Technical information
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) hm.bd.5####.net:80
- TCP(HTTP/1.1) mo####.b####.com:80
- TCP(TLS/1.0) mobads-####.b####.com:443
- hm.bd.5####.net
- mo####.b####.com
- mobads-####.b####.com
- mo####.b####.com/ads/ads.appcache
- mo####.b####.com/ads/css/min/main.css
- mo####.b####.com/ads/index.htm
- mo####.b####.com/ads/js/ads.trunk.js
- mo####.b####.com/ads/js/c.js
- mo####.b####.com/ads/pa/__pasys.apk
- mo####.b####.com/ads/pa/__pasys.php
- mo####.b####.com/ads/pa/__pasys_remote_banner.jar
- mo####.b####.com/ads/pa/__pasys_remote_banner.php?v=####&tp=####&os=####...
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1533793181178=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1533793189848=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1533793237003=####
- hm.bd.5####.net//t9c
- hm.bd.5####.net//w9c
- hm.bd.5####.net/4elbat/a32d/p9c
- hm.bd.5####.net/4elbat/a32d/q9c
- hm.bd.5####.net/4elbat/a32d/s9c
- hm.bd.5####.net/4elbat/a32d/t9c
- hm.bd.5####.net/4elbat/a32d/w9c
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/CachedGeoposition.db
- /data/data/####/CachedGeoposition.db-journal
- /data/data/####/__pasys.apk.beforesign.tm
- /data/data/####/__pasys_remote_banner.jar.tm
- /data/data/####/__pasys_remote_banner.tmp.jar
- /data/data/####/_mgtable_r.xml
- /data/data/####/_mjtablekb.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/fh.skbn.qtk.av.jar
- /data/data/####/http_mobads.baidu.com_0.localstorage-journal
- /data/data/####/index
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- DES
- DES
- RSA-ECB-PKCS1Padding