Technical information
- Android.Triada.248.origin
- Android.Triada.309
- Android.Triada.373.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) l.ace####.com:80
- TCP(TLS/1.0) sh.wagbr####.alibaba####.com:443
- l.ace####.com
- plb####.u####.com
- u####.u####.com
- l.ace####.com/ando/v2/ap?app_id=####&r=####
- l.ace####.com/ando/v2/lv?app_id=####&r=####
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/code-8828272/W2XXpDlFpBTBnb9k
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_8Q3...4TfWP-
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_8Q3...ournal
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_c3g...ournal
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_c3g...qzyQ==
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_tqw...ournal
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_uUj...aEFoY=
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_uUj...ournal
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_woj...Waxw==
- <Package Folder>/databases/-facZ-gigfHgEoNlYoDwEHNhqRoJPU20_woj...ournal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/####/0FLknxISMom0Ck7XlwLRywkb1l0=
- <Package Folder>/files/####/0VqP0-LGqOkkoLeXFwOOwg==.new
- <Package Folder>/files/####/24U8N9bvKcDAzewP_T-RgkohBJw=.new
- <Package Folder>/files/####/7rQglWwwEsgvmEsdjjbdJRb_S-21ykIAZBufRg==.new
- <Package Folder>/files/####/8eCoaw6hkFUQgdn7RvkHYlzd2sk=
- <Package Folder>/files/####/8eCoaw6hkFUQgdn7RvkHYlzd2sk=.new
- <Package Folder>/files/####/8eCoaw6hkFUQgdn7RvkHYlzd2sk=.old (deleted)
- <Package Folder>/files/####/9AAqj1GPw90mYVHR59PLKA==.new
- <Package Folder>/files/####/AORGc0oVxKfj9q3CY2kYgg==
- <Package Folder>/files/####/BghVrjlzYNi5NHgwHu7NUJflMcRaYM_l.new
- <Package Folder>/files/####/CLemva93mmMiqN9S
- <Package Folder>/files/####/DO9Q8conue-GmRj4QYxctDtp3gc=.new
- <Package Folder>/files/####/Gz5-pyBRRoIwn6VXmRY59_1Gyh2bNTks.new
- <Package Folder>/files/####/KpFNZpmcNqb53eUl9MdNAA==.new
- <Package Folder>/files/####/O7CLwAeDbVFzC0MZIW-zQ09AJN5vRRHT.new
- <Package Folder>/files/####/Olbei-Qs0soBlaaOPEPHKA-TgwWWVVO3_B4...E=.new
- <Package Folder>/files/####/QVKHKyUcpMjD18xxWkOD_cOqTkbgKPNK.new
- <Package Folder>/files/####/RVYFljxMS9iIty-jmnhiJvbI6qLsHDXm.new
- <Package Folder>/files/####/R_e25aaxyzlx1L5khFhtQHn8FFkVpJhrmtP...I=.new
- <Package Folder>/files/####/S5tZz8nwOobgrNUii9ssGuhUFlv-sH2v.new
- <Package Folder>/files/####/TPOBhjUlB-pcnC0OSqCKBkSwR_7HEZ-p.new
- <Package Folder>/files/####/XQkkSWE81n14I5QwbY7r4p0H2T-9WFTt.new
- <Package Folder>/files/####/YOpiQ5HYmyDE5Hq4xwqCEnMJpAY=.new
- <Package Folder>/files/####/ZMYbvj6rDy3xJq7bKGN0Ss71uT0EMTG0.new
- <Package Folder>/files/####/a==7.4.0&&1.30_1510835132530_envelope.log
- <Package Folder>/files/####/asxPtW1DcTweYs70.zip
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/####/i==1.2.0&&1.30_1510835132080_envelope.log
- <Package Folder>/files/####/kJKjp2Z1pHZw78ty8ZR-o6RttjkSWi3ISay...M=.new
- <Package Folder>/files/####/kTIDj2FA7mMyC_o7.new
- <Package Folder>/files/####/kmMwx527VpUcHpl5X8-y6Q==
- <Package Folder>/files/####/qrbvvg_f.zip
- <Package Folder>/files/####/rE25HXrFcvMp8QZqYE-S6g7Pa7o=
- <Package Folder>/files/####/rE25HXrFcvMp8QZqYE-S6g7Pa7o=.new
- <Package Folder>/files/####/runner_info.prop.new
- <Package Folder>/files/####/uGeoYt02cndwFVp6Ef7zibARNBM=.new
- <Package Folder>/files/####/uKNChEOgw-zQvHIbGIoftWEIbofQVIU5BfLcfQ==.new
- <Package Folder>/files/####/xlAvNzAITc0DfOyNMghawJs1ZzH_xpcgU0_...Q=.new
- <Package Folder>/files/####/yZY4-gh58eMKSXLh8gOM9ybA8IIQbqhhCzZZxw==.new
- <Package Folder>/files/.imprint
- <Package Folder>/files/exid.dat
- <Package Folder>/files/rdata_comercbreza.new
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/shared_prefs/UM_PROBE_DATA.xml
- <Package Folder>/shared_prefs/info.xml
- <Package Folder>/shared_prefs/jg_so_upgrade_setting.xml
- <Package Folder>/shared_prefs/um_pri.xml
- <Package Folder>/shared_prefs/umdat.xml
- <Package Folder>/shared_prefs/umeng_common_config.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <SD-Card>/.a.dat
- <SD-Card>/.armsd/####/5NCMj4FHDAiNMsrjQKob6JdxZXM=
- <SD-Card>/.armsd/####/5NCMj4FHDAiNMsrjQKob6JdxZXM=.new
- <SD-Card>/.armsd/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M
- <SD-Card>/.armsd/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M.lk
- <SD-Card>/.armsd/####/MP8MtaBuguN9jnuSwtN1kQ==
- <SD-Card>/.armsd/####/r_pkDgN4OhnkSa0D
- <SD-Card>/.cc/.adfwe.dat
- <SD-Card>/.env/.uunique.new
- <SD-Card>/.um/.umm.dat
- <SD-Card>/.uxx/.cca.dat
- <SD-Card>/json/guess_key.json
- <SD-Card>/json/guess_tiku.json
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/code-8828272/W2XXpDlFpBTBnb9k -p <Package> -c com.ercb.reza.wgvkvw.pv.pv.qf.c -r /storage/emulated/0/.armsd/tjfblFPob85GtAQw/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M -d /storage/emulated/0/Download/ladung
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- ls /
- ls /sys/class/thermal
- libjiagu
- AES-CBC-PKCS7Padding