Technical information
- Android.RemoteCode.6122
- Android.Triada.477.origin
- Android.RemoteCode.6122
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) cdn.info####.me:80
- TCP(HTTP/1.1) a####.b####.qq.com:8011
- TCP(HTTP/1.1) api.ye####.com:80
- TCP(HTTP/1.1) cdn.dn####.com:8080
- TCP(HTTP/1.1) cdn.dc####.com:8080
- TCP(HTTP/1.1) cdn.rg####.com:8080
- TCP(HTTP/1.1) co####.du####.com:80
- TCP(HTTP/1.1) sty.zk####.com:80
- TCP(HTTP/1.1) 2####.205.239.188:80
- TCP(SSL/3.0) c####.spcl####.com:443
- TCP(TLS/1.0) o####.ianarat####.com:443
- TCP(TLS/1.0) pu####.g.doublec####.net:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) t.appsf####.com:443
- TCP(TLS/1.0) abc.lk####.com:443
- TCP(TLS/1.0) w####.minerve####.com:443
- TCP(TLS/1.0) dualsta####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) c####.spcl####.com:443
- TCP(TLS/1.0) log.lk####.com:443
- TCP(TLS/1.0) www.face####.com:443
- TCP(TLS/1.0) api.info####.me:443
- TCP(TLS/1.0) bcd.lk####.com:443
- TCP(TLS/1.0) n####.cdsour####.com:443
- a####.b####.qq.com
- abc.lk####.com
- api.info####.me
- api.ye####.com
- bcd.lk####.com
- c####.spcl####.com
- c####.spcl####.com
- cdn.dc####.com
- cdn.dn####.com
- cdn.info####.me
- cdn.rg####.com
- co####.du####.com
- fod.1mb####.com
- googl####.g.doublec####.net
- log.lk####.com
- n####.cdsour####.com
- o####.ianarat####.com
- plb####.u####.com
- pu####.g.doublec####.net
- sty.zk####.com
- t.appsf####.com
- u####.u####.com
- w####.minerve####.com
- www.face####.com
- api.ye####.com/api/sdk?appkey=####&time=####
- cdn.dc####.com:8080/group1/M00/00/05/ChmjBl1Ke2GACEbLAAKRv6qE6mU.plugin
- cdn.dn####.com:8080/group1/M00/00/05/ChmjBl1Ke2GACEbLAAKRv6qE6mU.plugin
- cdn.info####.me/files/fc2802a45ad857dc58a174841c14151e
- cdn.rg####.com:8080/group1/M01/00/04/ChmjBl01et-ACTmDAAHkSxW2dOE.plugin
- a####.b####.qq.com:8011/rqd/async?aid=####
- co####.du####.com/appLock/getConf?model=####&signmd5=####&vendor=####&lo...
- sty.zk####.com/cc/v1/api?sid=####
- /data/anr/traces.txt
- /data/data/####/.imprint
- /data/data/####/.updateIV.dat
- /data/data/####/00O000ll111l_0.dex
- /data/data/####/0OO00l111l1l
- /data/data/####/0OO00l111l1l.lock
- /data/data/####/1004
- /data/data/####/1529567361524.dex
- /data/data/####/1529567361524.dex (deleted)
- /data/data/####/1529567361524.jar
- /data/data/####/1529567361524.tmp
- /data/data/####/692446373.jar
- /data/data/####/692446770.dex (deleted)
- /data/data/####/692446770.jar (deleted)
- /data/data/####/692447018.jar (deleted)
- /data/data/####/692447241.jar
- /data/data/####/AF_INSTALLATION
- /data/data/####/AdsBusiness-data.xml
- /data/data/####/ApplicationCache.db
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/CTD
- /data/data/####/CTD-841781269.tmp
- /data/data/####/CTD-journal
- /data/data/####/FBAdPrefs.xml
- /data/data/####/FBAdPrefs_local.xml
- /data/data/####/IM.xml
- /data/data/####/MultiDex.lock
- /data/data/####/QGFBPrefs.xml
- /data/data/####/SDKIDFA.xml
- /data/data/####/SDKIDFA_local.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/_yppanp_prefs.xml
- /data/data/####/a==8.1.3&&1.0.1_1571447176081_envelope.log
- /data/data/####/ad_wohsbew.xml
- /data/data/####/admob.xml
- /data/data/####/antivirus_sdk_db_prefs.xml
- /data/data/####/app.manager
- /data/data/####/app.manager-journal
- /data/data/####/appsflyer-data.xml
- /data/data/####/audience_network.dex
- /data/data/####/audience_network.dex (deleted)
- /data/data/####/backup_record.txt
- /data/data/####/bugly_db_yaq
- /data/data/####/bugly_db_yaq-journal
- /data/data/####/charging_configs_sp.xml
- /data/data/####/com.playNfun.babypianoxylophone_preferences.xml
- /data/data/####/com.playNfun.babypianoxylophone_preferences.xml...leted)
- /data/data/####/config.service.xml
- /data/data/####/crashrecord.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTcxNDQ3MTcyMzM3;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTcxNDQ3MTg3MDM0;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTcxNDQ3MjA1MDkz;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTcxNDQ3MjAxNTQ3;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTcxNDQ3MjQxMjIy;
- /data/data/####/daemon
- /data/data/####/data.dex
- /data/data/####/data.zip
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dgb.xml
- /data/data/####/download.info
- /data/data/####/download.tmp
- /data/data/####/download_table
- /data/data/####/download_table-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/ext.xml
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/fac_f_b_cfg.xml
- /data/data/####/google_ads_flags_meta.xml
- /data/data/####/https_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/i==1.2.0&&1.0.1_1571447172472_envelope.log
- /data/data/####/i==1.2.0&&1.0.1_1571447187083_envelope.log
- /data/data/####/i==1.2.0&&1.0.1_1571447241412_envelope.log
- /data/data/####/im.database.ad-journal
- /data/data/####/index
- /data/data/####/info.xml
- /data/data/####/iv_ck_pref.xml
- /data/data/####/jni_log_1571447170991.txt
- /data/data/####/jni_log_1571447182410.txt
- /data/data/####/jni_log_1571447198024.txt
- /data/data/####/jni_log_1571447204085.txt
- /data/data/####/libshellx-super.2019.so
- /data/data/####/local_crash_lock
- /data/data/####/local_umeng_common_config.xml
- /data/data/####/ls_sp_date.xml
- /data/data/####/map_record.txt
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/notify_items.sp
- /data/data/####/notify_items.sp-journal
- /data/data/####/o0oooOO0ooOo.dat
- /data/data/####/outer_ad_data_pipe.xml
- /data/data/####/outer_ads_limit_config.xml
- /data/data/####/pref_scene.xml
- /data/data/####/prefs_file_default.xml
- /data/data/####/reg_record.txt
- /data/data/####/result_card_info.xml
- /data/data/####/rqd_record.eup
- /data/data/####/security_info
- /data/data/####/sharepreference_common_record.xml
- /data/data/####/sharepreference_url_param.xml
- /data/data/####/splash_data_callback.xml
- /data/data/####/sys_log_1571447170991.txt
- /data/data/####/sys_log_1571447182410.txt
- /data/data/####/sys_log_1571447198024.txt
- /data/data/####/sys_log_1571447204085.txt
- /data/data/####/t==8.1.3&&1.0.1_1571447175108_envelope.log
- /data/data/####/time_strategy.xml
- /data/data/####/tomb.zip
- /data/data/####/tomb_1571447176644.txt
- /data/data/####/tomb_1571447189384.txt
- /data/data/####/tomb_1571447203168.txt
- /data/data/####/tomb_1571447205710.txt
- /data/data/####/tomb_1571447219714.txt
- /data/data/####/tomb_1571447241019.txt
- /data/data/####/tomb_1571447250501.txt
- /data/data/####/tosversion
- /data/data/####/trash_cloud.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/utils.xml
- /data/data/####/uuid_data.xml
- /data/data/####/wdc_data.xml
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/wpd.db
- /data/data/####/wpd.db-journal
- /data/data/####/yppanp_cache.db
- /data/data/####/yppanp_cache.db-journal
- /data/data/####/yppanp_ts.db
- /data/data/####/yppanp_ts.db-journal
- /data/data/####/z
- /data/data/####/z-journal
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.umm.dat
- /data/media/####/.userReturn
- /data/media/####/cc6a7e8b13035945a09651b309949387.xml
- /data/media/####/fc2fa9d3d268c95ed0d5308e2a31d68d.xml
- /data/media/####/sysid.dat
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop
- daemon
- getprop
- getprop ro.product.cpu.abi
- logcat -d -v threadtime -s dalvikvm art zygote zygote64 OpenGLRenderer Bugly-libunwind:S
- logcat -t 1000 -v threadtime Bugly-libunwind:S
- ls /
- ls /sys/class/thermal
- Bugly-yaq
- acceleratecoreproxy
- libacceleratecoreproxy
- libshellx-super.2019
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- Des-ECB-NoPadding
- RSA
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB-NoPadding
- AES-GCM-NoPadding
- DES
- DES-CBC-PKCS5Padding
- Des-ECB-NoPadding
- RSA-ECB-PKCS1Padding