Technical information
- Android.Backdoor.481.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) b.nin####.cn:80
- TCP(HTTP/1.1) 1####.171.131.73:80
- TCP(HTTP/1.1) 1####.171.131.72:80
- TCP(HTTP/1.1) img.nin####.cn:80
- TCP(HTTP/1.1) s.nin####.cn:80
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- a####.u####.com
- b.nin####.cn
- c.nin####.cn
- img.nin####.cn
- s.nin####.cn
- img.nin####.cn/dat/b/1.0.5/12.dat
- img.nin####.cn/dat/p/2.1.6/12.dat
- a####.u####.com.####.com/app_logs
- b.nin####.cn/admin/scs.action?requestId=####
- s.nin####.cn/admin/sc.action?requestId=####
- /data/data/####/1.jar
- /data/data/####/13.jar
- /data/data/####/14.jar
- /data/data/####/15.jar
- /data/data/####/2.jar
- /data/data/####/9j_recommend.xml
- /data/data/####/Alvin2.xml
- /data/data/####/AppStore.xml
- /data/data/####/ContextData.xml
- /data/data/####/box_cp_states.xml
- /data/data/####/boxcpdownloads
- /data/data/####/boxcpdownloads-journal
- /data/data/####/cachetimesha_sidebar.xml
- /data/data/####/dim.xml
- /data/data/####/down.db
- /data/data/####/down.db-journal
- /data/data/####/duoduo_cailing_house.db-journal
- /data/data/####/mid.xml
- /data/data/####/mobclick_agent_header_com.tewyvfdcduoduo.cailing.xml
- /data/data/####/mobclick_agent_state_com.tewyvfdcduoduo.cailing.xml
- /data/data/####/mobclick_agent_state_com.tewyvfdcduoduo.cailing.xml.bak
- /data/data/####/running_app_name.xml
- /data/data/####/type.xml
- /data/data/####/umeng_message_state.xml
- /data/data/####/xy.xml
- /data/media/####/1.dat
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/MID.DAT
- /data/media/####/d.dat
- /data/media/####/names.dat
- /data/media/####/packgename.txt
- /data/media/####/share.dat
- AES-CBC-PKCS5Padding
- DES
- AES-CBC-PKCS5Padding