Technical information
- Adware.Dowgin.14.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) f2.doodlem####.com:80
- TCP(HTTP/1.1) ip.ta####.com:80
- TCP(HTTP/1.1) googl####.g.doublec####.net:80
- TCP(HTTP/1.1) ki.ai.k####.cn:80
- TCP(HTTP/1.1) d239g0z####.cloudf####.net:80
- TCP(HTTP/1.1) newfeat####.perfect####.com:80
- TCP(TLS/1.0) h.online-####.net:443
- TCP(TLS/1.0) con####.ta####.com:443
- TCP(TLS/1.0) d####.fl####.com:443
- TCP(TLS/1.0) ws.tapjo####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- con####.ta####.com
- con####.ta####.com
- d####.fl####.com
- d239g0z####.cloudf####.net
- f2.doodlem####.com
- googl####.g.doublec####.net
- h.online-####.net
- ip.ta####.com
- ki.ai.k####.cn
- newfeat####.perfect####.com
- rrx68gi####.d.aa.####.net
- ssl.google-####.com
- ws.tapjo####.com
- d239g0z####.cloudf####.net/featurescreen/grandcrime_l.jpg
- d239g0z####.cloudf####.net/icons/icon_grandcrime.png
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40-load...
- googl####.g.doublec####.net/mads/static/sdk/native/sdk-core-v40.js
- ip.ta####.com/service/getIpInfo.php?ip=####
- f2.doodlem####.com/feature_server/fullScreen/get.php
- f2.doodlem####.com/feature_server/geo-ip/test.php
- ki.ai.k####.cn/4a1a/g85
- ki.ai.k####.cn/4a1a/ha1
- ki.ai.k####.cn/4a1a/l54
- ki.ai.k####.cn/4a1a/xae
- newfeat####.perfect####.com/featureview/getfeatureview/
- /data/data/####/.FlurrySenderIndex.info.AnalyticsData_CMCFNX579...XG_172
- /data/data/####/.FlurrySenderIndex.info.AnalyticsMain
- /data/data/####/.dmgames_prefs.xml
- /data/data/####/.flurryagent.48a174c2
- /data/data/####/.flurrydatasenderblock.94e9ff56-c7f0-49e6-ba58-...69b051
- /data/data/####/1550425554376.log
- /data/data/####/3c2db.xml
- /data/data/####/5548861z.jar
- /data/data/####/ThreatMetrixMobileSDK.xml
- /data/data/####/ads1014618342.jar
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/http_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/index
- /data/data/####/tjcPrefrences.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/worm.xml
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...5wbmc=
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...pwZw==
- gdx
- trustdefender-jni
- DES
- AES-CBC-PKCS5Padding
- DES