media/####/kcab_pop_d
- /data/media/####/lecnac_ntb_mottob_d
- /data/media/####/llatsni_ntb
- /data/media/####/llatsni_ntb_d
- /data/media/####/llatsni_ntb_mottob
- /data/media/####/lomron_egap_d
- /data/media/####/n_kcehcp
- /data/media/####/na_csppa_d
- /data/media/####/neerg_gbntb_d
- /data/media/####/noci_efas
- /data/media/####/noci_efas_d
- /data/media/####/ntb_erom_pc_d
- /data/media/####/ntb_meti
- /data/media/####/ntb_mottob_pop
- /data/media/####/ntb_mottob_pop_d
- /data/media/####/ntb_rehto_pc_d
- /data/media/####/ntbesolc_pot_x
- /data/media/####/ntbesolc_potd_d
- /data/media/####/nwod_worra
- /data/media/####/nwod_worra_d
- /data/media/####/p_kcehcp
- /data/media/####/pot_ntbseolc_d
- /data/media/####/pu_worra
- /data/media/####/pu_worra_d
- /data/media/####/rats_m
- /data/media/####/tnetnocppa
- /data/media/####/wolley_gbntb_d
- cctool
- DES