Technical information
- Adware.Batmobi.4
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.0) 4####.92.62.1:80
- TCP(HTTP/1.0) pis.al####.com:80
- TCP(HTTP/1.1) lh4.g####.com:80
- TCP(HTTP/1.1) pus.al####.com:80
- TCP(HTTP/1.1) api.t####.tech:80
- TCP(HTTP/1.1) s####.offline####.net:80
- TCP(HTTP/1.1) d14uy7w####.cloudf####.net:80
- TCP(HTTP/1.1) cdn.app.h####.####.com:80
- TCP(HTTP/1.1) res.img.t####.tech:80
- TCP(HTTP/1.1) pss.al####.com:80
- TCP(HTTP/1.1) cdn.game####.org:80
- TCP(HTTP/1.1) 1####.76.224.67:80
- TCP(TLS/1.0) ho####.h####.top:443
- TCP(TLS/1.0) h####.b####.com:443
- TCP(TLS/1.0) pns.al####.com:443
- UDP 1####.168.64.254:4466
- adv.offline####.net
- api.t####.tech
- cdn.app.h####.top
- cdn.game####.org
- cdn.offline####.net
- d14uy7w####.cloudf####.net
- h####.b####.com
- ho####.h####.top
- lh4.g####.com
- pis.al####.com
- pns.al####.com
- pss.al####.com
- pus.al####.com
- res.img.t####.tech
- s####.offline####.net
- up.offline####.net
- api.t####.tech/common/adctl/v1?ai=####&lo=####&mi=####&vc=####
- api.t####.tech/common/notification/v1?ai=####&lo=####&mi=####&vc=####&lg...
- api.t####.tech/common/promote/v1?ai=####&lo=####&mi=####&vc=####&lg=####...
- cdn.app.h####.####.com/swenjian/321
- cdn.app.h####.####.com/swenjian/321m
- cdn.game####.org/strategy/UnknownDev
- cdn.game####.org/strategy/base
- cdn.game####.org/strategy/dev_root
- cdn.game####.org/strategy/dev_root2
- cdn.game####.org/strategy/larger4.3
- cdn.game####.org/strategy/loss_4.3
- cdn.game####.org/strategy/sul18
- cdn.game####.org/strategy/symlink-adbd
- d14uy7w####.cloudf####.net/download/key
- lh4.g####.com/yxWXCXMMa_iUaNacDlzEjH1lbx_6XYkYPmCFZFSkSUmvjf5Zt18n3F6Tc2...
- pus.al####.com/kernal/sdkcontrol/vod_android-mobile_x86_9.1.1.1220.jpg
- res.img.t####.tech/notifications/2018/01/08/1515400365216-jo5q0eil-lADPB...
- res.img.t####.tech/promotions/2018/01/08/1515400748339-ujpglmcv-ic_launc...
- res.img.t####.tech/promotions/2018/01/08/1515400748408-m3zdm8vg-lADPBbCc...
- res.img.t####.tech/promotions/2018/01/08/1515400748672-0vsqhqot-ic_launc...
- res.img.t####.tech/promotions/2018/01/08/1515400748727-hp4i7gum-lADPBbCc...
- res.img.t####.tech/promotions/2018/01/08/1515400748847-vj2udtuk-ic_launc...
- res.img.t####.tech/promotions/2018/01/08/1515400748917-3i5uf2aq-lADPBbCc...
- res.img.t####.tech/promotions/2018/01/08/1515400748996-ws7reafd-ic_launc...
- res.img.t####.tech/promotions/2018/01/08/1515400749056-e4scqjrd-lADPBbCc...
- res.img.t####.tech/promotions/2018/01/08/1515400749115-659g65p2-ic_launc...
- res.img.t####.tech/promotions/2018/01/08/1515400749165-elzb4ibn-lADPBbCc...
- s####.offline####.net/image/secauto/20171031/ScGH1/3e61030c6464417aacdfe...
- s####.offline####.net/log?partner_id=####&p_name=####&aid=####&local=###...
- s####.offline####.net/stat/v2/imp?aff_id=####&ak_id=####&local=####&chan...
- s####.offline####.net/stat/v2/request?aff_id=####&ak_id=####&local=####&...
- pis.al####.com/p/pcdn/i.php?v=####
- pss.al####.com/iku/log/acc
- pss.al####.com/iku/log/acc?ver=####&flag=####&t=####&mytype=####
- s####.offline####.net/native/v2/recommend
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/Matrix
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/ddexe
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/debuggerd
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/device.db
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/fileWork
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/insta...ery.sh
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/pidof
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/root3
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/su
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/supolicy
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/toolbox
- <Package Folder>/app_0fc61884-3532-4dc9-8b1f-fc0d2027d5ae/wsroot.sh
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/Matrix
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/ddexe
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/debuggerd
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/fileWork
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/insta...ery.sh
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/pidof
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/su
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/supolicy
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/toolbox
- <Package Folder>/app_1d7d4acc-c169-4ab3-a7a2-da4f1451ca4e/wsroot.sh
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/Matrix
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/ddexe
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/debuggerd
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/fileWork
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/insta...ery.sh
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/pidof
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/su
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/supolicy
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/toolbox
- <Package Folder>/app_2c882b5f-8eb5-48cf-9c1c-2afa0de49ffa/wsroot.sh
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/Matrix
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/ddexe
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/debuggerd
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/fileWork
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/insta...ery.sh
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/pidof
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/su
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/supolicy
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/toolbox
- <Package Folder>/app_4ac6e094-8e7a-4ca7-9efb-e42ff34c55d8/wsroot.sh
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/Matrix
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/ddexe
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/debuggerd
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/fileWork
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/insta...ery.sh
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/pidof
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/su
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/supolicy
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/toolbox
- <Package Folder>/app_581c1c6c-eca7-41f3-afe1-b45765d60894/wsroot.sh
- <Package Folder>/app_e5416b68-1a54-43f6-8c8c-654aae3b87dd/c18f8...a2.jar
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/Matrix
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/ddexe
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/debuggerd
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/fileWork
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/insta...ery.sh
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/pidof
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/su
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/supolicy
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/toolbox
- <Package Folder>/app_ed3ec008-baff-4dbe-8c63-9161e2f9fcf8/wsroot.sh
- <Package Folder>/app_libs/libpcdn_acc.zip
- <Package Folder>/app_libs/libpcdn_acc_new.so
- <Package Folder>/app_priv_res/37ecb6c6-f46d-4061-9bf1-1620e8fb2d43
- <Package Folder>/app_subox/1740c449fc10be62df60ba0f18696c9f
- <Package Folder>/app_subox/32edd79a240b5f1e461d069caab1ec3e
- <Package Folder>/app_subox/8b6f263391259b7a8e5f58ee71852ca8
- <Package Folder>/app_subox/b0141e478b25af7c40a8cca8de6c4708
- <Package Folder>/app_subox/b18a021d11a3004d25017230b681476b
- <Package Folder>/app_subox/c61913b615fb6224701377a119081f36
- <Package Folder>/app_subox_download/428db682-9a8a-4deb-8b39-4f85cec81dbf
- <Package Folder>/app_subox_download/46a79171-f615-49b2-84a3-4ede0640d252
- <Package Folder>/app_subox_download/49b3bcd9-1909-407e-b56e-7b5ceadef484
- <Package Folder>/app_subox_download/6b844798-ca1a-437d-8385-d68e6783c3c7
- <Package Folder>/app_subox_download/c9650192-251b-4d3f-ab0c-2decbfb64758
- <Package Folder>/app_subox_download/de62cf10-54bd-4826-8d31-39092a9c1ae6
- <Package Folder>/app_subox_download/e8bcbe95-98db-40cf-8f59-852b13d43b91
- <Package Folder>/app_subox_download/f5f81034-8240-471a-88b8-938c936bdd54
- <Package Folder>/databases/bzwn.db-journal
- <Package Folder>/databases/cleanup_apps.db-journal
- <Package Folder>/databases/sun_statistics.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/Ht.jar
- <Package Folder>/files/SUBOXLOG_
- <Package Folder>/files/__local_ap_info_cache.json
- <Package Folder>/files/__local_last_session.json
- <Package Folder>/files/__local_stat_cache.json
- <Package Folder>/files/__send_data_1510835291755
- <Package Folder>/files/libcuid.so
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/Ccp.xml
- <Package Folder>/shared_prefs/Ht.xml
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml
- <Package Folder>/shared_prefs/_has_set_default_values.xml
- <Package Folder>/shared_prefs/clean_us.xml
- <Package Folder>/shared_prefs/ebn.xml
- <Package Folder>/shared_prefs/multidex.version.xml
- <Package Folder>/shared_prefs/pcdnconfigs.xml
- <Package Folder>/shared_prefs/sharedpreferences_sunmobi_ad_clic...rs.xml
- <Package Folder>/shared_prefs/sharedpreferences_sunmobi_ad_clicks.xml
- <Package Folder>/shared_prefs/sharedpreferences_sunmobi_ad_marketurl.xml
- <Package Folder>/shared_prefs/sharedpreferences_sunmobi_offers.xml
- <Package Folder>/shared_prefs/sharedpreferences_sunmobi_settings.xml
- <Package Folder>/shared_prefs/trigsdk.xml
- <SD-Card>/Android/####/-1555480840.0.tmp
- <SD-Card>/Android/####/-1822973562.0.tmp
- <SD-Card>/Android/####/-1869896146.0.tmp
- <SD-Card>/Android/####/-1966576203.0.tmp
- <SD-Card>/Android/####/-442318944.0.tmp
- <SD-Card>/Android/####/-625427033.0.tmp
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/Android/####/1325245606.0.tmp
- <SD-Card>/Android/####/1353670158.0.tmp
- <SD-Card>/Android/####/1453286591.0.tmp
- <SD-Card>/Android/####/1736100447.0.tmp
- <SD-Card>/Android/####/400048189.0.tmp
- <SD-Card>/Android/####/460984172.0.tmp
- <SD-Card>/Android/####/journal.tmp
- <SD-Card>/Android/####/myself.dat
- <SD-Card>/backups/####/.confd
- <SD-Card>/backups/####/.confd-journal
- <SD-Card>/backups/####/.cuid
- <SD-Card>/backups/####/.cuid2
- <SD-Card>/backups/####/.timestamp
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- chmod 777 Matrix ddexe debuggerd device.db fileWork install-recovery.sh pidof root3 su supolicy toolbox wsroot.sh
- chmod 777 Matrix ddexe debuggerd fileWork install-recovery.sh pidof su supolicy toolbox wsroot.sh
- sh
- KRestart
- crash_analysis
- libjiagu
- libpcdn_acc
- pcdn_acc
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding