Technical information
- Android.SpyMax.37.origin
- UDP(DNS) <Google DNS>
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) sqs.ap-nort####.amazo####.com:443
- TCP(TLS/1.0) gmscomp####.google####.com:443
- TCP(TLS/1.0) rr6---s####.g####.com:443
- TCP(TLS/1.0) 1####.194.221.101:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.2) and####.a####.go####.com:443
- TCP(TLS/1.2) gmscomp####.google####.com:443
- UDP gmscomp####.google####.com:443
- and####.a####.go####.com
- and####.google####.com
- connect####.gst####.com
- gmscomp####.google####.com
- m####.go####.com
- p####.google####.com
- rr6---s####.g####.com
- rr9---s####.g####.com
- sqs.ap-nort####.amazo####.com
- www.google####.com
- sqs.ap-nort####.amazo####.com:443/664144478517/report_queue_svc
- /data/data/####/.id_reads_predictions.meta
- /data/data/####/0G82YVYKVHZDJJLP02SBXBPOTWSST02.dex (deleted)
- /data/data/####/0G82YVYKVHZDJJLP02SBXBPOTWSST02.dex.flock (deleted)
- /data/data/####/0G82YVYKVHZDJJLP02SBXBPOTWSST02.zip
- /data/data/####/150035
- /data/data/####/19
- /data/data/####/2024-04-30AM071155.rt
- /data/data/####/2024-04-30AM071155.str
- /data/data/####/2024-04-30AM071200.so.rt
- /data/data/####/2024-04-30AM071216.rt
- /data/data/####/2024-04-30AM071216.str
- /data/data/####/2024-04-30AM071225.so.rt
- /data/data/####/2024-04-30AM071233.so.rt
- /data/data/####/2024-04-30AM071238.so.rt
- /data/data/####/2024-04-30AM071242.so.rt
- /data/data/####/2024-04-30AM071247.so.rt
- /data/data/####/2024-04-30AM071251.so.rt
- /data/data/####/2024-04-30AM071255.so.rt
- /data/data/####/75CVXG5D3BYEBPPY8Z8TCG49W9VQ0AT.dex (deleted)
- /data/data/####/75CVXG5D3BYEBPPY8Z8TCG49W9VQ0AT.dex.flock (deleted)
- /data/data/####/75CVXG5D3BYEBPPY8Z8TCG49W9VQ0AT.zip
- /data/data/####/CPL933O3XGQOYO0AQ1FPKEGELYD55UD.dex (deleted)
- /data/data/####/CPL933O3XGQOYO0AQ1FPKEGELYD55UD.dex.flock (deleted)
- /data/data/####/CPL933O3XGQOYO0AQ1FPKEGELYD55UD.zip
- /data/data/####/GUDG29QQOKNZG6EF9C5IT1T6HAO31NI.dex (deleted)
- /data/data/####/GUDG29QQOKNZG6EF9C5IT1T6HAO31NI.dex.flock (deleted)
- /data/data/####/GUDG29QQOKNZG6EF9C5IT1T6HAO31NI.zip
- /data/data/####/N1K39S5LBZ2Q3HDY4V81KWK10DRUWYL.dex (deleted)
- /data/data/####/N1K39S5LBZ2Q3HDY4V81KWK10DRUWYL.dex.flock (deleted)
- /data/data/####/N1K39S5LBZ2Q3HDY4V81KWK10DRUWYL.zip
- /data/data/####/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.dex
- /data/data/####/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.dex (deleted)
- /data/data/####/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.dex.flock (deleted)
- /data/data/####/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.zip
- /data/data/####/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.dex (deleted)
- /data/data/####/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.dex.flock (deleted)
- /data/data/####/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.zip
- /data/data/####/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.dex (deleted)
- /data/data/####/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.dex.flock (deleted)
- /data/data/####/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.zip
- /data/data/####/VXNUXFAVB11SO5NFGADUVMAUBY3XC2S.dex (deleted)
- /data/data/####/VXNUXFAVB11SO5NFGADUVMAUBY3XC2S.dex.flock (deleted)
- /data/data/####/VXNUXFAVB11SO5NFGADUVMAUBY3XC2S.zip
- /data/data/####/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.dex (deleted)
- /data/data/####/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.dex.flock (deleted)
- /data/data/####/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.zip
- /data/data/####/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex
- /data/data/####/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex.flock (deleted)
- /data/data/####/empty_classes.dex
- /data/data/####/empty_classes.zip
- /data/data/####/id.reads.predictions.xml
- /data/data/####/id.reads.predictions.xml.bak (deleted)
- /data/data/####/id.reads.predictions_preferences.xml
- /data/data/####/lastReportSendTimeFile
- /data/data/####/proc_auxv
- /data/data/####/requestExit.ext
- /data/data/####/requestExit.ext (deleted)
- /data/data/####/sealed1.obk
- /data/data/####/sealeh.bdc
- /data/data/####/stat1
- /data/data/####/working
- /data/media/####/log-2024-04-30.txt
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/0G82YVYKVHZDJJLP02SBXBPOTWSST02.zip.cur.prof
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.zip.cur.prof
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.zip.cur.prof
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.zip.cur.prof
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.zip.cur.prof
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/0G82YVYKVHZDJJLP02SBXBPOTWSST02.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/0G82YVYKVHZDJJLP02SBXBPOTWSST02.vdex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/CPL933O3XGQOYO0AQ1FPKEGELYD55UD.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/CPL933O3XGQOYO0AQ1FPKEGELYD55UD.vdex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/GUDG29QQOKNZG6EF9C5IT1T6HAO31NI.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/P9LFRK31K28204MQ9VHWQOUHIXTP2PF.vdex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/PY2YC0LOMXN9VXD77USEXZ93MZUQENE.vdex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/U0YPS6HQIGGZ78EQFTW5AL1DUD6SZLJ.vdex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/VXNUXFAVB11SO5NFGADUVMAUBY3XC2S.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.odex
- chmod 777 /data/user/0/<Package>/app_payload_lib/<Package>_empty_classes/oat/arm/XZI1REV7D9809Z3G2X2ZA2EFEJPSUGN.vdex
- dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex --oat-file=/data/user/0/<Package>/cache/<Package>/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex --compiler-filter=verify-none --instruction-set=x86
- getprop ro.dalvik.vm.isa.arm
- getprop ro.dalvik.vm.isa.arm64
- sh -c dex2oat --dex-file=/data/user/0/<Package>/app_payload_lib/<Package>/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex --oat-file=/data/user/0/<Package>/cache/<Package>/YY23ACXNTLJY4OKED6ES45ZF298FT1KT.dex --compiler-filter=verify-none --instruction-set=x86
- libcovault-appsec