Техническая информация
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ci.tv.c####.cn:80
- TCP(HTTP/1.1) bj.bc####.com:80
- TCP(HTTP/1.1) cd.md.c####.####.net:80
- TCP(TLS/1.0) 2####.58.211.110:443
- cd.md.c####.cn
- ci.tv.c####.cn
- v####.bj.bc####.com
- bj.bc####.com/yc183.txt
- cd.md.c####.####.net/offer/20171206/201712061752304.png
- cd.md.c####.####.net/offer/20171206/201712061752829.png
- cd.md.c####.####.net/offer/20181109/201811091511627.apk
- cd.md.c####.####.net/offer/20181204/201812041054103.png
- cd.md.c####.####.net/offer/20181204/201812041054759.png
- cd.md.c####.####.net/offer/20190403/201904031138952.png
- cd.md.c####.####.net/offer/20190403/201904031407486.png
- cd.md.c####.####.net/offer/20190430/201904301011837.apk
- ci.tv.c####.cn/ysfrrekcolsppa/22c3/icb
- ci.tv.c####.cn/ysfrrekcolsppa/22c3/rcb
- ci.tv.c####.cn/ysfrrekcolsppa/22c3/tcb
- ci.tv.c####.cn/ysfrrekcolsppa/22c3/ucb
- ci.tv.c####.cn/ysfrrekcolsppa/723a/ecb
- ci.tv.c####.cn/ysfrrekcolsppa/723a/pcb
- ci.tv.c####.cn/ysfrrekcolsppa/723a/qcb
- ci.tv.c####.cn/ysfrrekcolsppa/723a/scb
- ci.tv.c####.cn/ysfrrekcolsppa/723a/wcb
- /data/data/####/ConfigInfo.xml
- /data/data/####/DualSimConfigInfo.xml
- /data/data/####/FULL7100_1264_1539595124_fst.dat
- /data/data/####/MultiDex.lock
- /data/data/####/ShellConfig.dat
- /data/data/####/TMSPropertiesAntitheftProperty.xml
- /data/data/####/TMSPropertiesNetInterfaceManager.xml
- /data/data/####/_mhappslockerrfsyqs.xml
- /data/data/####/_misappslockerrfsyw.xml
- /data/data/####/_mjtappslockerrfsyp.xml
- /data/data/####/_msappslockerrfsy_r.xml
- /data/data/####/bugly_db_
- /data/data/####/bugly_db_-journal
- /data/data/####/com.enlightment.appslocker.m.xml
- /data/data/####/com.enlightment.appslocker.o.xml
- /data/data/####/conch_cache.xml
- /data/data/####/db_kg_info.xml
- /data/data/####/dbconfig.xml
- /data/data/####/kd
- /data/data/####/local_crash_lock
- /data/data/####/meriExt.db-journal
- /data/data/####/meri_config.xml
- /data/data/####/multidex.version.xml
- /data/data/####/mutil_process
- /data/data/####/native_record_lock
- /data/data/####/p_lock
- /data/data/####/qqsecure.db
- /data/data/####/qqsecure.db-journal
- /data/data/####/rqd.xml
- /data/data/####/sk.xml
- /data/data/####/skyesys_conf.xml
- /data/data/####/tmp-com.tencent.qqpimsecure-1.apk.classes855746816.zip
- /data/data/####/vgbhnghj.nmju.cvgrf.jar
- /data/data/####/x_rb_j_al_ct_2.dat
- /data/data/####/xdm
- /data/data/####/zscom.db
- /data/data/####/zscom.db-journal
- /data/media/####/0367b3725be6e
- /data/media/####/6cf6a2abf10879c08285a274e72327e1.tmp
- /data/media/####/7418d3befd24b
- /data/media/####/7fc000b614430
- /data/media/####/8950f1cae1554
- /data/media/####/b076ac23900b2
- /data/media/####/db7bc1d38c8c9
- /data/media/####/filesafe_db.sqlite-journal
- /data/media/####/pr.p
- chmod 0755 /data/data/com.tencent.qqpimsecure/applib/kd
- chmod 0771 /data/data/com.tencent.qqpimsecure/applib
- chmod 777 /storage/emulated/0/download/omen//6cf6a2abf10879c08285a274e72327e1.tmp
- grep xdm
- pgrep xdm
- pidof xdm
- ps
- ps xdm
- sh
- sh -c ps | grep xdm
- DES
- DES