Technical information
- Android.Backdoor.564.origin
- UDP(DNS) <Google DNS>
- TCP(GCM) <Google Host>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) on####.lotu####.com:80
- TCP(HTTP/1.1) ga####.lotu####.com:80
- TCP(HTTP/1.1) on####.lotu####.com:88
- UDP(NTP) 2.and####.p####.####.org:123
- TCP(TLS/1.0) d####.iap####.com:443
- TCP(TLS/1.0) and####.cli####.go####.com:443
- 2.and####.p####.####.org
- a####.u####.com
- and####.cli####.go####.com
- d####.iap####.com
- ga####.lotu####.com
- mt####.go####.com
- on####.lotu####.com
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/app_jgls/.log.lock
- <Package Folder>/app_jgls/.log.ls
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/message-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/.imprint
- <Package Folder>/files/exid.dat
- <Package Folder>/files/libcuid.so
- <Package Folder>/files/lotuseed.apps
- <Package Folder>/files/lotuseed.config
- <Package Folder>/files/lotuseed.lock
- <Package Folder>/files/lotuseed.s
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/shared_prefs/Alvin2.xml
- <Package Folder>/shared_prefs/ContextData.xml
- <Package Folder>/shared_prefs/iapppay_config.xml
- <Package Folder>/shared_prefs/lotuseed_global.xml
- <Package Folder>/shared_prefs/lotuseed_main.xml
- <Package Folder>/shared_prefs/statistics_preference.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml.bak
- <SD-Card>/.DataStorage/ContextData.xml
- <SD-Card>/.UTSystemConfig/####/Alvin2.xml
- <SD-Card>/.system/lotuseed.devid
- <SD-Card>/backups/####/.cuid
- <SD-Card>/backups/####/.cuid2
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- df
- ps
- libjiagu
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding