Technical information
- Android.Xiny.232.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 2####.177.13.68:8288
- TCP(HTTP/1.1) newsta####.com:80
- TCP(HTTP/1.1) i####.st####.startap####.com:80
- TCP(HTTP/1.1) s####.brv####.com:80
- TCP(HTTP/1.1) www.zfr####.com:80
- TCP(HTTP/1.1) poket####.com:80
- TCP(HTTP/1.1) us-scp####.ali####.com:80
- TCP(HTTP/1.1) www.mmmmmm####.com:80
- TCP(HTTP/1.1) a####.app####.com:80
- TCP(HTTP/1.1) www.linkonc####.com:80
- TCP(HTTP/1.1) pop####.net:80
- TCP(HTTP/1.1) star####.edges####.net:80
- TCP(HTTP/1.1) trafy####.com:80
- TCP(HTTP/1.1) www.cu####.com:80
- TCP(HTTP/1.1) www.admobim####.com:80
- TCP(HTTP/1.1) sp.pop####.net:80
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) dsa.startap####.edg####.net:443
- TCP(TLS/1.0) ret####.ta####.com.####.com:443
- TCP(TLS/1.0) gw.al####.com:443
- TCP(TLS/1.0) m.ali####.com:443
- TCP(TLS/1.0) p####.mm####.com:443
- TCP(TLS/1.0) g.al####.com:443
- TCP(TLS/1.0) us-scp####.ali####.com:443
- TCP(TLS/1.0) pcooki####.ta####.com:443
- TCP(TLS/1.0) gum.cr####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) date####.com:443
- TCP(TLS/1.0) cm.g.doublec####.net:443
- TCP(TLS/1.0) gj.mm####.com:443
- TCP(TLS/1.0) f####.google####.com:443
- TCP(TLS/1.0) va.ec.startap####.com:443
- TCP(TLS/1.0) i####.st####.startap####.com:443
- TCP(TLS/1.0) wild####.al####.com.####.net:443
- a####.app####.com
- as####.al####.com
- c####.ali####.com
- c####.ali####.com
- c####.startap####.com
- cm.g.doublec####.net
- date####.com
- dts.startap####.com
- f####.google####.com
- f####.gst####.com
- g.al####.com
- gj.mm####.com
- gum.cr####.com
- gw.al####.com
- i####.st####.startap####.com
- i####.startap####.com
- im####.startap####.com
- img.al####.com
- imp.startap####.com
- m.ali####.com
- mt####.go####.com
- newsta####.com
- p####.mm####.com
- pco####.ali####.com
- poket####.com
- pop####.net
- req.startap####.com
- ret####.ta####.com
- s####.al####.com
- s####.al####.com
- s####.brv####.com
- sp.pop####.net
- ssl.google-####.com
- trafy####.com
- u.al####.com
- www.admobim####.com
- www.cu####.com
- www.linkonc####.com
- www.mmmmmm####.com
- www.startap####.com
- www.zfr####.com
- a####.app####.com/aff_c?offer_id=####&aff_id=####&aff_unique4=####&aff_s...
- a####.app####.com/aff_r?offer_id=58476&aff_id=25850&url=market://details...
- i####.st####.startap####.com/InApp/resources/info_ex_l.png
- i####.st####.startap####.com/InApp/resources/info_ex_s.png
- i####.st####.startap####.com/InApp/resources/info_l.png
- i####.st####.startap####.com/InApp/resources/info_s.png
- newsta####.com/?r=####&zoneid=####&pbk3=####&empty=####&var=####&ymid=##...
- newsta####.com/afu.php?zoneid=####&var=####&ymid=####
- poket####.com/d/23304208e4c0b615b67?sub=####
- poket####.com/d/23304208e4c0b615b67?sub=####&code=####
- poket####.com/gw?sub=####&source=####&url=####&vId=####&hash=####&ete=####
- poket####.com/gw?sub=1ff8e3304cb7408ebf846623088d489a&source=Unknown&url...
- pop####.net/world/go/118844/282334
- s####.brv####.com/click/s/?id=####&aff_click_id=####&aff_sub_id=####&aff...
- sp.pop####.net/go/118844/282334
- sp.pop####.net/sgo/ad?p=####&w=####&t=####&r=####&vw=####&vh=####
- star####.edges####.net/1.3/getadsmetadata?publisherId=####&productId=###...
- star####.edges####.net/1.3/trackdownload?publisherId=####&productId=####...
- trafy####.com/jump/next.php?stamat=####&cbrandom=####&cbtitle=####&cbifr...
- us-scp####.ali####.com/rd/kdopppr6?pid=####&tp1=####&cv=####&cn=####
- www.cu####.com/20180408113230.d_201804081131.zip
- www.linkonc####.com/jump/next.php?r=####&sub1=####
- www.admobim####.com/surl/api2_reg.action?ecy=####
- www.mmmmmm####.com/osp/oaen_reg.action
- www.zfr####.com/up.do
- www.zfr####.com/up.do?enc=####
- /data/data/####/ActivatePreUtil.xml
- /data/data/####/BusinessPreUtil.xml
- /data/data/####/D811hunter_config.xml
- /data/data/####/D811other_config.xml
- /data/data/####/D811serv_config.xml
- /data/data/####/D811serv_config.xml.bak
- /data/data/####/D811sp_config.xml
- /data/data/####/D811upgrade_config.xml
- /data/data/####/LoginPreUtil.xml
- /data/data/####/OfferPreUtil.xml
- /data/data/####/Roboto-Regular.ttf
- /data/data/####/close_button.png
- /data/data/####/com.startapp.android.publish.xml
- /data/data/####/d.zip
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/device_info.xml
- /data/data/####/drawable-hdpi.zip
- /data/data/####/drawable.zip
- /data/data/####/dtemp.apk
- /data/data/####/empty_star.png
- /data/data/####/f.zip
- /data/data/####/f_000001
- /data/data/####/filename_return_ad
- /data/data/####/filename_return_ad_html
- /data/data/####/filled_star.png
- /data/data/####/half_star.png
- /data/data/####/index
- /data/data/####/info_ex_l.png
- /data/data/####/info_ex_s.png
- /data/data/####/info_l.png
- /data/data/####/info_s.png
- /data/data/####/loading.html
- /data/data/####/logo.png
- /data/data/####/m_cfg.xml
- /data/data/####/my.db
- /data/data/####/my.db-journal
- /data/data/####/ob.zip
- /data/data/####/resources.zip
- /data/data/####/t_ini.xml
- /data/data/####/tab_side.png
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/sp
- desede-ECB-PKCS5Padding
- desede-ECB-PKCS5Padding