Technical information
- Android.SmsSpy.677.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) q####.qi1####.com:14302
- TCP(HTTP/1.1) q####.qi1####.com:15302
- TCP(HTTP/1.1) zxc####.wann####.com:8200
- TCP(HTTP/1.1) z####.wann####.com:9500
- TCP(HTTP/1.1) hangzho####.oss-cn-####.aliy####.com:80
- TCP(HTTP/1.1) z####.wann####.com:9600
- a####.u####.com
- hangzho####.oss-cn-####.aliy####.com
- q####.qi1####.com
- z####.wann####.com
- zxc####.wann####.com
- hangzho####.oss-cn-####.aliy####.com/qiyi/client/sdk/so/libzxvps.so
- a####.u####.com/app_logs
- q####.qi1####.com:14302/sdk_login?t=####
- q####.qi1####.com:15302/sdk_login?t=####
- z####.wann####.com:9500/
- z####.wann####.com:9600/
- zxc####.wann####.com:8200/qy/acceptSdkFileReq
- zxc####.wann####.com:8200/qy/getOnlineLoginHttpReq
- <Package Folder>/2075.dex
- <Package Folder>/2178.dex
- <Package Folder>/2260.dex
- <Package Folder>/2341.dex
- <Package Folder>/2425.dex
- <Package Folder>/cache/2075.dex (deleted)
- <Package Folder>/cache/2178.dex (deleted)
- <Package Folder>/cache/2260.dex (deleted)
- <Package Folder>/cache/2341.dex (deleted)
- <Package Folder>/cache/2425.dex (deleted)
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/qy_db_newuser-journal
- <Package Folder>/databases/qy_db_pay-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/####/libmiguED.so
- <Package Folder>/files/.imprint
- <Package Folder>/files/MiguPay.Sdk30.Lib_12003033_2ef7e474df934...02.cod
- <Package Folder>/files/MiguPay.Sdk30.Lib_12003033_2ef7e474df934...02.dat
- <Package Folder>/files/PaySDK-1.2.13.16-UR_yx.jar
- <Package Folder>/files/PaySDK-1.2.13.16-UR_yx.zip
- <Package Folder>/files/exid.dat
- <Package Folder>/files/getprop
- <Package Folder>/files/libmgRun_04.22.09_01.so
- <Package Folder>/files/mgAS.dat
- <Package Folder>/files/mgSS.dat
- <Package Folder>/files/mgid.dat
- <Package Folder>/files/pid
- <Package Folder>/files/process.jar
- <Package Folder>/files/process.zip
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/libzxvps/####/tmp_so
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml.bak (deleted)
- <Package Folder>/shared_prefs/unknown.xml
- <SD-Card>/.Systemp/.cfg
- <SD-Card>/.Systemp/device
- /system/bin/sh
- app_process /system/bin com.android.commands.am.Am startservice --user 0 -n <Package>/com.tencent.mm.f.s.a
- cat /sys/block/mmcblk0/device/cid
- chmod 777 <Package Folder>/lib/process
- dd if=<Package Folder>/lib/libprocess.so of=<Package Folder>/lib/process
- getprop
- ls -l /sbin/su
- ls -l /system/bin/su
- ls -l /system/sbin/su
- ls -l /system/xbin/su
- ls -l /vendor/bin/su
- ps | grep <Package>
- sh
- cocos2dcpp
- libtools
- libzxvps
- megjb
- process