Technical information
- Android.DownLoader.343.origin
- Android.DownLoader.414.origin
- Android.DownLoader.455.origin
- Android.DownLoader.570.origin
- Android.DownLoader.723
- Android.DownLoader.725
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) ff.t####.com.####.com:80
- TCP(HTTP/1.1) www.p####.com:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(TLS/1.0) 1####.217.168.206:443
- TCP s1.sk####.com:9101
- TCP s1.sk####.com:9102
- TCP t1.jz####.com:7101
- TCP t1.jz####.com:7102
- TCP s3.sk####.com:9103
- TCP t1.jz####.com:7103
- a####.u####.com
- feed####.u####.com
- ff.t####.com
- oc.u####.com
- s1.sk####.com
- s2.sk####.com
- s3.sk####.com
- t1.jz####.com
- t2.jz####.com
- t3.jz####.com
- www.p####.com
- ff.t####.com.####.com/d/44tw.jpg
- a####.u####.com/app_logs
- oc.u####.com/check_config_update
- www.p####.com/apiv1/sdkstat/install
- www.p####.com/apiv1/sdkstat/launch
- www.p####.com/apiv1/update/check
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/13565070593518951.db-journal
- /data/data/####/1541208191461p.jar
- /data/data/####/1541208191632s.jar
- /data/data/####/15412081918520.jar
- /data/data/####/62FD9F7FDB6FA40C.xml
- /data/data/####/BB1639DFC4583902.xml
- /data/data/####/com.wbswlsy.android.czzwdq_preferences.xml
- /data/data/####/com.wbswlsy.android.czzwdq_preferences.xml.bak
- /data/data/####/fappInfo_f_356507059351895.xml
- /data/data/####/fconf_f356507059351895.xml
- /data/data/####/fconf_f_356507059351895.xml
- /data/data/####/finfo_f_356507059351895.xml
- /data/data/####/ftrategy_f_356507059351895.xml
- /data/data/####/i.xml
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_online_setting_com.wbswlsy.andro...dq.xml
- /data/data/####/pgyersdk.xml
- /data/data/####/ss_d.db-journal
- /data/data/####/umeng_feedback_conversations.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/wtxfhg.t
- /data/media/####/086E6949EB8BD08533C8494896B5B5C7
- /data/media/####/2DF918D2ECA7E0255A5DC3308A50A32C88671C4C1CE869...77D8E9
- /data/media/####/2DF918D2ECA7E025AD32EB557A6EF1A9131B9CE8F8BDD871
- /data/media/####/4133212EB5AD472B20EC21C7757FE6F1CFB8F230246C7353
- /data/media/####/44tw.jpg.dat
- /data/media/####/52F586B40932DF71131B9CE8F8BDD871
- /data/media/####/54AB0F21F8A5AB9FDF1050659911C6E5CFB8F230246C7353
- /data/media/####/84D0A26BD14E0A1B5B8C6AB4D568CB1E
- /data/media/####/919A919A8826F59A
- /data/media/####/9437AE2BBB0B4510F28925D2692794D3131B9CE8F8BDD871
- /data/media/####/BBF032719D64E9B4
- /data/media/####/C93B98C15C219BC130F48CD6DF8FFE3E131B9CE8F8BDD871
- /data/media/####/DB2BE60772D70B0EBCC3F384A4BBD92D30BA7C24E2D7A82F
- /data/media/####/__pasys_remote_banner.jar
- /data/media/####/bsuzihtzdqtakiwpvehf.zip
- /data/media/####/czzwdq
- /data/media/####/czzwdq-journal
- /data/media/####/rvdbm
- /data/media/####/rvdbm.zip
- /data/media/####/wtxfhg
- <Package Folder>/wtxfhg -p <Package> -r am start --user 0 -n <Package>/tqpke.ntxqc.zbm -a daemon -h http://127.0.0.1:7123/report/allData -i 2282
- chmod 777 <Package Folder>/wtxfhg
- sh <Package Folder>/wtxfhg -p <Package> -r am start --user 0 -n <Package>/tqpke.ntxqc.zbm -a daemon -h http://127.0.0.1:7123/report/allData -i 2282
- libjiagu
- DES
- DES