Technical information
- Android.DownLoader.342.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) loc.map.b####.com:80
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- TCP(TLS/1.0) rr6---s####.g####.com:443
- TCP(TLS/1.0) pla####.google####.com:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) 1####.250.74.106:443
- TCP(TLS/1.0) 1####.250.74.163:443
- TCP(TLS/1.2) 1####.250.74.163:443
- TCP(TLS/1.2) 1####.250.74.36:443
- TCP(TLS/1.2) pla####.google####.com:443
- TCP(TLS/1.2) 1####.250.74.106:443
- TCP(TLS/1.2) 1####.217.21.170:443
- UDP p####.google####.com:443
- UDP 1####.250.74.106:443
- a####.u####.com
- loc.map.b####.com
- p####.google####.com
- pla####.google####.com
- rr6---s####.g####.com
- rr9---s####.g####.com
- us.jx####.com
- uu.jx####.com
- a####.u####.com.####.com/app_logs
- loc.map.b####.com/sdk.php
- /data/data/####/018A1B42B3B8CC8A.xml
- /data/data/####/018A1B42B3B8CC8A.xml (deleted)
- /data/data/####/0ED3275DA210CA20.xml
- /data/data/####/291uy.dex
- /data/data/####/291uy.dex.flock (deleted)
- /data/data/####/6365B43E5AE912A3
- /data/data/####/6365B43E5AE912A3.t
- /data/data/####/6750EBF646174A3A.dex
- /data/data/####/6750EBF646174A3A.dex.flock (deleted)
- /data/data/####/6CC2228F2BCDE9E2.dex
- /data/data/####/6CC2228F2BCDE9E2.dex.flock (deleted)
- /data/data/####/781C3995B927EE72-journal
- /data/data/####/CCECDFCA
- /data/data/####/CCECDFCA-journal
- /data/data/####/D6EBE760B70FF841.dex.flock (deleted)
- /data/data/####/E90D96725FD1FDA3.xml
- /data/data/####/FABDBDA-journal
- /data/data/####/MainActivity.xml
- /data/data/####/__pasys_remote_banner.tmp.jar
- /data/data/####/bids.xml
- /data/data/####/proc_auxv
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/291uy
- /data/media/####/291uy.zip
- /data/media/####/4232B7667040B8720A3B0519277196FE
- /data/media/####/6750EBF646174A3A
- /data/media/####/6750EBF646174A3A.zip
- /data/media/####/6CC2228F2BCDE9E2
- /data/media/####/6CC2228F2BCDE9E2.zip
- /data/media/####/D6EBE760B70FF841
- /data/media/####/D6EBE760B70FF841.zip
- /data/media/####/XH.txt
- /data/media/####/__pasys_remote_banner.jar
- /data/media/####/__pasys_remote_banner.jar (deleted)
- /data/media/####/check_back.png
- /data/media/####/check_back.png (deleted)
- /data/media/####/checked_back.png
- /data/media/####/close_btn.jpg
- /data/media/####/close_btn.png
- /data/media/####/congsmall.png
- /data/media/####/default.png
- /data/media/####/enter_button.png
- /data/media/####/index.png
- /data/media/####/ls.db
- /data/media/####/ls.db-journal
- /data/media/####/pic.png
- /data/media/####/skip.png
- /data/media/####/vi.png
- /data/media/####/yimeng222222222.png
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- /data/user/0/<Package>/6365B43E5AE912A3 -p <Package> -r am start --user 0 -n <Package>/inguux.hphup.liocx -a daemon -h http://127.0.0.1:7123/report/allData -i 3498
- /data/user/0/<Package>/6365B43E5AE912A3 -p <Package> -r am start --user 0 -n <Package>/inguux.hphup.liocx -a daemon -h http://127.0.0.1:7123/report/allData -i 3719
- /system/lib/arm/houdini /data/user/0/<Package>/6365B43E5AE912A3 /data/user/0/<Package>/6365B43E5AE912A3 -p <Package> -r am start --user 0 -n <Package>/inguux.hphup.liocx -a daemon -h http://127.0.0.1:7123/report/allData -i 3498
- /system/lib/arm/houdini /data/user/0/<Package>/6365B43E5AE912A3 /data/user/0/<Package>/6365B43E5AE912A3 -p <Package> -r am start --user 0 -n <Package>/inguux.hphup.liocx -a daemon -h http://127.0.0.1:7123/report/allData -i 3719
- chmod 777 /data/user/0/<Package>/6365B43E5AE912A3
- libuwgej
- DES
- RSA-ECB-PKCS1Padding
- DES