Technical information
- Android.HiddenAds.180.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) pig.moyum####.com:80
- TCP(HTTP/1.1) v####.5####.com:80
- TCP(HTTP/1.1) cat.moyum####.com:80
- TCP(HTTP/1.1) sdk.91a####.com:80
- TCP(HTTP/1.1) g1.api.i####.com:80
- TCP(HTTP/1.1) 1####.42.243.153:83
- cat.moyum####.com
- g1.api.i####.com
- pig.moyum####.com
- sdk.91a####.com
- v####.5####.com
- w####.5####.com
- cat.moyum####.com/update/check?pkey=####&ts=####&data=yb####&secret=####...
- sdk.91a####.com/static/20180622142345mod.enc
- g1.api.i####.com/api.htm?pid=####
- pig.moyum####.com/balance/getats
- sdk.91a####.com/api/DeviceReport.ashx
- v####.5####.com/20/8c10c5184b36491eb6ed32bdbafb1eb4.html
- v####.5####.com/api/CheckModule.ashx
- v####.5####.com/api/GetLockAppOpenTask.ashx
- v####.5####.com/api/GetModuleConfig.ashx
- v####.5####.com/api/GetPkNameList.ashx
- v####.5####.com/api/GetSuspendAdInfo.ashx
- v####.5####.com/api/GetUnLockScreenAdTask.ashx
- v####.5####.com/api/ReporSuspendAd.ashx
- v####.5####.com/api/ReportAppInfo.ashx?r=####
- v####.5####.com/api/ReportAppLog.ashx
- v####.5####.com/api/ReportUnLockScreenAd.ashx
- /data/data/####/CPADSave.xml
- /data/data/####/EventDex.dex
- /data/data/####/MEvtSave.xml
- /data/data/####/aptm.ttm
- /data/data/####/base.js
- /data/data/####/common.js
- /data/data/####/count_control.xml
- /data/data/####/cpro.baidu.com.js
- /data/data/####/evtlog.dat
- /data/data/####/lsad_tm
- /data/data/####/m.baidu.com.js
- /data/data/####/m.chinebuy.com.js
- /data/data/####/mainevent_main_evt_dex_info.xml
- /data/data/####/max_pref.xml
- /data/data/####/max_pref.xml (deleted)
- /data/data/####/mod.dec
- /data/data/####/mod.dex
- /data/data/####/mod.enc
- /data/data/####/phan.xml
- /data/data/####/popp.tm
- /data/data/####/start.js
- /data/data/####/success
- /data/media/####/id.tmp
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding