Technical information
- Android.Loki.15.origin
- Android.HiddenAds.102.origin
- Android.Backdoor.336.origin
- Android.MulDrop.84.origin
- Android.Backdoor.336.origin
- t####.####.com
- theway####.club
- g####.####.com
- buzzade####.com
- p####.####.com
- ip####.io
- mycampt####.com
- d####.####.com
- e####.####.com
- m####.####.com
- 3####.####.gdn
- a####.####.com
- mycampt####.com/path/lp.php?trvid=####&trvx=####&extid=####&zoneid=####&...
- a####.####.com/c/1e1f1a6121f2d5af
- buzzade####.com/a/display.php?r=####&treqn=####&runauction=####&crr=####...
- a####.####.com/pull/top_offer?gaid=####&id=####
- ip####.io/json
- d####.####.com/thinking/group/rtt_0525_666.apk
- buzzade####.com/a/display.php?stamat=####
- e####.####.com/thinking/group/exp
- buzzade####.com/a/display.php?r=####
- 3####.####.gdn/?v=####&KW=####&s1=####
- theway####.club/afa98b0a-a104-416c-9f1d-ce11ef427508/index.html?tracker=...
- p####.####.com/myservercb/api/1800
- m####.####.com/smartview/api/920
- t####.####.com/ggview/rsddateindex
- g####.####.com/pilot/api/300102
- p####.####.com/oversea_adjust_and_download_write_redis/notify/download/app
- m####.####.com/errorview/api/601
- a####.####.com/app_logs
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/files/.snow/.ir
- <Package Folder>/files/.snow/.dsmt.apk
- <Package Folder>/files/IQPFsmOUChmkwhbDdynamicloader.jar
- <Package Folder>/files/exid.dat
- <Package Folder>/files/.imprint
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/files/.snow/busybox
- <Package Folder>/files/.snow/exp
- <Package Folder>/files/.snow/.dico.apk
- <Package Folder>/files/hello/hello.dex
- <Package Folder>/files/.snow/.zip/mkdevsh
- <Package Folder>/files/.snow/.client
- <Package Folder>/files/.snow/.catr.apk
- <Package Folder>/files/.snow/.uks
- <Package Folder>/files/.snow/.dg
- <Package Folder>/files/.snow/checkFile13
- <Package Folder>/files/dbcbd7361f0fdf0d3db91bd4710f63ca.data
- <Package Folder>/files/.umeng/exchangeIdentity.json
- <Package Folder>/files/.snow/checkFile0
- <Package Folder>/files/source.apk
- <Package Folder>/files/.snow/.ukd
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/files/.snow/.dlsb.apk
- <Package Folder>/files/.snow/.uok
- <Package Folder>/files/wrhlrci/libRppEcpLJpRVcTveVlala.so
- <Package Folder>/files/wrhlrci/libIQPFsmOUChmkwhbDdynamicloader.so
- <Package Folder>/files/hello.apk
- <Package Folder>/cache/webviewCacheChromium/index
- <Package Folder>/files/.snow/myshell
- <Package Folder>/files/.work/postroot.sh
- <Package Folder>/files/.default/dbcbd7361f0fdf0d3db91bd4710f63ca.data.temp
- <Package Folder>/shared_prefs/share_data.xml
- <Package Folder>/files/wrhlrci/libhMEnYimzyYJbxvhuzxc.so
- <Package Folder>/files/.snow/.service
- <Package Folder>/databases/ua.db
- <Package Folder>/files/.snow/.dlme.apk
- <Package Folder>/files/.snow/.zip/rsh
- <Package Folder>/files/.snow/a.xml
- <Package Folder>/files/wrhlrci/libKueWuLGqMMnRgVVgbt.so
- <Package Folder>/files/.default/.p.apk
- <Package Folder>/files/.snow/supolicy
- <Package Folder>/files/.snow/b.png
- <Package Folder>/files/.snow/.zip/r1
- <Package Folder>/files/.snow/.zip/r4
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/files/.snow/.zip/r3
- <Package Folder>/files/.snow/.zip/r2
- <Package Folder>/databases/webviewCookiesChromium.db-journal
- <Package Folder>/files/libswbqgonYxEgdlSXzbootstrap.so
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/files/.snow/.center.tapk
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/files/.snow/.zip/rt8
- <Package Folder>/shared_prefs/<Package>_preferences.xml.bak
- <Package Folder>/cache/webviewCacheChromium/data_3
- <Package Folder>/cache/webviewCacheChromium/data_2
- <Package Folder>/cache/webviewCacheChromium/data_1
- <Package Folder>/cache/webviewCacheChromium/data_0
- chmod 777 <Package Folder>/files/.snow/supolicy
- chown 0:0 /system/bin/debuggerd
- chmod 777 <Package Folder>/files/.snow/.zip/rsh
- chown 0:0 /system/app/Lowerp.apk
- chown 0:0 /system/app/Linkcai.apk
- chmod 777 <Package Folder>/files/.snow/.zip/
- app_process /system/bin com.android.commands.pm.Pm disable com.kai.kia.dou.ye.cai
- mount -o remount,rw /system
- app_process /system/bin com.android.commands.pm.Pm enable com.num.hum.kong.ui.op.er
- chmod 777 <Package Folder>/files/.snow/b.png
- chown 0:0 /system/xbin/.cp
- chown 0:0 /data/local/tmp/.catr.apk
- app_process /system/bin com.android.commands.pm.Pm disable com.setting.dysdtool
- chown 0:0 /system/app/LocalFacebook.apk
- app_process /system/bin com.android.commands.pm.Pm enable com.android.upon.hash
- app_process /system/bin com.android.commands.pm.Pm enable com.android.tools.receiver
- app_process /system/bin com.android.commands.pm.Pm disable com.num.hum.kong.ui.op.er
- mount -ro remount ro /system
- chmod 777 <Package Folder>/files/.snow/a.xml
- chown 0:0 /data/local/tmp/busybox
- chown 0:0 /system/lib/libsoon.so
- mount -wo remount rw /system
- chmod 777 <Package Folder>/files/.snow/.ukd
- chmod 777 <Package Folder>/files/.snow/.uok
- chmod 777 <Package Folder>/files/.snow/.dg
- chmod 777 <Package Folder>/files/.snow/.catr.apk
- app_process /system/bin com.android.commands.pm.Pm disable com.android.tools.receiver
- app_process /system/bin com.android.commands.pm.Pm disable com.wo.ai.girl.huy.wp
- app_process /system/bin com.android.commands.pm.Pm disable com.android.upon.hash
- chown 0:0 /system/xbin/.ci.pm
- chmod 777 <Package Folder>/files/.snow/.uks
- chmod 777 <Package Folder>/files/.snow/.zip/r3
- chmod 777 <Package Folder>/files/.snow/.zip/rt8
- chown 0:0 /system/app/oneshs.apk
- df /system
- chown 0:0 /system/xbin/supolicy
- chmod 777 <Package Folder>/files/.snow/.service
- chmod 777 <Package Folder>/files/.work/postroot.sh
- chown 0.0 /data/local/tmp/busybox
- chmod 777 <Package Folder>/files/.snow/.zip/r1
- /data/data/####/files/.snow/exp /data/data/####/files/.snow /data/data/####/files/.work
- chmod 777 <Package Folder>/files/.snow/.zip/r2
- chmod 777 <Package Folder>/files/.snow/.client
- chmod 777 <Package Folder>/files/.snow/.zip/r4
- mount -o remount rw /system
- mount -o remount ro /system
- chmod 777 <Package Folder>/files/.snow/busybox
- chmod 777 <Package Folder>/files/.snow/.zip/mkdevsh
- mount -wo remount,rw /system
- mount -o remount,ro /system
- chmod 777 <Package Folder>/files/.snow/myshell
- chmod 777 <Package Folder>/files/.snow/exp
- chown 0:0 /system/app/RomterFacebook.apk
- app_process /system/bin com.android.commands.pm.Pm enable com.wo.ai.girl.huy.wp
- chown 0:0 /system/app/Dingps.apk
- chown 0:0 /system/xbin/.rainin
- app_process /system/bin com.android.commands.pm.Pm enable com.kai.kia.dou.ye.cai
- mount -ro remount,ro /system
- app_process /system/bin com.android.commands.pm.Pm enable com.setting.dysdtool
- chown 0:0 /system/bin/.author
- sh
- chown 0.0 /system/bin/debuggerd
- chown 0.0 /system/xbin/.ci.pm
- <error:2>
- /system/bin/sh ./mkdevsh
- <dexopt>