Technical information
- Android.BackDoor.985
- Android.DownLoader.751.origin
- Android.Mobifun.15.origin
- Android.RemoteCode.178.origin
- Android.Xiny.2086
- Android.Xiny.263.origin
- Android.Xiny.73.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) o8zu####.gic.bgp.####.com:80
- TCP(HTTP/1.1) 13.2####.16.115:8081
- TCP(HTTP/1.1) dy.vs####.net:80
- TCP(HTTP/1.1) 1####.104.209.55:80
- TCP(HTTP/1.1) 1####.104.215.170:80
- TCP(HTTP/1.1) l.a####.com:80
- TCP(HTTP/1.1) www.okyes####.com:8081
- TCP(HTTP/1.1) dw.vs####.net:80
- TCP(HTTP/1.1) bg1.haiqi####.top:8080
- TCP(HTTP/1.1) www.koapk####.com:8081
- TCP(TLS/1.0) api.s####.1####.com:443
- TCP(TLS/1.0) h####.b####.com:443
- api.unm####.u17888####.com
- bg1.haiqi####.top
- dw.vs####.net
- dy.vs####.net
- ggg.koapk####.com
- h####.b####.com
- l.a####.com
- o8zu####.gic.bgp.####.com
- www.koapk####.com
- www.okyes####.com
- bg1.haiqi####.top:8080/ads/getJarVersion/hyd18/24/cn
- dw.vs####.net/static/jar/2018-09-13/jar_88bde3ae-4396-4285-8e4f-8b5ce9dc...
- o8zu####.gic.bgp.####.com/rest/path_hw_hyd09_update5.dat
- 13.2####.16.115:8081/sm/sr/sdl/in
- dy.vs####.net/dynamic/initNew.do
- dy.vs####.net/dynamic/jarDownBack.do
- dy.vs####.net/dynamic/jarInit.do
- dy.vs####.net/dynamic/updateCheck.do
- l.a####.com/l.php
- www.koapk####.com:8081/sm/sr/ku/ky
- www.koapk####.com:8081/sm/sr/rt/ry
- www.okyes####.com:8081/sdk/nsd.action?b=####
- /data/data/####/.do.dex
- /data/data/####/.do.jar
- /data/data/####/118080700001615500332807feb876131139c6d6402818e...sp.xml
- /data/data/####/20160121.xml
- /data/data/####/201804101550.apk
- /data/data/####/201804101550.dex
- /data/data/####/3323003.dex
- /data/data/####/3323003.jar
- /data/data/####/3323003.ttf
- /data/data/####/36fa7ea2f07d4134bb42055f3f3902d8
- /data/data/####/81681177.apk
- /data/data/####/81681177.dex
- /data/data/####/DhSdkTool100031.xml
- /data/data/####/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- /data/data/####/VirtualAPK_Settings.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1542050965930
- /data/data/####/ag.xml
- /data/data/####/ag.xml.bak
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/base.apk
- /data/data/####/base.dex (deleted)
- /data/data/####/bdownloaders.db
- /data/data/####/bdownloaders.db-journal
- /data/data/####/c201804101550.apk
- /data/data/####/env201811092250.data
- /data/data/####/external.apk
- /data/data/####/external.dex
- /data/data/####/external.so
- /data/data/####/external_dex.apk
- /data/data/####/external_dex.dex
- /data/data/####/external_dex.so
- /data/data/####/jar_88bde3ae-4396-4285-8e4f-8b5ce9dcf758.dex
- /data/data/####/libcuid.so
- /data/data/####/libjp.oaoz.cm.wom.wa.so
- /data/data/####/ljtq.xml
- /data/data/####/loa.xml
- /data/data/####/m2018071010.apk
- /data/data/####/m2018071010.dex
- /data/data/####/mid.dex
- /data/data/####/moduleinfos
- /data/data/####/ngocl
- /data/data/####/odshoy
- /data/data/####/path_hw_hyd09_update5.temp (deleted)
- /data/data/####/s2018071010.apk
- /data/data/####/s2018071010.dex
- /data/data/####/settingsLog.xml
- /data/data/####/temp.zip (deleted)
- /data/data/####/u3kmid.db
- /data/data/####/u3kmid.db-journal
- /data/data/####/v71.xml
- /data/data/####/ver.ini.xml
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/.timestamp
- /data/media/####/jar_88bde3ae-4396-4285-8e4f-8b5ce9dcf758.np
- /data/media/####/sub_imei.txt
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- app_process /system/bin com.android.commands.pm.Pm path <Package>
- awk {print $9}
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- grep 2286
- logcat -d -v time
- md5 /data/app/<Package>-1.apk
- ps
- sh
- jp.oaoz.cm.wom
- ngocl
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DESede