Technical information
- Android.Backdoor.616.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.159.180.48:8090
- TCP(HTTP/1.1) d####.sdkbal####.com:9050
- TCP(HTTP/1.1) s####.sdkbal####.com:8060
- TCP(HTTP/1.1) 1####.159.152.136:8090
- TCP(HTTP/1.1) d####.sdkbal####.com:8066
- TCP(HTTP/1.1) int.d####.s####.####.cn:80
- d####.sdkbal####.com
- d####.sdkbal####.com
- int.d####.s####.####.cn
- s####.sdkbal####.com
- d####.sdkbal####.com:8066/sdk/vStaWC1H.jar
- int.d####.s####.####.cn/iplookup/iplookup.php?qq-pf-to=####
- d####.sdkbal####.com:9050/
- s####.sdkbal####.com:8060/sdk/api/download/getsdkfile
- s####.sdkbal####.com:8060/sdk/api/getclientsetup
- s####.sdkbal####.com:8060/sdk/api/init/sdk/getcolumnfontstyle
- /data/data/####/UM.xml
- /data/data/####/ZZQkEU0W.jar
- /data/data/####/libexec.so
- /data/data/####/sdk.db
- /data/data/####/sdk.db-journal
- /data/data/####/vStaWC1H.jar
- getprop ro.product.cpu.abi
- KDDIJF5s
- cocos2dcpp
- libexec