I ran both Avast and Malwarebytes separately (delete one and install the other) and both detected nothing malicious.
Ran Airpush Detector and Ad Detect plugin, no helpful results.
This happened after downloading Wechat and some automatic updates of a few apps. I have since deleted Wechat, but the problem persists. The few apps that were automatically updated at that time were: Facebook, Foxit,Gmail, Google Drive,Google+,Kik,Maps,FB messenger,Twitter,Whatsapp Messenger, Twidere,Swiftkey keyboard, Mini Warriors. I have not tried deleting them yet, but it seems to me that they are pretty legit apps.
Some examples of the adware in action:
Taking over my lockscreen with this annoying blue lockscreen:
Occasionally the adware's lockscreen will contain ads:
Pop up ad:
I've also noticed that the pop up ad would occasionally be opened from the default Android web browser, as the web browser will be opened with an "about:blank" page with the pop up ad in front. A browser hijack as well ?
I am trying to avoid resetting the phone, hopefully there are possible ways to troubleshoot this adware
Phone: INO 3
Android version: Android Lollipop 5.1
Root status: Not Rooted