Technical information
- Android.Triada.248.origin
- Android.Triada.309
- Android.Triada.373.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) l.ace####.com:80
- TCP(HTTP/1.1) dl.api.kxcon####.com:80
- TCP(HTTP/1.1) api.klaun####.com:80
- TCP(HTTP/1.1) l####.c####.q####.####.com:80
- TCP(HTTP/1.1) deliver####.leji####.com:80
- TCP(HTTP/1.1) d365####.cdn.uc####.####.cn:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) x####.kap####.com:80
- TCP(HTTP/1.1) api.ila####.com:80
- TCP(HTTP/1.1) 7fki####.cs.lov####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(HTTP/1.1) ads####.cr.lov####.####.com:80
- TCP(HTTP/1.1) api.kxcon####.com:666
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) 1####.75.3.32:8881
- TCP(HTTP/1.1) ws1.xiangyu####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) rcv.ila####.com:80
- TCP(HTTP/1.1) ip.izhu####.com:80
- TCP(TLS/1.0) yun.t####.cn:443
- TCP(TLS/1.0) cpu.b####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) ws1.xiangyu####.com:443
- TCP(TLS/1.0) en####.lveha####.com:443
- TCP sdk.o####.t####.####.net:5224
- TCP c####.g####.ig####.com:5224
- 7fki####.cf.lov####.com
- 7fki####.cr.lov####.com
- 7fki####.cs.lov####.com
- 7j####.c####.z0.####.com
- a####.u####.com
- api.ila####.com
- api.klaun####.com
- api.kxcon####.com
- c####.g####.ig####.com
- c-h####.g####.com
- cdn.lov####.com
- cpu.b####.com
- deliver####.leji####.com
- dl.api.kxcon####.com
- en####.lveha####.com
- ip.izhu####.com
- kdyn####.u####.uc####.####.cn
- l####.tbs.qq.com
- l.ace####.com
- p####.k####.com
- pub-####.qin####.com
- rcv.ila####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- ws1.xiangyu####.com
- www.go####.com
- x####.kap####.com
- yun.t####.cn
- 7fki####.cs.lov####.com/gensdkuser.php?chid=####&cpmeta=####&vercode=###...
- 7fki####.cs.lov####.com/sdkstatistics.php?action=####&data=ey####
- 7fki####.cs.lov####.com/sdkstctr.php?chid=####&cpmeta=####&vercode=####
- ads####.cr.lov####.####.com//getresdomain.php?chid=####&vercode=####&cpm...
- ads####.cr.lov####.####.com/chksdkupdate.php?chid=####&sdkver=####&mainv...
- ads####.cr.lov####.####.com/pickoverlay.php?chid=####&cpmeta=####&vercod...
- ads####.cr.lov####.####.com/picksdkgame.php?chid=####&cpmeta=####&vercod...
- api.ila####.com/c/_i_?_=####
- api.ila####.com/e/i.html
- api.ila####.com/e/i.js
- api.ila####.com/update_ch/libcore.jar
- api.ila####.com/update_ch/version.json?ch=####&v=####
- api.klaun####.com/v1/card/gettime/
- api.klaun####.com/v2/config/funclist?cid=####
- api.klaun####.com/v2/config/getPal
- api.klaun####.com/v2/config/getService
- api.kxcon####.com:666/v1/config/funclist?cid=####¶m=####
- d365####.cdn.uc####.####.cn/1518494526783_utils.ttf
- deliver####.leji####.com/emitControl/emitAppList
- ip.izhu####.com/cleanball/cityverify
- l####.c####.q####.####.com/mainjarupdate/gamesdk/empty/empty109/150500/1...
- l####.c####.q####.####.com/tdata_EDT356
- l####.c####.q####.####.com/tdata_Soq141
- l####.c####.q####.####.com/tdata_TSb400
- l####.c####.q####.####.com/vmupdate/pack/empty/empty/51107/vm_x86/109/-1...
- rcv.ila####.com/report2?t=####&h1=####&c=####&v=####&op1=####&op2=####&n...
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- a####.u####.com/app_logs
- api.kxcon####.com:666/v1/config
- c-h####.g####.com/api.php?format=####&t=####
- dl.api.kxcon####.com/v2/load/mobile
- l####.tbs.qq.com/ajax?c=####&k=####
- l####.tbs.qq.com/ajax?c=####&v=####&k=####
- l.ace####.com/ando/v2/ap?app_id=####&r=####
- l.ace####.com/ando/v2/lv?app_id=####&r=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- ws1.xiangyu####.com/NewCounterlog/counterlogsnew.jsp
- x####.kap####.com/upload/event.jsp
- x####.kap####.com/upload/longheartbeat.jsp
- x####.kap####.com/upload/sdklongheartbeat.jsp
- /data/media/####/sdkinfo.txt
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/.lebiansdk/####/.lbsdk.jar.sinfo
- <Package Folder>/.lebiansdk/####/lbsdk.jar.tmp
- <Package Folder>/.lebiansdk/####/lbvmrt.jar.tmp
- <Package Folder>/.lebiansdk/####/main.zip.dload
- <Package Folder>/.lebiansdk/####/tmp-686467187tmp
- <Package Folder>/.lebiansdk/####/vm.zip.dload
- <Package Folder>/app_cache/ApplicationCache.db-journal
- <Package Folder>/app_tbs/####/core_info
- <Package Folder>/app_tbs/####/debug.conf
- <Package Folder>/app_tbs/####/tbscoreinstall.txt
- <Package Folder>/app_tbs/####/tbslock.txt
- <Package Folder>/cache/####/3994506d391cf4b891099660356ce829836....0.tmp
- <Package Folder>/cache/####/data_0
- <Package Folder>/cache/####/data_1
- <Package Folder>/cache/####/data_2
- <Package Folder>/cache/####/data_2 (deleted)
- <Package Folder>/cache/####/data_3
- <Package Folder>/cache/####/data_3 (deleted)
- <Package Folder>/cache/####/f_000001
- <Package Folder>/cache/####/http_api.ilabtap.com_0.localstorage-journal
- <Package Folder>/cache/####/index
- <Package Folder>/cache/####/journal.tmp
- <Package Folder>/code-3882890/ZkPkTuVeLqWGQkFG
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/file_multithreading_info.db-journal
- <Package Folder>/databases/log_report-journal
- <Package Folder>/databases/pushext.db-journal
- <Package Folder>/databases/pushg.db-journal
- <Package Folder>/databases/pushsdk.db-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/webviewCookiesChromium.db-journal
- <Package Folder>/databases/zYjFrCL2kxvN10eELAyrAglSFulyAC65S--V...1dYA==
- <Package Folder>/databases/zYjFrCL2kxvN10eELAyrAglSFulyAC65S--V...FjS_A=
- <Package Folder>/databases/zYjFrCL2kxvN10eELAyrAglSFulyAC65S--V...GSpKSC
- <Package Folder>/databases/zYjFrCL2kxvN10eELAyrAglSFulyAC65S--V...ournal
- <Package Folder>/databases/zYjFrCL2kxvN10eELAyrAglSFulyAC65S--V...q3hw==
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/####/5K7HgtPfs1XbXnYvw38ebShxfxA=.new
- <Package Folder>/files/####/7ImuKhXdJ_NDeDnFk2zSOBYrgMe2fE_B.new
- <Package Folder>/files/####/95L4yD9ccXyYFlYPTWCwh-5CMF7vU_zowcZ...k=.new
- <Package Folder>/files/####/CCOIwk6Hf0qa6xIo7IX7Y8CF86Vxj58A.new
- <Package Folder>/files/####/FJwMoa3pov24E9OwT375yFzTk7n-UDU4.new
- <Package Folder>/files/####/FuS5QSiCzhJuHtDWgj8BpvkEcrTf-eYC.new
- <Package Folder>/files/####/Fy4-_afDYe_DuNbXrlLltiMHCe4=.new
- <Package Folder>/files/####/J0KhQCC6ebCaPTVkMmB16IBfEvzLR1pbOa65KQ==.new
- <Package Folder>/files/####/LANQ7IiqRjkAvEHC.zip
- <Package Folder>/files/####/LpFPFZTY-Uy67uqWtfQ9Zg==.new
- <Package Folder>/files/####/P44E27NSd2UDqf8vz9SZaD4qk6ZW9JcT.new
- <Package Folder>/files/####/Ti7N1-Gf_w1_w6Kwz2pP3kOZI7xRBPXIOVA...0=.new
- <Package Folder>/files/####/UleiJ3ZqyUgBO0p0yXCw7w==.new
- <Package Folder>/files/####/WUAAzh0wB0A9BFO4b09tPg==
- <Package Folder>/files/####/Wb3KmR7V4MfFWGVvrV3bgbWdYUQ=.new
- <Package Folder>/files/####/YjVe6-Qp28nq6X60i-JAWQ==.new
- <Package Folder>/files/####/Z5ObFVpcadcnVuxlCLOzqCrslRo=.new
- <Package Folder>/files/####/ZwYpSd6FKuaS-ffrfGUnHq0gWhk=.new
- <Package Folder>/files/####/android-util.zip
- <Package Folder>/files/####/baEKUfMyetb6tlOPTy0CO2BoKLQK4zojV7e...E=.new
- <Package Folder>/files/####/eCLIpxqooRJErstM.new
- <Package Folder>/files/####/enmEDcdbUp10Cg7JmjvaXuRlcVw2xGSA.new
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/####/fzmOr7_9YiBrOs4qC56Q1ZBQYo4=
- <Package Folder>/files/####/gqoug_f.zip
- <Package Folder>/files/####/hf1qFZ0WcDD-hQ-w6ldRrQXdUYGOkqXq.new
- <Package Folder>/files/####/inXXV-CJpqhD-WgoY2tmeEuQxv06kI-E0pmYfA==.new
- <Package Folder>/files/####/j6KNuayGVi-nNRdN-zmtRA==
- <Package Folder>/files/####/kDBSpWgDbJXiKauqXzvC2UBDTSpv0t5C-G1Jmg==.new
- <Package Folder>/files/####/libxutils.so
- <Package Folder>/files/####/o_YWb49I2C_YmvO_EU3jrTvkyrl9HQ9o.new
- <Package Folder>/files/####/qB_Y7Hb-Droz5LDzALHBuEPOKuTKulyC.new
- <Package Folder>/files/####/rGm1D1FLzRnXFwXT1GJqA00sGY8=.new
- <Package Folder>/files/####/runner_info.prop.new
- <Package Folder>/files/####/u3FLHdo7D_OjoTAx
- <Package Folder>/files/####/waPBYmjTbVmK7UPbCLJDg-siDGmwPncJEmX...0=.new
- <Package Folder>/files/.imprint
- <Package Folder>/files/android-util.ttf
- <Package Folder>/files/exid.dat
- <Package Folder>/files/f826f59d2780
- <Package Folder>/files/gdaemon_20161017
- <Package Folder>/files/init.pid
- <Package Folder>/files/init_c1.pid
- <Package Folder>/files/libcore.jar.tm
- <Package Folder>/files/libcore.tmp.jar
- <Package Folder>/files/push.pid
- <Package Folder>/files/rdata_comenrgyeyecon.new
- <Package Folder>/files/run.pid
- <Package Folder>/files/tdata_Soq141
- <Package Folder>/files/tdata_Soq141.jar
- <Package Folder>/files/tdata_TSb400
- <Package Folder>/files/tdata_TSb400.jar
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/filesdata/####/pal.dat
- <Package Folder>/shared_prefs/COUNTLY_STORE.xml
- <Package Folder>/shared_prefs/COUNTLY_STORE_PL.xml
- <Package Folder>/shared_prefs/__x_adsdk_agent_header__.xml
- <Package Folder>/shared_prefs/alarm_sp_12.xml
- <Package Folder>/shared_prefs/alarm_sp_2.xml
- <Package Folder>/shared_prefs/com.rvbx.adslib.business.ad.Api_file.xml
- <Package Folder>/shared_prefs/common_sp.xml
- <Package Folder>/shared_prefs/condition.xml.xml
- <Package Folder>/shared_prefs/dd_apk.xml
- <Package Folder>/shared_prefs/defaultpref1.xml
- <Package Folder>/shared_prefs/excl_lb_dloadInfo.xml
- <Package Folder>/shared_prefs/excl_lb_gameInfo.xml
- <Package Folder>/shared_prefs/excl_lb_md5Info.xml
- <Package Folder>/shared_prefs/excl_lb_queryInfo.xml
- <Package Folder>/shared_prefs/excl_lb_updateInfo.xml
- <Package Folder>/shared_prefs/excl_lb_userInfo.xml
- <Package Folder>/shared_prefs/file_download.xml
- <Package Folder>/shared_prefs/getui_sp.xml
- <Package Folder>/shared_prefs/gx_sp.xml
- <Package Folder>/shared_prefs/jg_so_upgrade_setting.xml
- <Package Folder>/shared_prefs/kboost_sp.xml
- <Package Folder>/shared_prefs/kk_spf.xml
- <Package Folder>/shared_prefs/lebian_base.xml
- <Package Folder>/shared_prefs/pl_sp.xml
- <Package Folder>/shared_prefs/rws_sp.xml
- <Package Folder>/shared_prefs/share_data.xml
- <Package Folder>/shared_prefs/share_data.xml.bak
- <Package Folder>/shared_prefs/share_file.xml
- <Package Folder>/shared_prefs/sp_config.xml
- <Package Folder>/shared_prefs/sp_file.xml
- <Package Folder>/shared_prefs/sp_rvp.xml
- <Package Folder>/shared_prefs/sp_rvp2.xml
- <Package Folder>/shared_prefs/tbs_download_config.xml
- <Package Folder>/shared_prefs/tbs_download_stat.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/xconfig.xml
- <SD-Card>/.armsd/####/5NCMj4FHDAiNMsrjQKob6JdxZXM=.new
- <SD-Card>/.armsd/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M
- <SD-Card>/.armsd/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M.lk
- <SD-Card>/.armsd/####/MP8MtaBuguN9jnuSwtN1kQ==
- <SD-Card>/.armsd/####/r_pkDgN4OhnkSa0D
- <SD-Card>/.env/.uunique
- <SD-Card>/.env/.uunique.new
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/libs/<Package>.bin
- <SD-Card>/libs/<Package>.db
- <SD-Card>/libs/app.db
- <SD-Card>/libs/com.getui.sdk.deviceId.db
- <SD-Card>/libs/com.igexin.sdk.deviceId.db
- <SD-Card>/libs/test.log
- <SD-Card>/system/####/tdata_Soq141
- <SD-Card>/system/####/tdata_TSb400
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/code-3882890/ZkPkTuVeLqWGQkFG -p <Package> -c com.enrgy.eyecon.aferuw.pv.pv.qf.c -r /storage/emulated/0/.armsd/tjfblFPob85GtAQw/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M -d /storage/emulated/0/Download/ladung
- <Package Folder>/files/gdaemon_20161017 0 <Package>/a.b.c.s.getui.GetuiDemoPushService 25014 300 0
- app_process /system/bin com.android.commands.pm.Pm list packages
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop ro.product.cpu.abi
- mount
- sh
- sh <Package Folder>/code-3882890/ZkPkTuVeLqWGQkFG -p <Package> -c com.enrgy.eyecon.aferuw.pv.pv.qf.c -r /storage/emulated/0/.armsd/tjfblFPob85GtAQw/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M -d /storage/emulated/0/Download/ladung
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/a.b.c.s.getui.GetuiDemoPushService 25014 300 0
- applypatch
- getuiext2
- jni
- lbcrashhandler
- libjiagu
- libxutils
- AES-CBC-PKCS7Padding
- DESede-ECB-PKCS5Padding
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- 1
- AES-CBC-PKCS7Padding
- DES-CBC-PKCS5Padding