Technical information
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) li.ma.ap####.net:80
- TCP(HTTP/1.1) h####.b####.com:80
- h####.b####.com
- li.ma.ap####.net
- h####.b####.com/app.gif
- li.ma.ap####.net/11kdnylkagnohg/97a7/p12
- li.ma.ap####.net/11kdnylkagnohg/97a7/q12
- li.ma.ap####.net/11kdnylkagnohg/97a7/s12
- li.ma.ap####.net/11kdnylkagnohg/97a7/t12
- li.ma.ap####.net/11kdnylkagnohg/97a7/w12
- <Package Folder>/files/__local_last_session.json
- <Package Folder>/files/__local_stat_cache.json
- <Package Folder>/files/package com.ggevbf.cxbwegt.dex (deleted)
- <Package Folder>/files/package com.ggevbf.cxbwegt.jar
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml
- <Package Folder>/shared_prefs/_mgghongaklyndk_r.xml
- <SD-Card>/baidu/.cuid
- AES-CBC-PKCS5Padding
- DES
- DES