Technical information
- Android.Triada.236.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i####.api.qiazhiw####.cn:10003
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10002
- TCP(HTTP/1.1) www.palmfun####.cn:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10201
- TCP(HTTP/1.1) i####.cn.com:80
- TCP(HTTP/1.1) gz.bc####.com:80
- TCP(HTTP/1.1) wn.qiazhiw####.cn.####.net:80
- TCP(HTTP/1.1) gdv.a.s####.com:80
- TCP(HTTP/1.1) v####.api.eeric####.com:80
- TCP(HTTP/1.1) jx.ha####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10101
- TCP(HTTP/1.1) 1####.77.209.125:8080
- TCP(HTTP/1.1) dev.pu####.com:80
- TCP(HTTP/1.1) 1####.159.131.193:10201
- TCP(HTTP/1.1) x####.ha####.com:80
- TCP(HTTP/1.1) 1####.27.154.102:1234
- TCP(HTTP/1.1) sm####.bingfe####.cn:80
- TCP(HTTP/1.1) p1.i####.cc:80
- TCP(HTTP/1.1) 1####.129.132.111:8001
- TCP(HTTP/1.1) t####.cn:80
- TCP(HTTP/1.1) s####.ha####.com:9999
- TCP(HTTP/1.1) sdk.qipa####.cn:8088
- TCP(HTTP/1.1) pg.x####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10001
- TCP(HTTP/1.1) jx####.ha####.com:9999
- TCP(TLS/1.0) ga.x####.com:443
- 6####.cn
- a.xunfa####.cn
- api.fujico####.com
- b.xunfa####.cn
- c####.api.qiazhiw####.cn
- dev.pu####.com
- ga####.gz.bc####.com
- ga.hi####.com
- ga.x####.com
- i####.api.qiazhiw####.cn
- i####.api.qiazhiw####.cn
- i####.cn.com
- jx####.ha####.com
- jx.ha####.com
- l####.i####.cc
- p1.i####.cc
- pg.x####.com
- pv.s####.com
- re####.api.qiazhiw####.cn
- s####.ha####.com
- sa.iosj####.com
- sdk.api.qiazhiw####.cn
- sdk.qipa####.cn
- sm####.bingfe####.cn
- t####.cn
- v####.api.eeric####.com
- wn.qiazhiw####.cn
- www.palmfun####.cn
- x####.ha####.com
- dev.pu####.com/mvc/lgn
- gdv.a.s####.com/cityjson?ie=####
- gz.bc####.com/c.rmvb
- i####.cn.com/a/30f2b3b5eadeeb86b2546bf85caeb5cfb
- jx####.ha####.com:9999/main/checkAppInfo.do?IMSI=####&V=####&mobile=####...
- jx####.ha####.com:9999/main/uploadDeviceInfo.do?IMSI=####&V=####&mobile=...
- jx####.ha####.com:9999/page/getPageContent.do?IMSI=####&V=####&imei=####...
- jx####.ha####.com:9999/sms/submit.do?imsi=####&feechanid=####&sms=####&f...
- jx.ha####.com/SdkNotity.aspx?i=####&v=####&c=####&av=####&dm=####&t=####...
- s####.ha####.com:9999/log/stat.do?i=####&v=####&c=####&av=####&dm=####&t...
- t####.cn/c.rmvb
- wn.qiazhiw####.cn.####.net/update/up11057092
- x####.ha####.com/getconfig.aspx
- x####.ha####.com/getjar.aspx?pno=####
- x####.ha####.com/versioncheck.aspx
- dev.pu####.com/mvc/network/get_info.do
- i####.api.qiazhiw####.cn:10003/v2/chis
- p1.i####.cc/index.php/MC/HB
- p1.i####.cc/index.php/MC/LP
- p1.i####.cc/index.php/MC/RP
- pg.x####.com/api/q/a/30f2b3b5eadeeb86b2546bf85caeb5cfb
- sdk.api.qiazhiw####.cn:10001/v2/bag/monitor?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/sdk/init?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/update/check?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10002/v2/callback/message?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/order/get?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/splog/config?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10201/v2/sdk/report?app_id=####&t=####
- sdk.qipa####.cn:8088/a.do
- sm####.bingfe####.cn/getspsms159.php
- v####.api.eeric####.com/api/payment/mobileInit.html
- v####.api.eeric####.com/api/payment/payDynamic.html
- www.palmfun####.cn/fee/active
- www.palmfun####.cn/fee/searchpc
- /data/data/####/.fb
- /data/data/####/.fb-journal
- /data/data/####/347781996620052-journal
- /data/data/####/;account_file.xml
- /data/data/####/BDTX140
- /data/data/####/MANIFEST.MF
- /data/data/####/MA_epay_db
- /data/data/####/MA_epay_db-journal
- /data/data/####/MySms.xml
- /data/data/####/Plugin2.apk
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/abc.xml
- /data/data/####/b_setting.xml
- /data/data/####/bil_db
- /data/data/####/bil_db-journal
- /data/data/####/cancel.png
- /data/data/####/cancel_on.png
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/config.ini
- /data/data/####/config.txt
- /data/data/####/config.xml
- /data/data/####/config50152.xml
- /data/data/####/confirm_bt.9.png
- /data/data/####/confirm_bt_on.9.png
- /data/data/####/constantcd.xml
- /data/data/####/cooks.darker.wellcut.Main.jar
- /data/data/####/dbinfo.xml
- /data/data/####/eigmdeqht.som
- /data/data/####/eledklqoven.som
- /data/data/####/fikpkfgve.som
- /data/data/####/fodakeur.som
- /data/data/####/libcrypt_sign.so
- /data/data/####/lk.xml
- /data/data/####/ma_call.xml
- /data/data/####/ma_data.xml
- /data/data/####/ma_epay_share.xml
- /data/data/####/main_bg.9.png
- /data/data/####/mpush_game.db-journal
- /data/data/####/mpush_gateway_preferences_file
- /data/data/####/mpush_version_preferences_file
- /data/data/####/new_md
- /data/data/####/new_md.jar
- /data/data/####/newfoq.jar
- /data/data/####/nibgrqne.som
- /data/data/####/nnt_data.xml
- /data/data/####/ondme.som
- /data/data/####/org.diplomat.leave.com.sdk.a.a_mseg.db
- /data/data/####/org.diplomat.leave.com.sdk.a.a_mseg.db-journal
- /data/data/####/org.diplomat.leave.xml
- /data/data/####/org.diplomat.leave_preferences.xml
- /data/data/####/p2j5x0m0v2q6e6a98911n867b7m4f3.xml
- /data/data/####/package.txt
- /data/data/####/plugin.jar
- /data/data/####/pref_file.xml
- /data/data/####/pz_sharedpre_cmreaderlogininfo.xml
- /data/data/####/runtimeConfig.xml
- /data/data/####/service.txt
- /data/data/####/sevbiqdlen.som
- /data/data/####/sikofax.som
- /data/data/####/smsJx_v4_2.xml
- /data/data/####/tbflqpen.som
- /data/data/####/td_pefercen_profile.xml
- /data/data/####/tdid.xml
- /data/data/####/thirlfpqteen.som
- /data/data/####/thrkdeee.som
- /data/data/####/toss.zip
- /data/data/####/twdkeio.som
- /data/data/####/twebfaadlve.som
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/unicom.png
- /data/data/####/up11057092
- /data/data/####/up11057092.jar
- /data/data/####/verify_et.9.png
- /data/data/####/webview.db-journal
- /data/data/####/wochi_v4.db-journal
- /data/data/####/woreader.png
- /data/data/####/zmuen.som
- /data/media/####/.tcookieid
- /data/media/####/exit
- /data/media/####/journal.tmp
- /data/media/####/smslog.txt
- /data/media/####/uu.dat
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- getprop
- ls -l /system/bin/su
- service list
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- DESede