Поддержка
Круглосуточная поддержка

Позвоните

Бесплатно по России:
8-800-333-79-32

ЧаВо | Форум

Ваши запросы

  • Все: -
  • Незакрытые: -
  • Последний: -

Позвоните

Бесплатно по России:
8-800-333-79-32

Свяжитесь с нами Незакрытые запросы: 

Профиль

Профиль

Android.Packed.22116

Добавлен в вирусную базу Dr.Web: 2017-05-25

Описание добавлено:

Техническая информация

Вредоносные функции:
Загружает на исполнение код следующих детектируемых угроз:
  • Tool.SMSSend.76.origin
Сетевая активность:
Подключается к:
  • a####.####.cn
  • nsc####.####.com
  • f####.####.com
  • h####.####.com
  • g####.####.net
  • d####.####.com
  • m####.####.com
  • p####.####.com
  • r####.####.com
  • c####.####.com
  • 1####.####.92
  • af####.####.com
  • w####.####.com
  • 1####.com
  • afpt####.####.com
  • l####.####.com
  • cou####.####.com
  • st####.####.com
  • pco####.####.com
  • a####.####.com
  • b####.####.com
Запросы HTTP GET:
  • 1####.com/passport/js/validate.js
  • 1####.com/navigation_all/navigation_1905all_mobile.js
  • 1####.com/uploadfile/2017/0523/thumb_1_640_240_20170523085616871641.jpg
  • 1####.com/uploadfile/2014/0804/thumb_1_150_205_20140804021739213050.jpg
  • 1####.com/3g/20141011/mdb/images/icon_play.png
  • 1####.com/assets/video/css/common-hd_mobile.css
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053111830456.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053109672431.jpg
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524091334438742.jpg
  • 1####.com/coll/hotsearch2014.js?t=####&callback=####
  • af####.####.com/imp?bid=####&pid=####&cid=####&mid=####&oid=####&product...
  • 1####.com/images/news/baoyue1.jpg
  • 1####.com/images/vod/h5/apptg.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522055741334905.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053109791876.jpg
  • 1####.com/uploadfile/2017/0525/thumb_1_150_85_20170525093215663402.jpg
  • 1####.com/uploadfile//2017/0522/thumb_0_130_98_3_20170522101304177180.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522055741255714.jpg
  • 1####.com/images/navigation_all/icon_member_phone.png
  • 1####.com/assets/video/images/icon.png
  • 1####.com/images/indexh5/3D.png
  • 1####.com/uploadfile/2015/0330/thumb_1_150_205_20150330024525818400.jpg
  • 1####.com/3g/20141011/mdb/images/star.png
  • nsc####.####.com/v.gif?pid=####&type=####&sign=####&desturl=####&linkid=...
  • 1####.com/images/navigation_all/icons_navigation_1905all.png
  • st####.####.com/3g/20130605/css/app/piao.css
  • 1####.com/images/navigation_all/img_logo_channel_video_phone.png
  • 1####.com/1905.media.min.js
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523093715810805.jpg
  • p####.####.com/fcym?sz=####&rdid=####&dc=####&di=####&dri=####&dis=####&...
  • 1####.com/images/navigation_all/icon_search_phone.png
  • st####.####.com/3g/20130605/images/button-close.png
  • afpt####.####.com/imp?bid=####&pid=####&cid=####&mid=####&oid=####&produ...
  • f####.####.com/it/u=1558096429,2217214094&fm=76
  • p####.####.com/mcsm?sz=####&rdid=####&dc=####&di=####&dri=####&dis=####&...
  • 1####.com/uploadfile/2017/0320/thumb_1_130_73_20170320031952186718.jpg
  • m####.####.com/Mdb/mdbDetail/filmid/2233994/
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053112330710.jpg
  • b####.####.com/static/api/js/view/image_view.js
  • 1####.com/m1905.player-1.1.4.js
  • 1####.com/uploadfile/2017/0503/thumb_1_130_73_20170503092704832679.jpg
  • 1####.com/??js/cor####
  • 1####.com/wwwm/share/css/share.css
  • 1####.com/uploadfile//2016/1031/thumb_1_184_184_3_20161031113711600276.jpg
  • b####.####.com/static/api/img/share/icons_0_16.png?v=####
  • b####.####.com/static/api/js/share/image_api.js
  • 1####.com/uploadfile/2017/0314/thumb_1_130_73_20170314103615587995.jpg
  • 1####.com/uploadfile/2017/0315/thumb_1_130_73_20170315090542855317.jpg
  • 1####.com/core/jquery-edge.min.js
  • 1####.com/new-rec-bottom.css?t=####
  • 1####.com/assets/vod/img/vodplaycode.jpg
  • b####.####.com/static/api/js/base/tangram.js?v=####
  • l####.####.com/link/?&fr=####&redirect_url=####
  • 1####.com/uploadfile/2017/0424/thumb_1_130_73_20170424091324455644.jpg
  • 1####.com/uploadfile/2017/0329/thumb_1_130_73_20170329104158528456.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110972243.jpg
  • 1####.com/uploadfile/2017/0511/thumb_1_130_73_20170511091012922068.jpg
  • f####.####.com/it/u=1064933456,1420127338&fm=76
  • st####.####.com/3g/20130605/images/button-download-app.png
  • 1####.com/core/bootstrap.min.js
  • p####.####.com/icwm?di=####&dri=####&dis=####&dai=####&ps=####&coa=####&...
  • 1####.com/api/navcats/recommend_news.js?callback=####&_=####
  • 1####.com/assets/vod/img/phone_er.gif
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522090523860202.jpg
  • st####.####.com/h5/html/adhtml/aside.html?uid=####&type=####&at=####&hn=...
  • 1####.com/images/news/1905news_tglogo.gif
  • 1####.com/images/indexh5/blackLayer.png
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523095026610342.jpg
  • r####.####.com/open/js/jweixin-1.0.0.js
  • f####.####.com/it/u=82018009,478183994&fm=76
  • f####.####.com/it/u=3946572452,4091640842&fm=76
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523095916116795.jpg
  • 1####.com/assets/video/images/1905app.jpg
  • st####.####.com/assets/t4/img/loading.gif
  • st####.####.com/3g/20141121/app/DYWbannerClose.png
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053113818605.jpg
  • 1####.com/m/api/apishare/?tpl=####&id=####&title=####&desc=####&url=####...
  • st####.####.com/3g/20130605/images/bannerImg1024.jpg
  • 1####.com/uploadfile/2012/1203/thumb_1_150_205_20121203101215170.jpg
  • 1####.com/uploadfile/2017/0525/thumb_1_180_136_20170525081518583.jpeg
  • 1####.com/uploadfile/2017/0524/thumb_1_180_136_20170524123010288.jpg
  • 1####.com/uploadfile/2017/0522/20170522055741255714.jpg
  • 1####.com/uploadfile/2017/0522/20170522053110865171.jpg
  • 1####.com/coll/adproxy.html?aid=####
  • 1####.com/uploadfile/2017/0525/thumb_1_180_136_20170525121509589.jpg
  • 1####.com/passport/js/popReg.js
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523084259594781.jpg
  • 1####.com/images/indexh5/china_jumu_3d.png
  • 1####.com/??css/ba####
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053111896451.jpg
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524095016101437.jpg
  • st####.####.com/media/1905.media.min.css
  • 1####.com/mdb/film/2233994/
  • b####.####.com/static/api/js/share/select_api.js
  • a####.####.com/g/mm/afp-cdn/JS/k.js
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053109896919.jpg
  • 1####.com/video/play/m/1185153.shtml
  • 1####.com/mdb/uploadfile/2017/0424/thumb_1_73_102_20170424111438887405.jpg
  • 1####.com/uploadfile/2017/0519/thumb_1_130_73_20170519090159697160.jpg
  • 1####.com/wwwm/share/image/5.png
  • 1####.com/wwwm/share/image/4.png
  • p####.####.com/icwm?sz=####&rdid=####&dc=####&di=####&dri=####&dis=####&...
  • 1####.com/uploadfile/2017/0517/thumb_1_640_240_20170517092003804333.jpg
  • 1####.com/pingd.js?v=####
  • m####.####.com/
  • c####.####.com/sync.htm?cproid=####
  • st####.####.com/3g/20130605/js/scroll.js
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524084625690283.jpg
  • af####.####.com/ex?a=####&sp=####&cb=####&u=####&ds=####&_=####&fs=####&...
  • 1####.com/uploadfile/2012/1212/thumb_1_73_102_20121212045027971.jpg
  • a####.####.com/g/mm/afp-cdn/JS/w.js
  • 1####.com/??css/ho####
  • c####.####.com/pixel?dspid=####
  • st####.####.com/3g/20140928/JS/device.min.js
  • st####.####.com/static/image/close/close-sg15.jpg
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523090048114726.jpg
  • st####.####.com/3g/20140928/JS/wrap.js
  • 1####.com/images/indexh5/bottom_blackLayer.png
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524095314238518.jpg
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523113801765311.jpg
  • 1####.com/swfobjectV1.5.js
  • a####.####.cn/Dim/autoapater?name=####&id=####
  • 1####.com/3g/20141011/mdb/js/mdb.js
  • b####.####.com/static/api/js/share/api_base.js
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053112475361.jpg
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524033841318682.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053113499246.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110142148.jpg
  • st####.####.com/3g/20130605/js/scrollload.js
  • 1####.com/images/indexh5/2D.png
  • f####.####.com/it/u=3745356884,3826646265&fm=76
  • 1####.com/passport/js/emailsuggest.js
  • h####.####.com/h.js?49411f7####
  • 1####.com/uploadfile//2017/0520/thumb_0_130_98_3_20170520060531847494.jpg
  • b####.####.com/static/api/js/view/view_base.js
  • 1####.com/3g/20141011/mdb/images/mdblogo.png
  • 1####.com/??js/ind####
  • st####.####.com/collect.gif?dm=####&url=####&arg=####&tt=####&rdm=####&r...
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110263540.jpg
  • 1####.com/uploadfile/2017/0523/thumb_1_180_136_20170523124506621.jpg
  • 1####.com/
  • h####.####.com/hm.js?5a95739####
  • 1####.com/uploadfile/2017/0524/thumb_1_180_136_20170524081506537.jpeg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053113814839.jpg
  • 1####.com/images/indexh5/IMAX_3D.png
  • af####.####.com/ex?a=####&ce=####&ec=####&sp=####&u=####&ds=####&cb=####...
  • l####.####.com/w.gif?logtype=####&pre=####&cache=####&scr=####&cna=####&...
  • af####.####.com/opt?bid=####&pid=####&cid=####&mid=####&oid=####&product...
  • 1####.com/ui/touchCarousel.js
  • 1####.com/uploadfile//2016/1031/thumb_1_184_184_3_20161031113711833480.jpg
  • afpt####.####.com/opt?bid=####&pid=####&cid=####&mid=####&oid=####&produ...
  • 1####.com/uploadfile/2017/0525/thumb_1_150_85_20170525095803867605.jpg
  • 1####.com/navigation_all/navigation_1905all_mobile.css
  • 1####.com/uploadfile/2017/0524/thumb_1_180_136_20170524081508535.jpeg
  • f####.####.com/it/u=346962736,1829567364&fm=76
  • 1####.com/images/indexh5/dot1.png
  • 1####.com/images/indexh5/blackLayer2.png
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524054117569433.jpg
  • 1####.com/uploadfile//2016/1031/thumb_1_184_184_3_20161031113711727514.jpg
  • 1####.com/images/indexh5/titleColor.png
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110119082.jpg
  • 1####.com/images/navigation_all/img_logo_channel_news_phone.png
  • st####.####.com/3g/20141121/app/DYWbanner.png
  • b####.####.com/static/api/js/view/share_view.js?v=####
  • 1####.com/uploadfile/2017/0522/20170522053110263540.jpg
  • a####.####.com/asp_js/k.js
  • 1####.com/uploadfile/2017/0522/thumb_1_130_73_20170522101304177180.jpg
  • 1####.com/core/seed.js
  • 1####.com/css/20170424/images/logo2x.png
  • 1####.com/images/navigation_all/icon_history_phone.png
  • 1####.com/assets/video/js/play20150901.js?t=####
  • 1####.com/uploadfile/2017/0525/thumb_1_640_240_20170525112458596178.jpg
  • 1####.com/uploadfile/2017/0520/thumb_1_640_240_20170520091956819299.jpg
  • 1####.com/api/video/getmediainfo.php?jsoncallback=####&id=####&type=####...
  • 1####.com/uploadfile/2017/0525/thumb_1_150_85_20170525092008401666.jpg
  • b####.####.com/static/api/css/share_style0_32.css?v=####
  • 1####.com/index2012/images/entcode.png
  • 1####.com/uploadfile/2017/0519/thumb_1_136_84_20170519020604277562.jpg
  • 1####.com/css/20170424/appAdCss.css
  • 1####.com/wwwm/share/image/3.png
  • 1####.com/uploadfile//2017/0523/thumb_1_130_98_3_20170523015857859462.jpg
  • 1####.com/uploadfile/2017/0516/thumb_1_150_205_20170516030124139716.jpg
  • 1####.com/images/navigation_all/logo1.png
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524085004374200.jpg
  • st####.####.com/wwwm/news/js/play_mobile.js
  • 1####.com/assets/video/css/haplayer_r.css
  • 1####.com/images/navigation_all/logo_channel_video.gif
  • 1####.com/base.css
  • 1####.com/video/play/1185153.shtml
  • 1####.com/uploadfile/2017/0519/thumb_1_640_240_20170519033050184456.jpg
  • 1####.com/index_h5.shtml
  • 1####.com/uploadfile/2015/0415/thumb_1_150_205_20150415050310187624.jpg
  • b####.####.com/static/api/js/trans/logger.js?v=####
  • g####.####.net/ga?type=####&mode=####&slotid=####&index=####&count=####&...
  • 1####.com/uploadfile/2017/0522/20170522053112475361.jpg
  • st####.####.com/3g/20130605/images/logo.png
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053109121973.jpg
  • st####.####.com/3g/20130605/js/common.js
  • 1####.com/uploadfile/2017/0523/thumb_1_180_136_20170523114511649.jpg
  • 1####.com/core/seed_v2.js
  • 1####.com/uploadfile/2017/0516/thumb_1_130_73_20170516085946545319.jpg
  • c####.####.com/du?&baidu_user_id=####&cookie_version=####&timestamp=####...
  • 1####.com/uploadfile/2017/0524/thumb_1_150_85_20170524093529541569.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053112423099.jpg
  • 1####.com/uploadfile/2017/0206/thumb_1_150_205_20170206010833311780.jpg
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053113631659.jpg
  • 1####.com/video/jquery.tinyscrollbar.min.js
  • st####.####.com/3g/20130605/css/app/css/wapload.css
  • 1####.com/3g/20141011/mdb/css/mdb.css
  • 1####.com/ui/tooltip.js
  • 1####.com/uploadfile/2017/0523/thumb_1_180_136_20170523103614865268_wate...
  • d####.####.com/x.js?si=####&dm=####
  • st####.####.com/3g/20130605/css/app/css/load.css
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110567835.jpg
  • h####.####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&et=####&ja=####&ln...
  • 1####.com/images/navigation_all/logo2.png
  • 1####.com/3g/20141011/mdb/js/zepto.js
  • cou####.####.com/count.php?contentid=####
  • 1####.com/uploadfile/2017/0228/thumb_1_130_73_20170228101845240644.jpg
  • 1####.com/uploadfile/2017/0516/thumb_1_640_240_20170516122622772810.jpg
  • b####.####.com/static/api/js/share.js?cdnversion=####
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053114880661.jpg
  • 1####.com/assets/vod/img/icon.png
  • st####.####.com/sdk/js/mobile.js
  • 1####.com/uploadfile/2017/0220/thumb_1_130_73_20170220020841483333.jpg
  • 1####.com/uploadfile//2017/0522/thumb_1_130_98_3_20170522053110263540.jpg
  • st####.####.com/3g/20140928/CSS/location.css
  • st####.####.com/3g/20130605/js/scrollrank.js
  • 1####.com/uploadfile/2017/0523/thumb_1_180_136_20170523112733134437_wate...
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053111609945.jpg
  • p####.####.com/mcsm?di=####&dri=####&dis=####&dai=####&ps=####&dcb=####&...
  • st####.####.com/3g/20130605/css/style.css
  • st####.####.com/3g/20130605/js/ad_phone.js
  • st####.####.com/3g/20130605/js/scrollapp.js
  • f####.####.com/it/u=714961855,787381951&fm=76
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053111782638.jpg
  • 1####.com/css/20170424/images/ic_off2x.png
  • pco####.####.com/app.gif?&cna=####
  • af####.####.com/acookie.html
  • a####.####.com/a.htm?pv=####&sp=####&ec=####&re=####&jsv=####&cb=####&se...
  • 1####.com/api/video/getlist2.php?id=####&callback=####
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522090206791064.jpg
  • 1####.com/pingd_other.js
  • 1####.com/uploadfile/2017/0523/thumb_1_150_85_20170523093044317759.jpg
  • 1####.####.92/v.gif?pid=####&type=####&l=####&t=####&s=####&v=####&f=###...
  • c####.####.com/cpro/ui/noexpire/img/2.0.1/bd-logo4.png
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053109746653.jpg
  • 1####.com/uploadfile/2017/0524/thumb_1_640_240_20170524022351345629.jpg
  • 1####.com/uploadfile/2017/0523/thumb_1_180_136_20170523014510997.png
  • w####.####.com/adx.php?c=####
  • p####.####.com/fcym?di=####&dri=####&dis=####&dai=####&ps=####&dcb=####&...
  • 1####.com/images/indexh5/blueRec.jpg
  • 1####.com/utils/hammer.js
  • b####.####.com/static/api/js/share/share_api.js?v=####
  • 1####.com/core/app.lite.min.js
  • 1####.com/uploadfile/2017/0522/thumb_0_640_320_20170522053110865171.jpg
  • d####.####.com/x.gif?he=####&si=####&dm=####&ac=####&v=####&li=####&rnd=...
  • st####.####.com/wwwm/news/js/news-mobile.js
  • g####.####.net/qa?slotid=####&adid=####&index=####&pvid=####&rn=####&mob...
  • st####.####.com/3g/20141121/app/DYWbannerLoad.png
  • 1####.com/m/news/touch/1185503.shtml?fr=####
  • 1####.com/news/20170522/1185503.shtml?fr=####
  • c####.####.com/cpro/ui/cm.js
  • 1####.com/assets/video/css/play.css?20####
  • m####.####.com/Public/Js/pingd_wap.js
  • st####.####.com/h5/html/adhtml/render.html?uid=####&type=####&at=####&hn...
  • st####.####.com/sdk/js/ai.m.js
  • st####.####.com/3g/20130605/js/jquery.min.js
  • 1####.com/uploadfile//2016/1031/thumb_1_184_184_3_20161031113711933164.jpg
  • 1####.com/wwwm/share/js/clipboard.min.js
  • 1####.com/images/indexh5/leftBlackLayer2.png
  • h####.####.com/hm.gif?si=####&et=####&nv=####&st=####&lt=####&v=####&rnd...
  • 1####.com/coll/hotsearch.js?callback=####&refreshtime=####
  • b####.####.com/static/api/js/view/select_view.js?v=####
  • 1####.com/mdb/uploadfile/2017/0424/thumb_1_147_206_20170424111438887405....
  • h####.####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&ep=####&et=####&ja...
Изменения в файловой системе:
Создает следующие файлы:
  • <Package Folder>/cache/webviewCacheChromium/f_000030
  • <Package Folder>/cache/webviewCacheChromium/f_000023
  • <Package Folder>/cache/webviewCacheChromium/f_000031
  • <Package Folder>/cache/webviewCacheChromium/f_000033
  • <Package Folder>/cache/webviewCacheChromium/f_000034
  • <Package Folder>/cache/webviewCacheChromium/f_000035
  • <Package Folder>/cache/webviewCacheChromium/f_000018
  • <Package Folder>/cache/webviewCacheChromium/f_000019
  • <Package Folder>/cache/webviewCacheChromium/f_000016
  • <Package Folder>/cache/webviewCacheChromium/f_000017
  • <Package Folder>/cache/webviewCacheChromium/f_000014
  • <Package Folder>/cache/webviewCacheChromium/f_000015
  • <Package Folder>/cache/webviewCacheChromium/f_000012
  • <Package Folder>/cache/webviewCacheChromium/f_000013
  • <Package Folder>/cache/webviewCacheChromium/f_000010
  • <Package Folder>/cache/webviewCacheChromium/f_000011
  • <Package Folder>/cache/webviewCacheChromium/f_00002c
  • <Package Folder>/cache/webviewCacheChromium/f_00002b
  • <Package Folder>/cache/webviewCacheChromium/f_00002a
  • <Package Folder>/cache/webviewCacheChromium/f_00002f
  • <Package Folder>/cache/webviewCacheChromium/f_00002e
  • <Package Folder>/cache/webviewCacheChromium/f_00002d
  • <Package Folder>/cache/webviewCacheChromium/f_00000a
  • <Package Folder>/cache/webviewCacheChromium/f_00000c
  • <Package Folder>/cache/webviewCacheChromium/f_00000b
  • <Package Folder>/cache/webviewCacheChromium/f_00000e
  • <Package Folder>/cache/webviewCacheChromium/f_00000d
  • <Package Folder>/cache/webviewCacheChromium/f_00000f
  • <Package Folder>/cache/webviewCacheChromium/f_000036
  • <Package Folder>/cache/webviewCacheChromium/f_000037
  • <Package Folder>/cache/webviewCacheChromium/f_000038
  • <Package Folder>/cache/webviewCacheChromium/f_000039
  • <Package Folder>/cache/webviewCacheChromium/f_000029
  • <Package Folder>/cache/webviewCacheChromium/f_000009
  • <Package Folder>/cache/webviewCacheChromium/f_000008
  • <Package Folder>/cache/webviewCacheChromium/f_000021
  • <Package Folder>/cache/webviewCacheChromium/f_000020
  • <Package Folder>/cache/webviewCacheChromium/f_000027
  • <Package Folder>/cache/webviewCacheChromium/f_000026
  • <Package Folder>/cache/webviewCacheChromium/f_000025
  • <Package Folder>/cache/webviewCacheChromium/f_000024
  • <Package Folder>/cache/webviewCacheChromium/f_000001
  • <Package Folder>/cache/webviewCacheChromium/f_000003
  • <Package Folder>/cache/webviewCacheChromium/f_000002
  • <Package Folder>/cache/webviewCacheChromium/f_000005
  • <Package Folder>/cache/webviewCacheChromium/f_000004
  • <Package Folder>/cache/webviewCacheChromium/f_000007
  • <Package Folder>/cache/webviewCacheChromium/f_000006
  • <Package Folder>/cache/webviewCacheChromium/f_00003a
  • <Package Folder>/cache/webviewCacheChromium/f_00003b
  • <Package Folder>/cache/webviewCacheChromium/f_00003c
  • <Package Folder>/cache/webviewCacheChromium/f_00003d
  • <Package Folder>/cache/webviewCacheChromium/f_00003e
  • <Package Folder>/files/dex/plugin.jar
  • <Package Folder>/cache/webviewCacheChromium/f_00001f
  • <Package Folder>/cache/webviewCacheChromium/f_00001d
  • <Package Folder>/cache/webviewCacheChromium/f_00001e
  • <Package Folder>/cache/webviewCacheChromium/f_00001b
  • <Package Folder>/cache/webviewCacheChromium/f_00001c
  • <Package Folder>/cache/webviewCacheChromium/f_000022
  • <Package Folder>/cache/webviewCacheChromium/f_00001a
  • <Package Folder>/shared_prefs/setting.xml
  • <Package Folder>/shared_prefs/sp_haoapp.xml
  • <Package Folder>/cache/webviewCacheChromium/f_000032
  • <Package Folder>/databases/webview.db-journal
  • <Package Folder>/cache/webviewCacheChromium/index
  • <Package Folder>/databases/webviewCookiesChromium.db-journal
  • <Package Folder>/shared_prefs/WebViewSettings.xml
  • <Package Folder>/cache/webviewCacheChromium/f_000028
  • <Package Folder>/cache/webviewCacheChromium/data_3
  • <Package Folder>/cache/webviewCacheChromium/data_2
  • <Package Folder>/cache/webviewCacheChromium/data_1
  • <Package Folder>/cache/webviewCacheChromium/data_0
Другие:
Запускает следующие shell-скрипты:
  • <dexopt>
Может автоматически отправлять СМС-сообщения.

Рекомендации по лечению


Android

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке