Technical information
- Android.SmsSpy.10334
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) analy####.ray####.com:80
- TCP(HTTP/1.1) app.loveits####.com:80
- TCP(HTTP/1.1) apk.downloa####.com:80
- TCP(HTTP/1.1) api.mo####.sdk.####.com:80
- TCP(HTTP/1.1) net.ray####.com:80
- TCP(HTTP/1.1) secu####.downloa####.com:80
- TCP(HTTP/1.1) fk-old-####.ray####.com:80
- TCP(HTTP/1.1) and####.downloa####.com:80
- TCP(TLS/1.0) 1####.27.134.251:443
- TCP(TLS/1.0) col####.aio-dow####.com:443
- TCP(TLS/1.0) rts.s####.du####.com:443
- TCP(TLS/1.0) api.mo####.sdk.####.com:443
- TCP(TLS/1.0) lh3.googleu####.com:443
- TCP(TLS/1.0) www.you####.com:443
- TCP(TLS/1.0) and####.downloa####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- a####.u####.com
- analy####.ray####.com
- and####.downloa####.com
- api.mo####.sdk.####.com
- apk.downloa####.com
- app.aio-dow####.com
- app.loveits####.com
- col####.aio-dow####.com
- googl####.g.doublec####.net
- gost####.is
- img.and####.downloa####.com
- lh3.googleu####.com
- m####.downloa####.com
- mb####.s####.du####.com
- net.ray####.com
- rts.s####.du####.com
- secu####.downloa####.com
- set####.ray####.com
- www.you####.com
- and####.downloa####.com/_201409/market/app_detail_more.php?url_id=####
- and####.downloa####.com/_201409/market/app_list_more.php?keyword=####
- and####.downloa####.com/api/list.php?tab=####&keyword=####&page=####
- and####.downloa####.com/upload/android/other/201504/03/all-in-one-downlo...
- api.mo####.sdk.####.com/adunion/slot/fetchConfig?h=####&w=####&model=###...
- apk.downloa####.com/package/com.allinone.free.apk
- app.loveits####.com/_manage/proc/get_android_info.php?id=####
- app.loveits####.com/gonglue_xilie/ping.php?id=####&version=####
- app.loveits####.com/gonglue_xilie/ping.php?id=####&version=####&is_andro...
- fk-old-####.ray####.com/appwall/setting?app_id=####&sign=####&channel=##...
- fk-old-####.ray####.com/rewardsetting?app_id=####&sign=####&channel=####...
- fk-old-####.ray####.com/rewardsetting?app_id=####&sign=####&unit_ids=###...
- fk-old-####.ray####.com/setting?app_id=####&sign=####&jm_a=####&jm_n=###...
- net.ray####.com/image?app_id=####&unit_id=####&sign=####&channel=####&pl...
- net.ray####.com/openapi/ad/v3?app_id=####&unit_id=####&category=####&req...
- a####.u####.com/app_logs
- analy####.ray####.com/
- and####.downloa####.com/_201409/market/app_version_check.php
- and####.downloa####.com/api/get_apk_download_5_0_0.php
- and####.downloa####.com/api/index_5_0_0.php
- secu####.downloa####.com/aio_check_apkinfo/security_center/security_init...
- /data/data/####/.imprint
- /data/data/####/.old_file_converted
- /data/data/####/07bfac4f1f042a7a7834df7a021a53d955ab122817c90d9...leted)
- /data/data/####/1521499837408.jar
- /data/data/####/1521499837408.tmp
- /data/data/####/23fc3e526ec41d1d3f6562ff36b8ca53dd457907650f923....0.tmp
- /data/data/####/24e018eda7ca408303af36bd0ce29976a74539085403f43....0.tmp
- /data/data/####/2be2e5b63fa25522cb4e644ee9d1945292b317bbfe48022....0.tmp
- /data/data/####/2c12d2da29f47083c93019d29b58a0f4570e6e27fd1e6a3....0.tmp
- /data/data/####/61a0b8f482b2e57a49740faa38331fb52ec9fe395750b89....0.tmp
- /data/data/####/7868c1d4135d6bf7307f264f2a81c4136c21418e08ae0d8....0.tmp
- /data/data/####/866987d9594a5cac213c0542ff845c3a1628994ba1d2b2e...f37a.0
- /data/data/####/8922cf51f2c307f24eb5bc225090827d96f7a0cf0cce3e7....0.tmp
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/_toolbox_prefs.xml
- /data/data/####/_toolbox_prefs.xml.bak
- /data/data/####/_toolbox_prefs.xml.bak (deleted)
- /data/data/####/a072a8fa9df246d88d6c67e42ade36c915b4d2822c14303....0.tmp
- /data/data/####/a072a8fa9df246d88d6c67e42ade36c915b4d2822c14303...650b.0
- /data/data/####/addplaylist.xml
- /data/data/####/admob.xml
- /data/data/####/aio_size.xml
- /data/data/####/autoUpdateTime.xml
- /data/data/####/backup
- /data/data/####/backup-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.aio.downloader-1.apk.classes975432114.zip
- /data/data/####/country.xml
- /data/data/####/createmlist.xml
- /data/data/####/daemon
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/download2.db (deleted)
- /data/data/####/download2.db-journal
- /data/data/####/downloading.db
- /data/data/####/downloading.db-journal
- /data/data/####/downloading.db-shm
- /data/data/####/downloading.db-wal
- /data/data/####/du_ad_ts.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/file_list
- /data/data/####/file_list-journal
- /data/data/####/filedownloader.db-journal
- /data/data/####/firstapp.xml
- /data/data/####/gallery_pop.xml
- /data/data/####/getsla.xml
- /data/data/####/goapptime.xml
- /data/data/####/google_ads_flags_meta.xml
- /data/data/####/hasjinpin.xml
- /data/data/####/homelauncher.xml
- /data/data/####/https_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/index
- /data/data/####/journal.tmp
- /data/data/####/lanager.xml
- /data/data/####/lastcollecttime.xml
- /data/data/####/localfavor.db
- /data/data/####/localfavor.db-journal
- /data/data/####/midtime.xml
- /data/data/####/midtimecollectbig.xml
- /data/data/####/mintegral.msdk.db-journal
- /data/data/####/mintegral.xml
- /data/data/####/multidex.version.xml
- /data/data/####/nolistapp.db
- /data/data/####/nolistapp.db-journal
- /data/data/####/noti-journal
- /data/data/####/ntapp.xml
- /data/data/####/playlist.db
- /data/data/####/playlist.db-journal
- /data/data/####/playlist.db-shm
- /data/data/####/playlist.db-shm (deleted)
- /data/data/####/playlist.db-wal
- /data/data/####/scmusic.xml
- /data/data/####/share_date.xml
- /data/data/####/share_date.xml.bak
- /data/data/####/sharekey.xml
- /data/data/####/sim.xml
- /data/data/####/sntappt.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/uninstall-journal
- /data/data/####/uninstallapp.db
- /data/data/####/uninstallapp.db-journal
- /data/data/####/uploadcount.xml
- /data/data/####/video_pref_def.xml
- /data/data/####/video_pref_def.xml (deleted)
- /data/data/####/video_pref_def.xml.bak (deleted)
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.nomedia
- /data/media/####/aioupdate.apk
- /data/media/####/com.allinone.downloader.apk.temp
- /data/media/####/journal
- /data/media/####/journal.tmp
- <Package Folder>/app_bin/daemon -p <Package> -s <Package>.service.DaemonService -t 60
- chmod 0755 <Package Folder>/app_bin/daemon
- ps
- hello-jni
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding