Technical information
- Android.Backdoor.616.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.159.180.48:8090
- TCP(HTTP/1.1) d####.sdkbal####.com:9050
- TCP(HTTP/1.1) s####.sdkbal####.com:8060
- TCP(HTTP/1.1) 1####.159.152.136:8090
- TCP(HTTP/1.1) ip.ta####.com:80
- d####.sdkbal####.com
- d####.sdkbal####.com
- int.d####.s####.####.cn
- ip.ta####.com
- s####.sdkbal####.com
- ip.ta####.com/service/getIpInfo2.php?ip=####
- d####.sdkbal####.com:9050/
- s####.sdkbal####.com:8060/sdk/api/getclientsetup
- s####.sdkbal####.com:8060/sdk/api/log/upuserlog
- s####.sdkbal####.com:8060/sdk/api/task/getUpMessageRecord_MonthlyPayment
- s####.sdkbal####.com:8060/sdk/login
- /data/anr/traces.txt
- /data/data/####/UM.xml
- /data/data/####/hbv0ww20.jar
- /data/data/####/qjmlc4vt.jar
- /data/data/####/sdk.db
- /data/data/####/sdk.db-journal
- ls -l /system/bin/su
- KDDIJF5s