Technical information
- Android.BankBot.1784
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) ip####.com:80
- TCP(TLS/1.0) 1####.23.244.244:443
- TCP(TLS/1.0) 95.2####.38.164:9000
- TCP(TLS/1.0) 95.2####.136.23:443
- TCP(TLS/1.0) 74.1####.205.95:443
- TCP(TLS/1.0) 1####.172.149.155:443
- TCP(TLS/1.0) and####.google####.com:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) 1####.4.78.42:9000
- TCP(TLS/1.0) 1####.138.33.233:443
- TCP(TLS/1.0) and####.cli####.go####.com:443
- TCP(TLS/1.0) siopol####.ga:443
- TCP(TLS/1.2) and####.cli####.go####.com:443
- TCP(TLS/1.2) 64.2####.162.94:443
- TCP(TLS/1.2) 74.1####.205.95:443
- and####.cli####.go####.com
- and####.google####.com
- android####.go####.com
- ip####.com
- m####.go####.com
- siopol####.ga
- ip####.com/json
- siopol####.ga:443/api/v1/device/check?screen=####
- siopol####.ga:443/storage/zip/HGDiVHS6RZjvWZnmjOttToB4G9NR5osTJlcCFOeI.zip
- siopol####.ga:443/api/v1/device
- siopol####.ga:443/api/v1/device/server-log
- /data/data/####/RXlp.dex
- /data/data/####/RXlp.dex.flock (deleted)
- /data/data/####/RXlp.json
- /data/data/####/cached-certs
- /data/data/####/cached-microdesc-consensus
- /data/data/####/cached-microdescs.new
- /data/data/####/com.lonely.waste_preferences.xml
- /data/data/####/control_auth_cookie
- /data/data/####/control_auth_cookie.tmp
- /data/data/####/geoip
- /data/data/####/geoip6
- /data/data/####/lock
- /data/data/####/pid
- /data/data/####/pref_name_setting.xml
- /data/data/####/prefs30.xml
- /data/data/####/state
- /data/data/####/state.tmp
- /data/data/####/tor
- /data/data/####/torrc
- /data/data/####/unverified-microdesc-consensus
- /data/misc/####/primary.prof
- /system/lib/arm/houdini /data/user/0/<Package>/app_torfiles/tor /data/user/0/<Package>/app_torfiles/tor -f /data/user/0/<Package>/app_torfiles/torrc __OwningControllerProcess 3512