Technical information
- Adware.Was.1.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) g####.62####.com:8001
- TCP(HTTP/1.1) spn.g####.co:80
- TCP(HTTP/1.1) f.ma####.c.####.com:80
- TCP(HTTP/1.1) api.ad.xi####.com:80
- TCP(HTTP/1.1) xi####.edges####.net:80
- TCP(HTTP/1.1) a.da####.com:9127
- TCP(TLS/1.0) ads.m####.com:443
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) www.google####.com:443
- TCP(TLS/1.0) api.ad.xi####.com:443
- TCP(TLS/1.0) sdkco####.ad.xi####.com:443
- TCP(TLS/1.0) t####.sayg####.io:443
- TCP(TLS/1.0) app.sayg####.io:443
- TCP(TLS/1.0) kk####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) t####.te####.com:443
- TCP(TLS/1.0) co####.uca.c####.####.com:443
- TCP(TLS/1.0) www.face####.com:443
- TCP(TLS/1.0) prd-le####.cdp.inte####.####.com:443
- TCP(TLS/1.0) ipv6-wi####.appl####.com.####.net:443
- TCP(TLS/1.0) api.gameana####.com:443
- TCP(TLS/1.2) 1####.250.179.195:443
- TCP(TLS/1.2) 1####.250.179.142:443
- UDP 74.1####.100.169:443
- a.da####.com
- ads.m####.com
- api.ad.xi####.com
- api.gameana####.com
- app.sayg####.io
- cdp.c####.uni####.com
- co####.uca.c####.####.com
- d.appl####.com
- f####.ma####.xi####.com
- f4.ma####.xi####.com
- f5.ma####.xi####.com
- g####.62####.com
- g####.face####.com
- kk####.oss-cn-####.aliy####.com
- ms.appl####.com
- rt.appl####.com
- ru####.gameana####.com
- ru####.gameana####.com.####.8
- sdkco####.ad.xi####.com
- sett####.crashly####.com
- sett####.crashly####.com.####.8
- spn.g####.co
- t####.sayg####.io
- t####.te####.com
- www.face####.com
- www.google####.com
- z####.ad.xi####.com
- a.da####.com:9127/ll/gs?baseversion=####&version=####&channel=####&appid...
- api.face####.com:443/v3.3/720641838389482?fields=####&format=####&sdk=####
- f.ma####.c.####.com/download/AdCenter/08e519bd161954203bded9585afb65e89d...
- spn.g####.co/creatives/cross/agentaction/PO4L7TaNag6o.mp4
- spn.g####.co/creatives/cross/combomatcher/4os0UMmlw5Va.mp4
- spn.g####.co/creatives/cross/crowdd/ghCFSFhg8wMj.mp4
- spn.g####.co/creatives/cross/dopdisplaceonepart/khTNbzumHqXF.mp4
- spn.g####.co/creatives/cross/forknsausage/3QZsLm50eT9q.mp4
- spn.g####.co/creatives/cross/militaryoverturn/peWaycOCY3OX.mp4
- spn.g####.co/creatives/cross/musclerush/z94dswDlWtW4.mp4
- spn.g####.co/creatives/cross/popcornburst/37MT9MwAIx0i.mp4
- spn.g####.co/creatives/cross/waterballs/WpbXRF0Yv6kk.mp4
- xi####.edges####.net/download/AppStore/0b03c468e99cd7327ccf099da4abb5ed0...
- a.da####.com:9127/ll//uu?t=####
- api.ad.xi####.com/union/fetchAds
- g####.62####.com:8001/adStatistics
- g####.62####.com:8001/addNewApp
- g####.62####.com:8001/gameState
- /data/data/####/-974819881-1967309833
- /data/data/####/.hptc.cache_e.hoopstars.gtx
- /data/data/####/.hptc_kache_e.hoopstars.gtx
- /data/data/####/.jg.ic
- /data/data/####/.jgck
- /data/data/####/1
- /data/data/####/2
- /data/data/####/20
- /data/data/####/3
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCBeginSession.cls_temp
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCBeginSession.json
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionApp.cls
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionApp.json
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionDevice.cls
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionDevice.json
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionOS.cls
- /data/data/####/61A22BCB0062-0001-0E0D-11D073BBF0FCSessionOS.json
- /data/data/####/AppEventsLogger.persistedevents
- /data/data/####/FBAdPrefs.xml
- /data/data/####/SDKIDFA.xml
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/_m_rec.xml
- /data/data/####/admob_user_agent.xml
- /data/data/####/analytics.apk.tmp
- /data/data/####/analytics_api.xml
- /data/data/####/analytics_updater.xml
- /data/data/####/audience_network.dex
- /data/data/####/audience_network.dex.flock (deleted)
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cheuu
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.oat
- /data/data/####/com.applovin.sdk.1.xml
- /data/data/####/com.applovin.sdk.impl.postbackQueue.domain.xml
- /data/data/####/com.applovin.sdk.preferences.fItoM-flplDx4lFkAV...mX.xml
- /data/data/####/com.applovin.sdk.shared.xml
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.facebook.internal.preferences.APP_GATEKEEPERS.xml
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.facebook.sdk.USER_SETTINGS.xml
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/com.facebook.sdk.attributionTracking.xml
- /data/data/####/com.google.InstanceId.properties
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.highcore.hoopstars.gtx.v2.playerprefs.xml
- /data/data/####/com.highcore.hoopstars.gtx_preferences.xml
- /data/data/####/com.mopub.privacy.xml
- /data/data/####/com.mopub.settings.identifier.xml
- /data/data/####/google_app_measurement_local.db
- /data/data/####/google_app_measurement_local.db-journal
- /data/data/####/initialization_marker
- /data/data/####/kva
- /data/data/####/libjiagu.so
- /data/data/####/metrics_guid
- /data/data/####/mimo_asset.apk
- /data/data/####/mimo_asset.dex
- /data/data/####/mimo_asset.dex.flock (deleted)
- /data/data/####/mimo_download.apk.tmp
- /data/data/####/mopubSettings.xml
- /data/data/####/plugin_updater.xml
- /data/data/####/proc_auxv
- /data/data/####/sa_6df12728-fee9-4c8c-aaa3-75f236e3e1f4_1638017998091.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/tenjinInstallPreferences.xml
- /data/data/####/tmd
- /data/data/####/tv
- /data/data/####/umeng_general_config.xml
- /data/data/####/uuloi
- /data/data/####/vva
- /data/data/####/vva.dex
- /data/data/####/vva.dex.flock (deleted)
- /data/data/####/vva.jar
- /data/data/####/yg_cache_prefs.xml
- /data/data/####/yg_cache_prefs.xml.bak
- /data/data/####/zeus_crash_info.xml
- /data/data/####/zeus_pms.xml
- /data/media/####/.nomedia
- /data/media/####/Compat.browser
- /data/media/####/DefaultWsdlHelpGenerator.aspx
- /data/media/####/browscap.ini
- /data/media/####/c
- /data/media/####/config
- /data/media/####/config.xml
- /data/media/####/d
- /data/media/####/d656fbfd9bf6daa76a7a19da0d71b20e_tmp (deleted)
- /data/media/####/e
- /data/media/####/g
- /data/media/####/ga.sqlite3-journal
- /data/media/####/global-metadata.dat
- /data/media/####/last-btime
- /data/media/####/machine.config
- /data/media/####/mscorlib.dll-resources.dat
- /data/media/####/s
- /data/media/####/saykit.json
- /data/media/####/saykit_hpstrsa_1.4.3
- /data/media/####/saykit_impression_log.txt
- /data/media/####/saypromo_0539D34650DFEE2A0F423D983AAF523C.mp4
- /data/media/####/saypromo_2727241B3018DF81E68A505DD1DEDC19.mp4
- /data/media/####/saypromo_48E33FCC5932BF76E13E3F0C3F78F442.mp4
- /data/media/####/saypromo_7AC3FDA72568B5F2B551DF8462D4918E.mp4
- /data/media/####/saypromo_99BE1586C2972F5555A183D0D63EDADE.mp4
- /data/media/####/saypromo_A04B33AD569816088F996CB3029CBAAD.mp4
- /data/media/####/saypromo_B6D439C9BD08A35C9F15BCCB06606313.mp4
- /data/media/####/saypromo_BE383FB84A01771F9286AAC09DB152C4.mp4
- /data/media/####/saypromo_EF93BE332516A6FE0EA6B43B91BF7C2A.mp4
- /data/media/####/settings.map
- /data/media/####/values
- /data/media/####/web.config
- /data/misc/####/primary.prof
- cat /sys/class/net/wlan0/address
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding