Bibliothèque
Ma bibliothèque

+ Ajouter à la bibliothèque

Contacter-nous !
Support 24/24 | Rules regarding submitting

Nous téléphoner

0 825 300 230

Forum

Vos requêtes

  • Toutes : -
  • Non clôturées : -
  • Dernière : le -

Nous téléphoner

0 825 300 230

Profil

Android.BankBot.TgToxic.39

Added to the Dr.Web virus database: 2023-10-07

Virus description added:

Technical information

Malicious functions:
Executes code of the following detected threats:
  • Android.BankBot.TgToxic.1
Network activity:
Connects to:
  • UDP(DNS) <Google DNS>
  • TCP(TLS/1.0) and####.a####.go####.com:443
  • TCP(TLS/1.0) rr18---####.g####.com:443
  • TCP(TLS/1.0) sqs.ap-nort####.amazo####.com:443
  • TCP(TLS/1.0) 64.2####.164.94:443
  • TCP(TLS/1.0) 2####.85.233.95:443
  • TCP(TLS/1.0) and####.google####.com:443
  • TCP(TLS/1.2) 64.2####.164.94:443
  • TCP(TLS/1.2) 74.1####.131.139:443
  • TCP(TLS/1.2) 2####.85.233.95:443
  • UDP and####.google####.com:443
DNS requests:
  • and####.a####.go####.com
  • and####.google####.com
  • gmscomp####.google####.com
  • p####.google####.com
  • rr18---####.g####.com
  • rr9---s####.g####.com
  • sqs.ap-nort####.amazo####.com
HTTP POST requests:
  • sqs.ap-nort####.amazo####.com:443/664144478517/report_queue_svc
File system changes:
Creates the following files:
  • /data/data/####/.com_oaibnl_otdmpixu.meta
  • /data/data/####/02GZMCVK86Q9L6WC17QZSJVFSNO2HFH.dex
  • /data/data/####/02GZMCVK86Q9L6WC17QZSJVFSNO2HFH.dex.flock (deleted)
  • /data/data/####/02GZMCVK86Q9L6WC17QZSJVFSNO2HFH.zip
  • /data/data/####/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex
  • /data/data/####/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex.flock (deleted)
  • /data/data/####/0A0N6GV486MDHYOSLNUR43J7CN4U1VD.dex
  • /data/data/####/0A0N6GV486MDHYOSLNUR43J7CN4U1VD.dex.flock (deleted)
  • /data/data/####/0A0N6GV486MDHYOSLNUR43J7CN4U1VD.zip
  • /data/data/####/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex
  • /data/data/####/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex.flock (deleted)
  • /data/data/####/0E036W74WU6P1U8CLZYJ03BROZGAT7X.dex
  • /data/data/####/0E036W74WU6P1U8CLZYJ03BROZGAT7X.dex.flock (deleted)
  • /data/data/####/0E036W74WU6P1U8CLZYJ03BROZGAT7X.zip
  • /data/data/####/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex
  • /data/data/####/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex.flock (deleted)
  • /data/data/####/0L30GTP059BGJVWJK6YIU2JJBNBY9AX3.dex
  • /data/data/####/19
  • /data/data/####/2023-10-07AM032252.str
  • /data/data/####/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex
  • /data/data/####/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex.flock (deleted)
  • /data/data/####/29
  • /data/data/####/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex
  • /data/data/####/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex.flock (deleted)
  • /data/data/####/33c0c511495949c735afdb8726645e3dts99nb.zlac
  • /data/data/####/33c0c511495949c735afdb8726645e3dts99nb.zlac (deleted)
  • /data/data/####/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex
  • /data/data/####/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex.flock (deleted)
  • /data/data/####/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex
  • /data/data/####/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex.flock (deleted)
  • /data/data/####/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex
  • /data/data/####/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex.flock (deleted)
  • /data/data/####/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex
  • /data/data/####/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex.flock (deleted)
  • /data/data/####/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex
  • /data/data/####/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex.flock (deleted)
  • /data/data/####/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex
  • /data/data/####/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex.flock (deleted)
  • /data/data/####/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex
  • /data/data/####/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex.flock (deleted)
  • /data/data/####/ASY1OUPUMKG3BGU2J9O5U995E9I43HZ.dex
  • /data/data/####/ASY1OUPUMKG3BGU2J9O5U995E9I43HZ.dex.flock (deleted)
  • /data/data/####/ASY1OUPUMKG3BGU2J9O5U995E9I43HZ.zip
  • /data/data/####/EGIPNMAHMGROGFO9TCZ2S8866RTY18S8.dex
  • /data/data/####/EKA1JAALM0ZKO3CPD0ZIC88UU7TALGGG.dex
  • /data/data/####/FGKSQQ32OZXR9ZB9TWI0JXB1SX044LC.dex
  • /data/data/####/FGKSQQ32OZXR9ZB9TWI0JXB1SX044LC.dex.flock (deleted)
  • /data/data/####/FGKSQQ32OZXR9ZB9TWI0JXB1SX044LC.zip
  • /data/data/####/IECPkgStoreInfo
  • /data/data/####/IGJ6WJKKI6HLACCLV2RWJ3B0BC65JX4.dex
  • /data/data/####/IGJ6WJKKI6HLACCLV2RWJ3B0BC65JX4.dex.flock (deleted)
  • /data/data/####/IGJ6WJKKI6HLACCLV2RWJ3B0BC65JX4.zip
  • /data/data/####/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex
  • /data/data/####/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex.flock (deleted)
  • /data/data/####/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex
  • /data/data/####/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex.flock (deleted)
  • /data/data/####/LCQZ7G3LB4T18KUH7R08G2J14ZQCYJ2S.dex
  • /data/data/####/MCA5S6TUIGOJ74QQJLODYXH5IPYGJ9N.dex
  • /data/data/####/MCA5S6TUIGOJ74QQJLODYXH5IPYGJ9N.dex.flock (deleted)
  • /data/data/####/MCA5S6TUIGOJ74QQJLODYXH5IPYGJ9N.zip
  • /data/data/####/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex
  • /data/data/####/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex.flock (deleted)
  • /data/data/####/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex
  • /data/data/####/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex.flock (deleted)
  • /data/data/####/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex
  • /data/data/####/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex.flock (deleted)
  • /data/data/####/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex
  • /data/data/####/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex.flock (deleted)
  • /data/data/####/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex
  • /data/data/####/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex.flock (deleted)
  • /data/data/####/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex
  • /data/data/####/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex.flock (deleted)
  • /data/data/####/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex
  • /data/data/####/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex.flock (deleted)
  • /data/data/####/OUOFI4340YI9PQW4L7YRWFJ7KJ0YDF9.dex
  • /data/data/####/OUOFI4340YI9PQW4L7YRWFJ7KJ0YDF9.dex.flock (deleted)
  • /data/data/####/OUOFI4340YI9PQW4L7YRWFJ7KJ0YDF9.zip
  • /data/data/####/OY4VIKFKOMI1PMGOL32J8VBBWVCEPR9.dex
  • /data/data/####/OY4VIKFKOMI1PMGOL32J8VBBWVCEPR9.dex.flock (deleted)
  • /data/data/####/OY4VIKFKOMI1PMGOL32J8VBBWVCEPR9.zip
  • /data/data/####/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex
  • /data/data/####/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex.flock (deleted)
  • /data/data/####/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex
  • /data/data/####/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex.flock (deleted)
  • /data/data/####/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex
  • /data/data/####/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex.flock (deleted)
  • /data/data/####/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex
  • /data/data/####/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex.flock (deleted)
  • /data/data/####/TIAQKG1S2DFD3PTVVUS61J5NE7IYYJM.dex
  • /data/data/####/TIAQKG1S2DFD3PTVVUS61J5NE7IYYJM.dex.flock (deleted)
  • /data/data/####/TIAQKG1S2DFD3PTVVUS61J5NE7IYYJM.zip
  • /data/data/####/TMQ6KWTSQHZPN5DVB6WEXJXRQJUEQF6.dex
  • /data/data/####/TMQ6KWTSQHZPN5DVB6WEXJXRQJUEQF6.dex.flock (deleted)
  • /data/data/####/TMQ6KWTSQHZPN5DVB6WEXJXRQJUEQF6.zip
  • /data/data/####/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex
  • /data/data/####/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex.flock (deleted)
  • /data/data/####/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex
  • /data/data/####/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex.flock (deleted)
  • /data/data/####/com.android.launcher3.prefs.xml
  • /data/data/####/empty_classes.dex
  • /data/data/####/empty_classes.zip
  • /data/data/####/proc_auxv
  • /data/data/####/sealeh.bdc
  • /data/data/####/spUtils.xml
  • /data/data/####/working
Miscellaneous:
Executes the following shell scripts:
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/0E036W74WU6P1U8CLZYJ03BROZGAT7X.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/ASY1OUPUMKG3BGU2J9O5U995E9I43HZ.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/FGKSQQ32OZXR9ZB9TWI0JXB1SX044LC.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/IGJ6WJKKI6HLACCLV2RWJ3B0BC65JX4.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/MCA5S6TUIGOJ74QQJLODYXH5IPYGJ9N.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/OUOFI4340YI9PQW4L7YRWFJ7KJ0YDF9.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/OY4VIKFKOMI1PMGOL32J8VBBWVCEPR9.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/TIAQKG1S2DFD3PTVVUS61J5NE7IYYJM.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/TMQ6KWTSQHZPN5DVB6WEXJXRQJUEQF6.zip
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex --oat-file=/data/user/0/<Package>/cache/<Package>/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0L30GTP059BGJVWJK6YIU2JJBNBY9AX3.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0L30GTP059BGJVWJK6YIU2JJBNBY9AX3.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex --oat-file=/data/user/0/<Package>/cache/<Package>/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex --oat-file=/data/user/0/<Package>/cache/<Package>/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex --oat-file=/data/user/0/<Package>/cache/<Package>/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex --oat-file=/data/user/0/<Package>/cache/<Package>/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EGIPNMAHMGROGFO9TCZ2S8866RTY18S8.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EGIPNMAHMGROGFO9TCZ2S8866RTY18S8.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EKA1JAALM0ZKO3CPD0ZIC88UU7TALGGG.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EKA1JAALM0ZKO3CPD0ZIC88UU7TALGGG.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex --oat-file=/data/user/0/<Package>/cache/<Package>/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex --oat-file=/data/user/0/<Package>/cache/<Package>/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex --oat-file=/data/user/0/<Package>/cache/<Package>/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex --oat-file=/data/user/0/<Package>/cache/<Package>/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex --oat-file=/data/user/0/<Package>/cache/<Package>/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex --oat-file=/data/user/0/<Package>/cache/<Package>/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex --oat-file=/data/user/0/<Package>/cache/<Package>/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex --oat-file=/data/user/0/<Package>/cache/<Package>/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex --compiler-filter=verify-none --instruction-set=x86
  • getprop ro.dalvik.vm.isa.arm
  • getprop ro.dalvik.vm.isa.arm64
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex --oat-file=/data/user/0/<Package>/cache/<Package>/05F401TW9DFC73WJOIEYIIRNJVJY9IXR.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0DRK0P9OHTVON7WB4MYQ62N3FRFQ9MPN.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0IOBHC4BWQDAE5MRZETCUIY4WLRKR6ME.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0L30GTP059BGJVWJK6YIU2JJBNBY9AX3.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0L30GTP059BGJVWJK6YIU2JJBNBY9AX3.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex --oat-file=/data/user/0/<Package>/cache/<Package>/202LFEY1MGRK47GD5SN6C88YYJ5UDW8W.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/2E63YW9VT9Z6W0GQ9E2WK1JFAHOBLDOP.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex --oat-file=/data/user/0/<Package>/cache/<Package>/50E37WBD3O91OWILNB04S2VXCNESQ7AS.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex --oat-file=/data/user/0/<Package>/cache/<Package>/5OUFJOZXNSH108Q97RWWG6J9G36K2VQO.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex --oat-file=/data/user/0/<Package>/cache/<Package>/87J6ZBDUT2N6YK3TKNX4T3N9I8NN07W5.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8MPK7I6376PMCX6Z6OGIO036WSMDLCLD.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/A0Y9JYU1YGBSK3GLXO7A08WMUNXU50CC.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AOJEH8K9TOF42BS9CQQ82QH4IUW376FN.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AR9U273QFVXQH9MDYGWCWSL5T5D47GJ1.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EGIPNMAHMGROGFO9TCZ2S8866RTY18S8.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EGIPNMAHMGROGFO9TCZ2S8866RTY18S8.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EKA1JAALM0ZKO3CPD0ZIC88UU7TALGGG.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EKA1JAALM0ZKO3CPD0ZIC88UU7TALGGG.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex --oat-file=/data/user/0/<Package>/cache/<Package>/L42NB0VPFCP1CSAXV3SSSQV9WVEG6BY4.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex --oat-file=/data/user/0/<Package>/cache/<Package>/L8IZNSJ9ZGX14425ZZOKGUJ5KBQ8IFE0.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/MJHEQBBIVRTY1PMTA8W8OSLTH1XCJWFP.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex --oat-file=/data/user/0/<Package>/cache/<Package>/NM8XHMPJP6JJEA4VTDAUQS9VE9OIC1O2.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex --oat-file=/data/user/0/<Package>/cache/<Package>/NQO99ET39A7ZQ6C3X96MEWX7250AOP4Y.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex --oat-file=/data/user/0/<Package>/cache/<Package>/O6DKB6QFJU5MGTIBEGS6OO32GGM11W95.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OD7KCX5OT13473W3S6E2QI7FBZZQX2HJ.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OFVMZZT61I3YU83L0RXWH3JPE4JF0BO1.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex --oat-file=/data/user/0/<Package>/cache/<Package>/OLJKCLLG1HJW3RWV8AYUE2NF7VVYX69Z.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QGA5RIM1MGZ40BK1HKBEC8822VHEPC0S.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QUENA0XBT9RQC4KE16QKK1ZJET0VXTGL.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex --oat-file=/data/user/0/<Package>/cache/<Package>/S2SNDC8B0Q9MYTMJRY9S6IAWKHZ0Z2IY.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex --oat-file=/data/user/0/<Package>/cache/<Package>/SWC5WAJ57JH8QMMWBKOYYBLXWFYHNJYR.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ULLGPLBGFG1SSQT36XVYJTHF0E11ALE3.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex --oat-file=/data/user/0/<Package>/cache/<Package>/YGQTF2I1YG3S07K99GVYG8WQYZ9EHG4S.dex --compiler-filter=verify-none --instruction-set=x86
Loads the following dynamic libraries:
  • libcovault-appsec
Uses special library to hide executable bytecode.
Gets information about network.
Gets information about installed apps.
Intercepts notifications.
Requests the system alert window permission.

Recommandations pour le traitement


Android

  1. Si votre appareil mobile fonctionne correctement, veuillez télécharger et installer sur votre appareil mobile le produit antivirus gratuit Dr.Web для Android Light. Lancez un scan complet et suivez les recommandations sur la neutralisation des menaces détectées.
  2. Si l'appareil mobile est bloqué par le Trojan de la famille Android.Locker (un message sur une violation grave de la loi ou une demande de rançon s’affichent sur l'écran de l'appareil mobile), procédez comme suit :
    • démarrez votre Smartphone ou votre tablette en mode sans échec (si vous ne savez pas comment faire, consultez la documentation de l'appareil mobile ou contactez le fabricant) ;
    • puis téléchargez et installez sur votre appareil contaminé le produit antivirus gratuit Dr.Web для Android Light et lancez un scan complet puis suivez les recommandations sur la neutralisation des menaces détectées ;
    • Débranchez votre appareil et rebranchez-le.

En savoir plus sur Dr.Web pour Android