Technical information
- Android.DownLoader.363.origin
- Android.RemoteCode.41.origin
- Android.Triada.440.origin
- Android.Xiny.20
- Android.Triada.440.origin
- Android.Xiny.20
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) z####.heyc####.net:80
- TCP(HTTP/1.1) 1####.171.140.78:80
- TCP(HTTP/1.1) ip.ch####.com:80
- TCP(HTTP/1.1) www.ye####.org:80
- TCP(HTTP/1.1) do.soi####.com:80
- TCP(HTTP/1.1) z.no####.net:80
- TCP(HTTP/1.1) sdk.91a####.com:80
- TCP(HTTP/1.1) m.nmg####.com:80
- TCP(HTTP/1.1) m1.laogeda####.com:80
- TCP(HTTP/1.1) v####.6####.com:80
- TCP(HTTP/1.1) cd.kw####.com:80
- TCP(HTTP/1.1) api.lubang####.com:80
- TCP(TLS/1.0) aliyuno####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) aliyuns####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) 2####.58.212.142:443
- TCP(TLS/1.0) hotfix####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) z.c####.com:443
- TCP(TLS/1.0) gm.mm####.com:443
- TCP(TLS/1.0) 1####.217.17.110:443
- TCP(TLS/1.0) c.c####.com:443
- aliyuno####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- api.lubang####.com
- c####.mm####.com
- c.c####.com
- cd.kw####.com
- do.soi####.com
- hotfix####.oss-cn-####.aliy####.com
- ip.ch####.com
- m.nmg####.com
- m.v####.com
- m1.laogeda####.com
- s22.c####.com
- sdk.91a####.com
- v####.6####.com
- w####.5####.com
- www.ye####.org
- z####.heyc####.net
- z.no####.net
- z1.c####.com
- api.lubang####.com/Public/jar/remote_1.5.5_991539933025.jar
- do.soi####.com/201809/wli.jar
- ip.ch####.com/getip.aspx
- m.nmg####.com/Cosplay/20180711/4118.html
- m.nmg####.com/JdcPAGsskmgA.php?o=####&i=####&s=####&ad=####
- m.nmg####.com/taiyangnennenyuan/15/9580.html
- m.nmg####.com/vW8xOCfTMAgY.php?o=####&i=####&s=####&ad=####
- m1.laogeda####.com/ads/admaster24.php?o=####
- m1.laogeda####.com/ads/admaster240.php?o=####
- m1.laogeda####.com/templets/tui/js/jquery-1.8.3.min.js
- sdk.91a####.com/static/20180829152952mod.enc
- api.lubang####.com/domain.php
- api.lubang####.com/ext_up.php?ac=####
- cd.kw####.com/c
- sdk.91a####.com/api/DeviceReport.ashx
- v####.6####.com/api/CheckModule.ashx
- v####.6####.com/api/GetModuleConfig.ashx
- www.ye####.org/c
- www.ye####.org/i?requestId=####&g=####
- z####.heyc####.net/getlist
- z####.heyc####.net/xlogin
- z.no####.net/m/a/t
- /data/anr/traces.txt
- /data/data/####/.__mob_ad_data.xml
- /data/data/####/.__mob_rmt.dat
- /data/data/####/.__mob_rmt.dat (deleted)
- /data/data/####/2P8CHn.jar
- /data/data/####/837437468-187665094
- /data/data/####/A2512mC6C5.jar
- /data/data/####/EOVDCASOu.jar
- /data/data/####/O4C3GzpaXv.jar
- /data/data/####/Ur4ZM5lV.jar
- /data/data/####/W_Key.xml
- /data/data/####/Y6SQmV7e.jar
- /data/data/####/YiAdv.db
- /data/data/####/YiAdv.db-journal
- /data/data/####/___xad__remote.dex
- /data/data/####/___xad__remote.jar
- /data/data/####/base.js
- /data/data/####/com.cwcp.xml
- /data/data/####/com.cwcp_preferences.xml
- /data/data/####/common.js
- /data/data/####/countClickIP.xml
- /data/data/####/cpro.baidu.com.js
- /data/data/####/cxh_0.xml
- /data/data/####/cxh_1.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/downloadswc
- /data/data/####/downloadswc-journal
- /data/data/####/dpi
- /data/data/####/f_000001
- /data/data/####/hid.db
- /data/data/####/index
- /data/data/####/m.baidu.com.js
- /data/data/####/m.chinebuy.com.js
- /data/data/####/max_pref.xml
- /data/data/####/mod.dec
- /data/data/####/mod.dex
- /data/data/####/mod.enc
- /data/data/####/phan.xml
- /data/data/####/st.xml
- /data/data/####/start.js
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.YiAds.log
- /data/media/####/.nid
- /data/media/####/5.1wli.jar.x
- /data/media/####/id.tmp
- /data/media/####/restime.dat
- /system/bin/sh
- cat /proc/cpuinfo
- cat /sys/class/android_usb/android0/idProduct
- cat /sys/class/android_usb/android0/idVendor
- getprop
- ls -l /dev
- ls -l /dev/block
- ls -l /dev/block/vold
- ls -l /dev/com.android.settings.daemon
- ls -l /dev/cpuctl
- ls -l /dev/cpuctl/apps
- ls -l /dev/cpuctl/apps/bg_non_interactive
- ls -l /dev/graphics
- ls -l /dev/input
- ls -l /dev/log
- ls -l /dev/pts
- ls -l /dev/snd
- ls -l /dev/socket
- ps
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding