Technical information
- Android.Triada.337.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) and####.5####.com:8077
- TCP(HTTP/1.1) msg.umengc####.com:80
- TCP(HTTP/1.1) and####.5####.com:80
- TCP(HTTP/1.1) dl.eleve####.net.####.com:80
- TCP(TLS/1.0) msg.umengc####.com:443
- TCP(TLS/1.0) a####.a####.m.####.com:443
- TCP zb-cent####.m.ta####.com:443
- TCP zb-cent####.m.ta####.com:80
- a####.m.ta####.com
- a####.u####.com
- ag####.m.ta####.com
- and####.5####.com
- dl.eleve####.net
- msg.umengc####.com
- umen####.m.ta####.com
- umengj####.m.ta####.com
- dl.eleve####.net.####.com/apkf/3rdapk2/M01/22/E8/wKhklFtxWoqAOm7kAACzglN...
- a####.u####.com/app_logs
- and####.5####.com/zm-adv-mis/adv/list/query.do
- and####.5####.com/zm-adv-mis/folder/active/query.do
- and####.5####.com/zm-adv-mis/folder/list/query.do
- and####.5####.com/zm-adv-mis/push/active/query.do
- and####.5####.com/zm-adv-mis/recommwall/active/query.do
- and####.5####.com/zm-adv-mis/recommwall/list/query.do
- and####.5####.com:8077/android/sms/netpay/prefetch.do
- and####.5####.com:8077/android/third/prefetch/index.do
- and####.5####.com:8077/record-plat/msg/strategy/query.do
- and####.5####.com:8077/record-plat/record/upload.do
- and####.5####.com:8077/record-plat/seq/query.do
- msg.umengc####.com/admsg/v1/getmsg
- /data/data/####/.imprint
- /data/data/####/ACCOUNT_SYSTEM_ACCOUNT_INFO.xml
- /data/data/####/ACCS_BINDumeng;58d4e2b207fe656ca00007c9.xml
- /data/data/####/ACCS_SDK.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml
- /data/data/####/AGOO_BIND.xml
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/BOOT_SMS_INFO.xml
- /data/data/####/BOOT_SMS_SENT_TIME.xml
- /data/data/####/ContextData.xml
- /data/data/####/DaemonServer
- /data/data/####/Data_sync.db-journal
- /data/data/####/LatestPushIndex
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/NotifyBarAdvResponse
- /data/data/####/PushDataServerTime
- /data/data/####/accs.db-journal
- /data/data/####/agoo.pid
- /data/data/####/apk.zip
- /data/data/####/eudemon
- /data/data/####/file__0.localstorage-journal
- /data/data/####/libabc
- /data/data/####/message_accs_db
- /data/data/####/message_accs_db-journal
- /data/data/####/mobclick_agent_online_setting_com.game.HappyPetPartty.xml
- /data/data/####/paypush_preference.xml
- /data/data/####/paypush_preference.xml.bak
- /data/data/####/plugin_record_app_info.xml
- /data/data/####/pref_advert.xml
- /data/data/####/pref_folder.xml
- /data/data/####/pref_recomm.xml
- /data/data/####/reqseq
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.nomedia
- /data/media/####/73558a02cc4c4bd4aaf5ae64617f1f80
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/LatestPushIndex
- /data/media/####/NotifyBarAdvResponse
- /data/media/####/PushDataServerTime
- /data/media/####/com.newpay.spsdk.smspay.collection.siminfo.new.apk
- /data/media/####/com.newpay.spsdk.smspay.collection.siminfo.new.apk.temp
- /data/media/####/com.skymobi.pay.plugin.advert.data
- /data/media/####/com.skymobi.pay.plugin.main.data
- /data/media/####/com.skymobi.pay.plugin.push.data
- /data/media/####/com.skymobi.pay.plugin.recordupload.data
- /data/media/####/com.skymobi.pay.plugin.smspay.data
- /data/media/####/com.skymobi.pay.plugin.thirdpay.data
- /data/media/####/deviceToken
- /data/media/####/reqseq
- /data/media/####/user.sys
- <Package Folder>/files/DaemonServer -s <Package Folder>/lib/ -n runServer -p startservice -n <Package>/com.taobao.accs.ChannelService --user 0 -f <Package Folder> -t 600 -c agoo.pid -P <Package Folder> -K 1009527 -U tb_accs_eudemon_1.1.3 -L http://agoodm.m.taobao.com/agoo/report -D {"package":"<Package>","appKey":"umeng:58d4e2b207fe656ca00007c9","utdid":"XoMKBVP7Z9oDAGdzx1GvAEH2","sdkVersion":"220"} -I agoodm.m.taobao.com -O 80 -T -Z
- chmod 500 <Package Folder>/files/DaemonServer
- sh
- libabc
- tnet-3.1
- AES-CBC-PKCS5Padding