Bibliothèque
Ma bibliothèque

+ Ajouter à la bibliothèque

Contacter-nous !
Support 24/24 | Rules regarding submitting

Nous téléphoner

0 825 300 230

Forum

Vos requêtes

  • Toutes : -
  • Non clôturées : -
  • Dernière : le -

Nous téléphoner

0 825 300 230

Profil

Android.BankBot.TgToxic.48

Added to the Dr.Web virus database: 2023-11-08

Virus description added:

Technical information

Malicious functions:
Executes code of the following detected threats:
  • Android.BankBot.TgToxic.1
Network activity:
Connects to:
  • UDP(DNS) <Google DNS>
  • TCP(TLS/1.0) rr2---s####.g####.com:443
  • TCP(TLS/1.0) 1####.250.150.94:443
  • TCP(TLS/1.0) 1####.194.221.95:443
  • TCP(TLS/1.0) 64.2####.162.95:443
  • TCP(TLS/1.0) rr9---s####.g####.com:443
  • TCP(TLS/1.2) 64.2####.162.95:443
  • TCP(TLS/1.2) 74.1####.205.113:443
  • TCP(TLS/1.2) 1####.250.150.94:443
  • TCP(TLS/1.2) 2####.85.233.95:443
  • UDP rr2---s####.g####.com:443
  • UDP 1####.194.221.95:443
DNS requests:
  • rr2---s####.g####.com
  • rr9---s####.g####.com
File system changes:
Creates the following files:
  • /data/data/####/.com_lnetuh_nsjmrgoq.meta
  • /data/data/####/0E8BLWCR4I1AUXM7RMX8IAYOOH74BMYE.dex
  • /data/data/####/10A33CBHFSTH4OQDRZK0WM7PO7AOA7EO.dex
  • /data/data/####/150035
  • /data/data/####/19
  • /data/data/####/2023-11-08PM105601.rt
  • /data/data/####/2023-11-08PM105601.str
  • /data/data/####/2023-11-08PM105608.so.rt
  • /data/data/####/2023-11-08PM105615.so.rt
  • /data/data/####/2023-11-08PM105622.so.rt
  • /data/data/####/2023-11-08PM105629.so.rt
  • /data/data/####/2023-11-08PM105637.so.rt
  • /data/data/####/2023-11-08PM105643.so.rt
  • /data/data/####/2023-11-08PM105650.so.rt
  • /data/data/####/2023-11-08PM105657.so.rt
  • /data/data/####/2023-11-08PM105705.so.rt
  • /data/data/####/2023-11-08PM105712.so.rt
  • /data/data/####/235M6V3UBF9YT9Y1UCCCC4HPT5D8ZCRP.dex
  • /data/data/####/250035
  • /data/data/####/29
  • /data/data/####/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex
  • /data/data/####/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex.flock (deleted)
  • /data/data/####/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex
  • /data/data/####/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex.flock (deleted)
  • /data/data/####/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex
  • /data/data/####/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex.flock (deleted)
  • /data/data/####/704ddcfe1fcf6363ce390441d60be78fts99nb.raxl
  • /data/data/####/704ddcfe1fcf6363ce390441d60be78fts99nb.raxl (deleted)
  • /data/data/####/7LZ2KRJE75W9DOL6MXOJTXXZFOIJY1PL.dex
  • /data/data/####/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex
  • /data/data/####/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex.flock (deleted)
  • /data/data/####/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex
  • /data/data/####/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex.flock (deleted)
  • /data/data/####/8YX0E562CCJJOEQZ98D6LTHADEGBXJI.dex (deleted)
  • /data/data/####/8YX0E562CCJJOEQZ98D6LTHADEGBXJI.dex.flock (deleted)
  • /data/data/####/8YX0E562CCJJOEQZ98D6LTHADEGBXJI.zip
  • /data/data/####/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex
  • /data/data/####/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex.flock (deleted)
  • /data/data/####/AD7O4LK2STIQDLVMO8595R8M1GVXJGBH.dex
  • /data/data/####/AGQHOMX6AK4JZ4YEF90L2P552HM4VXR.dex (deleted)
  • /data/data/####/AGQHOMX6AK4JZ4YEF90L2P552HM4VXR.dex.flock (deleted)
  • /data/data/####/AGQHOMX6AK4JZ4YEF90L2P552HM4VXR.zip
  • /data/data/####/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex
  • /data/data/####/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex.flock (deleted)
  • /data/data/####/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex
  • /data/data/####/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex.flock (deleted)
  • /data/data/####/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex
  • /data/data/####/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex.flock (deleted)
  • /data/data/####/CH7G8DXWT1V07RONO6AY2UVR73BMH653.dex
  • /data/data/####/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex
  • /data/data/####/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex.flock (deleted)
  • /data/data/####/F4CSQIBECFL7D3V5PCE0RTRLW5K4G1O.dex (deleted)
  • /data/data/####/F4CSQIBECFL7D3V5PCE0RTRLW5K4G1O.dex.flock (deleted)
  • /data/data/####/F4CSQIBECFL7D3V5PCE0RTRLW5K4G1O.zip
  • /data/data/####/FIML624XSP25L7QSZMCNGIM4TRAIRMBC.dex
  • /data/data/####/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex
  • /data/data/####/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex.flock (deleted)
  • /data/data/####/GAGZP8W74ITEM9Y77YXCEAY0017SREA6.dex
  • /data/data/####/HA6IWWXOYLF5F5LJ7U8M1RL7AVIIMJA.dex (deleted)
  • /data/data/####/HA6IWWXOYLF5F5LJ7U8M1RL7AVIIMJA.dex.flock (deleted)
  • /data/data/####/HA6IWWXOYLF5F5LJ7U8M1RL7AVIIMJA.zip
  • /data/data/####/HXDI5BKEGOMTVFFDODHN7GMIPO7AKWVC.dex
  • /data/data/####/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex
  • /data/data/####/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex.flock (deleted)
  • /data/data/####/IECPkgStoreInfo
  • /data/data/####/LBX4RT8LTVJAQNTDY07WHGSG9C13IO2.dex
  • /data/data/####/LBX4RT8LTVJAQNTDY07WHGSG9C13IO2.dex (deleted)
  • /data/data/####/LBX4RT8LTVJAQNTDY07WHGSG9C13IO2.dex.flock (deleted)
  • /data/data/####/LBX4RT8LTVJAQNTDY07WHGSG9C13IO2.zip
  • /data/data/####/M025CY166GSZB8A2F1KD6DX56X2WBPF.dex (deleted)
  • /data/data/####/M025CY166GSZB8A2F1KD6DX56X2WBPF.dex.flock (deleted)
  • /data/data/####/M025CY166GSZB8A2F1KD6DX56X2WBPF.zip
  • /data/data/####/MFPQAVBYR3XMLTE9I0SKCKTTLH90ZGZX.dex
  • /data/data/####/MK7U0JGW6I1HMOCXRERCNZBGN02LFD8.dex (deleted)
  • /data/data/####/MK7U0JGW6I1HMOCXRERCNZBGN02LFD8.dex.flock (deleted)
  • /data/data/####/MK7U0JGW6I1HMOCXRERCNZBGN02LFD8.zip
  • /data/data/####/MOMTC2166GO37022ZH85IX1X6XYOV5V.dex (deleted)
  • /data/data/####/MOMTC2166GO37022ZH85IX1X6XYOV5V.dex.flock (deleted)
  • /data/data/####/MOMTC2166GO37022ZH85IX1X6XYOV5V.zip
  • /data/data/####/NXRUX7UBZ1XSS5JBGIL2REMM3IZHO68.dex (deleted)
  • /data/data/####/NXRUX7UBZ1XSS5JBGIL2REMM3IZHO68.dex.flock (deleted)
  • /data/data/####/NXRUX7UBZ1XSS5JBGIL2REMM3IZHO68.zip
  • /data/data/####/QCU5F2UHES7KG30H9SFAGK8MURHY9SCS.dex
  • /data/data/####/QZJFTPM9VA0Y4MQKO31BMKEW30J3JSZ.dex.flock (deleted)
  • /data/data/####/QZJFTPM9VA0Y4MQKO31BMKEW30J3JSZ.zip
  • /data/data/####/SLD5Z3SJ1WEW64GIQLFXGI82H6HH9AL.dex (deleted)
  • /data/data/####/SLD5Z3SJ1WEW64GIQLFXGI82H6HH9AL.dex.flock (deleted)
  • /data/data/####/SLD5Z3SJ1WEW64GIQLFXGI82H6HH9AL.zip
  • /data/data/####/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex
  • /data/data/####/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex.flock (deleted)
  • /data/data/####/TOWVKGQ7AFSZFT0YXOADY80IJTO4DGPI.dex
  • /data/data/####/TUKTX2I1AE8XOCT8P7BRB7K8C4KNABUW.dex
  • /data/data/####/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex
  • /data/data/####/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex.flock (deleted)
  • /data/data/####/VPOZ2PX26P0DZC9IXNF5FVELV3X0G3SW.dex
  • /data/data/####/XFY54RFSWBYV1M307LLN1PGV5L3IE1M2.dex
  • /data/data/####/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex
  • /data/data/####/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex.flock (deleted)
  • /data/data/####/ZMKL9I57PI7ZU2ONX5YQM4XZA9SE0LOM.dex
  • /data/data/####/ZZNWZ5YOIYK7P5LBYNJPDQKSVIPGUE1E.dex
  • /data/data/####/empty_classes.dex
  • /data/data/####/empty_classes.zip
  • /data/data/####/proc_auxv
  • /data/data/####/sealeh.bdc
  • /data/data/####/spUtils.xml
  • /data/data/####/working
Miscellaneous:
Executes the following shell scripts:
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/8YX0E562CCJJOEQZ98D6LTHADEGBXJI.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/AGQHOMX6AK4JZ4YEF90L2P552HM4VXR.zip
  • cp /data/user/0/<Package>/app_payload_lib/empty_classes.zip /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/F4CSQIBECFL7D3V5PCE0RTRLW5K4G1O.zip
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0E8BLWCR4I1AUXM7RMX8IAYOOH74BMYE.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0E8BLWCR4I1AUXM7RMX8IAYOOH74BMYE.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/10A33CBHFSTH4OQDRZK0WM7PO7AOA7EO.dex --oat-file=/data/user/0/<Package>/cache/<Package>/10A33CBHFSTH4OQDRZK0WM7PO7AOA7EO.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/235M6V3UBF9YT9Y1UCCCC4HPT5D8ZCRP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/235M6V3UBF9YT9Y1UCCCC4HPT5D8ZCRP.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex --oat-file=/data/user/0/<Package>/cache/<Package>/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex --oat-file=/data/user/0/<Package>/cache/<Package>/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/7LZ2KRJE75W9DOL6MXOJTXXZFOIJY1PL.dex --oat-file=/data/user/0/<Package>/cache/<Package>/7LZ2KRJE75W9DOL6MXOJTXXZFOIJY1PL.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AD7O4LK2STIQDLVMO8595R8M1GVXJGBH.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AD7O4LK2STIQDLVMO8595R8M1GVXJGBH.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex --oat-file=/data/user/0/<Package>/cache/<Package>/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/CH7G8DXWT1V07RONO6AY2UVR73BMH653.dex --oat-file=/data/user/0/<Package>/cache/<Package>/CH7G8DXWT1V07RONO6AY2UVR73BMH653.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/FIML624XSP25L7QSZMCNGIM4TRAIRMBC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/FIML624XSP25L7QSZMCNGIM4TRAIRMBC.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex --oat-file=/data/user/0/<Package>/cache/<Package>/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/GAGZP8W74ITEM9Y77YXCEAY0017SREA6.dex --oat-file=/data/user/0/<Package>/cache/<Package>/GAGZP8W74ITEM9Y77YXCEAY0017SREA6.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/HXDI5BKEGOMTVFFDODHN7GMIPO7AKWVC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/HXDI5BKEGOMTVFFDODHN7GMIPO7AKWVC.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex --oat-file=/data/user/0/<Package>/cache/<Package>/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/MFPQAVBYR3XMLTE9I0SKCKTTLH90ZGZX.dex --oat-file=/data/user/0/<Package>/cache/<Package>/MFPQAVBYR3XMLTE9I0SKCKTTLH90ZGZX.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QCU5F2UHES7KG30H9SFAGK8MURHY9SCS.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QCU5F2UHES7KG30H9SFAGK8MURHY9SCS.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex --oat-file=/data/user/0/<Package>/cache/<Package>/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/TOWVKGQ7AFSZFT0YXOADY80IJTO4DGPI.dex --oat-file=/data/user/0/<Package>/cache/<Package>/TOWVKGQ7AFSZFT0YXOADY80IJTO4DGPI.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/TUKTX2I1AE8XOCT8P7BRB7K8C4KNABUW.dex --oat-file=/data/user/0/<Package>/cache/<Package>/TUKTX2I1AE8XOCT8P7BRB7K8C4KNABUW.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/VPOZ2PX26P0DZC9IXNF5FVELV3X0G3SW.dex --oat-file=/data/user/0/<Package>/cache/<Package>/VPOZ2PX26P0DZC9IXNF5FVELV3X0G3SW.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/XFY54RFSWBYV1M307LLN1PGV5L3IE1M2.dex --oat-file=/data/user/0/<Package>/cache/<Package>/XFY54RFSWBYV1M307LLN1PGV5L3IE1M2.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZMKL9I57PI7ZU2ONX5YQM4XZA9SE0LOM.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZMKL9I57PI7ZU2ONX5YQM4XZA9SE0LOM.dex --compiler-filter=verify-none --instruction-set=x86
  • dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZZNWZ5YOIYK7P5LBYNJPDQKSVIPGUE1E.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZZNWZ5YOIYK7P5LBYNJPDQKSVIPGUE1E.dex --compiler-filter=verify-none --instruction-set=x86
  • getprop ro.dalvik.vm.isa.arm
  • getprop ro.dalvik.vm.isa.arm64
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/0E8BLWCR4I1AUXM7RMX8IAYOOH74BMYE.dex --oat-file=/data/user/0/<Package>/cache/<Package>/0E8BLWCR4I1AUXM7RMX8IAYOOH74BMYE.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/10A33CBHFSTH4OQDRZK0WM7PO7AOA7EO.dex --oat-file=/data/user/0/<Package>/cache/<Package>/10A33CBHFSTH4OQDRZK0WM7PO7AOA7EO.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/235M6V3UBF9YT9Y1UCCCC4HPT5D8ZCRP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/235M6V3UBF9YT9Y1UCCCC4HPT5D8ZCRP.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex --oat-file=/data/user/0/<Package>/cache/<Package>/3QK95UTN5ERZMYKV1XQIYG9JYPW6S58A.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex --oat-file=/data/user/0/<Package>/cache/<Package>/42LK3Y67JQPMS9ERUW0E80FISCI95CPP.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex --oat-file=/data/user/0/<Package>/cache/<Package>/6CV650ODPWNKAJ894U6WUEHSIUORNAJV.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/7LZ2KRJE75W9DOL6MXOJTXXZFOIJY1PL.dex --oat-file=/data/user/0/<Package>/cache/<Package>/7LZ2KRJE75W9DOL6MXOJTXXZFOIJY1PL.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8A0RLOG7SI9QMDEZF2DSQAAC4XFSZA66.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex --oat-file=/data/user/0/<Package>/cache/<Package>/8U4ZPG8RGILYATMFJ2HSMAMW05Z43A2E.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/9J58QD54LVYFJIZ8C7613NZPPUGD4JJZ.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AD7O4LK2STIQDLVMO8595R8M1GVXJGBH.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AD7O4LK2STIQDLVMO8595R8M1GVXJGBH.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex --oat-file=/data/user/0/<Package>/cache/<Package>/AH9S95BWBS5WCULJYPRQ7LPF4UXPQ5YB.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ANHQMR36BRLULDYD68S4KK95XL98N0J9.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex --oat-file=/data/user/0/<Package>/cache/<Package>/CBZIVR52T2F2I8VDGNT0PVBLESZJKB05.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/CH7G8DXWT1V07RONO6AY2UVR73BMH653.dex --oat-file=/data/user/0/<Package>/cache/<Package>/CH7G8DXWT1V07RONO6AY2UVR73BMH653.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex --oat-file=/data/user/0/<Package>/cache/<Package>/EBDMEZB2RB56DPYHQ4C84K1X11XGBS7D.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/FIML624XSP25L7QSZMCNGIM4TRAIRMBC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/FIML624XSP25L7QSZMCNGIM4TRAIRMBC.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex --oat-file=/data/user/0/<Package>/cache/<Package>/G8ST4UNLBB9WMQM0VSCYQ39P0FQ1JNE7.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/GAGZP8W74ITEM9Y77YXCEAY0017SREA6.dex --oat-file=/data/user/0/<Package>/cache/<Package>/GAGZP8W74ITEM9Y77YXCEAY0017SREA6.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/HXDI5BKEGOMTVFFDODHN7GMIPO7AKWVC.dex --oat-file=/data/user/0/<Package>/cache/<Package>/HXDI5BKEGOMTVFFDODHN7GMIPO7AKWVC.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex --oat-file=/data/user/0/<Package>/cache/<Package>/I6IFUG9B91BIS0021IAGKDVVAL8VP585.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/MFPQAVBYR3XMLTE9I0SKCKTTLH90ZGZX.dex --oat-file=/data/user/0/<Package>/cache/<Package>/MFPQAVBYR3XMLTE9I0SKCKTTLH90ZGZX.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/QCU5F2UHES7KG30H9SFAGK8MURHY9SCS.dex --oat-file=/data/user/0/<Package>/cache/<Package>/QCU5F2UHES7KG30H9SFAGK8MURHY9SCS.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex --oat-file=/data/user/0/<Package>/cache/<Package>/SNDI232CM748VBL4EAZR3XMSBYPFLY1B.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/TOWVKGQ7AFSZFT0YXOADY80IJTO4DGPI.dex --oat-file=/data/user/0/<Package>/cache/<Package>/TOWVKGQ7AFSZFT0YXOADY80IJTO4DGPI.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/TUKTX2I1AE8XOCT8P7BRB7K8C4KNABUW.dex --oat-file=/data/user/0/<Package>/cache/<Package>/TUKTX2I1AE8XOCT8P7BRB7K8C4KNABUW.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex --oat-file=/data/user/0/<Package>/cache/<Package>/VOAJJOW7SOI3AQ3275TLDHQUM2M1OHWQ.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/VPOZ2PX26P0DZC9IXNF5FVELV3X0G3SW.dex --oat-file=/data/user/0/<Package>/cache/<Package>/VPOZ2PX26P0DZC9IXNF5FVELV3X0G3SW.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/XFY54RFSWBYV1M307LLN1PGV5L3IE1M2.dex --oat-file=/data/user/0/<Package>/cache/<Package>/XFY54RFSWBYV1M307LLN1PGV5L3IE1M2.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZA0X1UTR9MFZMEWVH1EIA8LVYP46CP4I.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZMKL9I57PI7ZU2ONX5YQM4XZA9SE0LOM.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZMKL9I57PI7ZU2ONX5YQM4XZA9SE0LOM.dex --compiler-filter=verify-none --instruction-set=x86
  • sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/ZZNWZ5YOIYK7P5LBYNJPDQKSVIPGUE1E.dex --oat-file=/data/user/0/<Package>/cache/<Package>/ZZNWZ5YOIYK7P5LBYNJPDQKSVIPGUE1E.dex --compiler-filter=verify-none --instruction-set=x86
Loads the following dynamic libraries:
  • libcovault-appsec
Uses special library to hide executable bytecode.
Gets information about network.
Gets information about installed apps.
Intercepts notifications.
Requests the system alert window permission.

Recommandations pour le traitement


Android

  1. Si votre appareil mobile fonctionne correctement, veuillez télécharger et installer sur votre appareil mobile le produit antivirus gratuit Dr.Web для Android Light. Lancez un scan complet et suivez les recommandations sur la neutralisation des menaces détectées.
  2. Si l'appareil mobile est bloqué par le Trojan de la famille Android.Locker (un message sur une violation grave de la loi ou une demande de rançon s’affichent sur l'écran de l'appareil mobile), procédez comme suit :
    • démarrez votre Smartphone ou votre tablette en mode sans échec (si vous ne savez pas comment faire, consultez la documentation de l'appareil mobile ou contactez le fabricant) ;
    • puis téléchargez et installez sur votre appareil contaminé le produit antivirus gratuit Dr.Web для Android Light et lancez un scan complet puis suivez les recommandations sur la neutralisation des menaces détectées ;
    • Débranchez votre appareil et rebranchez-le.

En savoir plus sur Dr.Web pour Android