Technical information
- Android.BankBot.Coper.12.origin
- UDP(DNS) <Google DNS>
- TCP(TLS/1.0) bea####.g####.com:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) 5pethso####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) 1####.217.26.234:443
- TCP(TLS/1.0) gmscomp####.google####.com:443
- TCP(TLS/1.0) 1####.250.183.163:443
- TCP(TLS/1.2) 64.2####.163.95:443
- TCP(TLS/1.2) 1####.177.14.99:443
- TCP(TLS/1.2) 1####.194.220.95:443
- UDP 1####.250.199.174:443
- UDP bea####.g####.com:443
- TCP 1####.217.26.234:443
- 22peths####.com
- 32peths####.com
- 52peths####.com
- 5pethso####.com
- 66peths####.com
- 6pethso####.com
- 76peths####.com
- android####.go####.com
- bea####.g####.com
- gmscomp####.google####.com
- p####.google####.com
- 5pethso####.com:443/MzQ1Yzk1ZGQ4ODY3/
- /data/data/####/kl.txt
- /data/data/####/main.xml
- /data/data/####/main.xml.bak
- /data/data/####/proc_auxv
- /data/data/####/zhppdbeubsovvqc
- /data/data/####/zhppdbeubsovvqc.dex
- /data/data/####/zhppdbeubsovvqc.dex.flock (deleted)
- libFMYQI
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS5Padding