Technical information
- Adware.Appsad.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) rts.mo####.sdk.####.com:80
- TCP(HTTP/1.1) api.mob####.b####.com:80
- TCP(HTTP/1.1) androi####.b####.com:80
- TCP(HTTP/1.1) duapps-####.gsh####.com:80
- TCP(HTTP/1.1) api.mo####.sdk.####.com:80
- TCP(HTTP/1.1) mo####.mng####.com:80
- TCP(HTTP/1.1) p####.tk.du####.com:80
- TCP(HTTP/1.1) ca####.work:80
- TCP(HTTP/1.1) u####.b####.com:80
- TCP(HTTP/1.1) s####.mob####.b####.com:80
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) s####.appsf####.com:443
- TCP(TLS/1.0) 1####.217.19.206:443
- TCP(TLS/1.0) t.appsf####.com:443
- TCP(TLS/1.0) 1####.162.216.178:443
- TCP(TLS/1.0) clk.tap####.com:443
- TCP(TLS/1.0) and####.cli####.go####.com:443
- and####.cli####.go####.com
- androi####.b####.com
- api.mo####.sdk.####.com
- api.mob####.b####.com
- ca####.work
- clk.tap####.com
- cq01-du####.epc.b####.com
- g####.face####.com
- g####.t####.net
- mo####.mng####.com
- nrc.t####.net
- p####.tk.du####.com
- rts.mo####.sdk.####.com
- s####.appsf####.com
- s####.mob####.b####.com
- t.appsf####.com
- u####.b####.com
- androi####.b####.com/index.php/OfferList/getOfferListNew?start=####&limi...
- api.mo####.sdk.####.com/adunion/slot/getDlAd?h=####&w=####&model=####&ve...
- api.mo####.sdk.####.com/adunion/slot/getSrcPrio?h=####&w=####&model=####...
- api.mo####.sdk.####.com/get?model=####&signmd5=####&op=####&vendor=####&...
- api.mob####.b####.com/strategy/api/v1/rule/get?p=####&hp=####&l=####&c=#...
- ca####.work/flag/log?pkg=####&appv=####
- duapps-####.gsh####.com/prod/upload/adunion/images/551/796_416_90abd593a...
- duapps-####.gsh####.com/prod/upload/adunion/images/fb6/300_300_15c556ed5...
- mo####.mng####.com/appsfireclicks/?adid=####&s=####&arg1=41####&arg2=###...
- mo####.mng####.com/appsfireclicks/?adid=####&s=####&arg1=b3####&arg2=###...
- u####.b####.com/setting/grobal_strategy?p=####&hp=####&l=####&c=####&pro...
- p####.tk.du####.com/api/data?token=####&tk=32nT####&sv=####
- p####.tk.du####.com/api/tokens?tk=32nT####&sv=####
- rts.mo####.sdk.####.com/orts/rp?h=####&w=####&model=####&vendor=####&sdk...
- rts.mo####.sdk.####.com/orts/rpb?h=####&w=####&model=####&vendor=####&sd...
- s####.mob####.b####.com/cgi-bin-py/ad_sdk.cgi?ty=####&enc=####&bt=####
- /data/data/####/AdsBusiness-data.xml
- /data/data/####/ChargingConfig.xml
- /data/data/####/FBAdPrefs.xml
- /data/data/####/SDKIDFA.xml
- /data/data/####/SettingsConfig.xml
- /data/data/####/_toolbox_prefs.xml
- /data/data/####/appsflyer-data.xml
- /data/data/####/aps.xml
- /data/data/####/apsad.xml
- /data/data/####/apscomm.xml
- /data/data/####/batterysaver.cleaner.speedbooster.taskkiller.ph...al.xml
- /data/data/####/batterysaver.cleaner.speedbooster.taskkiller.ph...ck.xml
- /data/data/####/batterysaver.cleaner.speedbooster.taskkiller.ph...sp.xml
- /data/data/####/charging_configs_sp.xml
- /data/data/####/classes.zip
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/d-journal
- /data/data/####/d.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/global_config.xml
- /data/data/####/google.db
- /data/data/####/h.xml
- /data/data/####/i-journal
- /data/data/####/i.xml
- /data/data/####/index
- /data/data/####/lazy_global_config.xml
- /data/data/####/ls_sp_date.xml
- /data/data/####/mode_settings.xml
- /data/data/####/notify_items.sp-journal
- /data/data/####/result_card_info.xml
- /data/data/####/rt.xml
- /data/data/####/sk
- /data/data/####/sk-journal
- /data/data/####/toolbox.db-journal
- /data/data/####/toolbox_cache.db-journal
- /data/data/####/toolbox_ts.db-journal
- /data/data/####/utils.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/z
- /data/data/####/z-journal
- /data/media/####/-1669942004.tmp
- /data/media/####/.cuid
- /data/media/####/.userReturn
- /data/media/####/269507097.tmp
- /data/media/####/chargeData.txt
- /data/media/####/f98949833d688998bde68f12447f8453.0
- /data/media/####/files.db
- /data/media/####/gads.db
- /data/media/####/journal (deleted)
- /data/media/####/journal.tmp
- /data/media/####/syncfiles.db
- /system/bin/cat /proc/meminfo
- /system/bin/cat /sys/block/mmcblk0/device/cid
- /system/bin/cat /sys/block/mmcblk1/device/cid
- /system/bin/cat /sys/block/mmcblk2/device/cid
- /system/bin/cat /sys/block/mmcblk3/device/cid
- acceleratecoreproxy
- AES
- AES-CBC-PKCS5Padding
- AES-ECB-NoPadding
- RSA
- AES-CBC-PKCS5Padding
- AES-CFB-NoPadding
- RSA-ECB-PKCS1Padding