Technical information
- Android.Backdoor.613.origin
- Android.Triada.258.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) www.huangda####.com:80
- TCP(HTTP/1.1) sm####.hej####.com:80
- TCP(HTTP/1.1) 1####.27.154.102:1234
- TCP(HTTP/1.1) s####.hzzr####.com:80
- TCP(HTTP/1.1) gd.a.s####.com:80
- TCP(HTTP/1.1) 1####.129.132.111:8001
- c####.api.zhifa####.net
- i####.api.zhifa####.net
- mt####.go####.com
- pv.s####.com
- re####.api.zhifa####.net
- s####.hzzr####.com
- sdk.api.zhifa####.net
- sdk.hzzr####.com
- sm####.hej####.com
- v####.api.eeric####.com
- www.huangda####.com
- x####.d####.top
- gd.a.s####.com/cityjson?ie=####
- s####.hzzr####.com/SdkNotity.aspx?i=####&v=####&c=####&av=####&dm=####&t...
- s####.hzzr####.com/getconfig.aspx
- s####.hzzr####.com/getjar.aspx?pno=####
- s####.hzzr####.com/versioncheck.aspx
- sm####.hej####.com/getAd.php?apiKey=####&imsi=####&mobile=####&apiKey=##...
- sm####.hej####.com/getError.php?echoName=####&error=####&hKey=####&OS=##...
- sm####.hej####.com/getError.php?echoName=####&error=j####&hKey=####&OS=#...
- sm####.hej####.com/getMobile.php?apiKey=####&imsi=####&n####&n####
- sm####.hej####.com/getSP135.php?echoName=####&appName=####&productName=#...
- www.huangda####.com/active!activeLog.action?provider=####&clickId=####&m...
- www.huangda####.com/payres!getResource.action?resTypes=####&appid=####&c...
- www.huangda####.com/vip.php
- www.huangda####.com/shop/shop_upload_log
- /data/data/####/.fb
- /data/data/####/.fb-journal
- /data/data/####/SP_REPLACE_CLASSLOADER_CLASS_NAME.xml
- /data/data/####/config50240.xml
- /data/data/####/jy_hot_sdk_config.xml
- /data/data/####/new_md.jar
- /data/data/####/onib_clz.jar
- /data/data/####/pretw.xml
- /data/data/####/pz_sharedpre_cmreaderlogininfo.xml
- /data/data/####/webview.db-journal
- /data/data/####/wochi_v4.db-journal
- /data/media/####/WyyyCrashLog_20200904222327_4723.log
- /data/media/####/WyyyCrashLog_20200904222333_5052.log
- /data/media/####/qshp_3003_2296.zip
- /data/media/####/rxoyh.apecw675.pjojeo634_250026699187743_20200904_pay.log
- /data/media/####/tw
- cat /sys/block/mmcblk0/device/cid
- getprop apps.customerservice.device
- cocos2dcpp
- DES-CBC-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- DES