Technical information
- Android.Backdoor.613.origin
- Android.Spy.205.origin
- UDP(DNS) <Google DNS>
- apm-co####.qte####.com
- m####.hej####.com
- p####.mili####.com
- sdk.shfy####.cn
- sdk.szyx####.cn
- ut####.cn
- v####.api.eeric####.com
- www.huangda####.com
- <Package Folder>/app_Wyzf_plg/5.0.7.dex
- <Package Folder>/app_Wyzf_plg/5.0.7.jar
- <Package Folder>/app_dex/utopay.jar
- <Package Folder>/app_dex/utopay_close.png
- <Package Folder>/app_dex/utopay_icon.gif
- <Package Folder>/app_dex02346/apk.dex (deleted)
- <Package Folder>/app_dex03518/apk.dex (deleted)
- <Package Folder>/app_dex05728/apk.dex (deleted)
- <Package Folder>/app_dex06820/apk.dex (deleted)
- <Package Folder>/app_dex07952/apk.dex (deleted)
- <Package Folder>/app_dex08924/apk.dex (deleted)
- <Package Folder>/app_tpservice/qsha_80001_5096.dex
- <Package Folder>/app_twservice/tw.dex
- <Package Folder>/app_workbench11374/apk.zip
- <Package Folder>/app_workbench16820/apk.zip
- <Package Folder>/app_workbench16900/apk.zip
- <Package Folder>/app_workbench22346/apk.zip
- <Package Folder>/app_workbench27952/apk.zip
- <Package Folder>/app_workbench28098/apk.zip
- <Package Folder>/app_workbench33478/apk.zip
- <Package Folder>/app_workbench33624/apk.zip
- <Package Folder>/app_workbench38924/apk.zip
- <Package Folder>/app_workbench44676/apk.zip
- <Package Folder>/app_workbench55728/apk.zip
- <Package Folder>/app_workbench61254/apk.zip
- <Package Folder>/app_workbench66780/apk.zip
- <Package Folder>/app_workbench66940/apk.zip
- <Package Folder>/app_workbench72466/apk.zip
- <Package Folder>/app_workbench78218/apk.zip
- <Package Folder>/app_workbench83518/apk.zip
- <Package Folder>/cache/####/dmdata.jar
- <Package Folder>/databases/.fb
- <Package Folder>/databases/.fb-journal
- <Package Folder>/databases/Data_sync.db
- <Package Folder>/databases/Data_sync.db-journal
- <Package Folder>/databases/mp.db
- <Package Folder>/databases/mp.db-journal
- <Package Folder>/databases/smspay20493297.db
- <Package Folder>/databases/smspay20493297.db-journal
- <Package Folder>/databases/webview.db
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/zpay_db
- <Package Folder>/databases/zpay_db-journal
- <Package Folder>/files/####/onib_clz.dex
- <Package Folder>/files/####/onib_clz.jar
- <Package Folder>/files/libabc
- <Package Folder>/files/libexec.so
- <Package Folder>/files/libexecmain.so
- <Package Folder>/files/noend.ini
- <Package Folder>/hunt.conf
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/TestinAgent.xml
- <Package Folder>/shared_prefs/cpMsg.xml
- <Package Folder>/shared_prefs/device_id.xml.xml
- <Package Folder>/shared_prefs/dispatch_log.xml
- <Package Folder>/shared_prefs/getFlag.xml
- <Package Folder>/shared_prefs/plugin_record_app_info.xml
- <Package Folder>/shared_prefs/pref_recomm.xml
- <Package Folder>/shared_prefs/pretw.xml
- <Package Folder>/shared_prefs/twc.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/wyzf_config20493297.xml
- <Package Folder>/shared_prefs/zpay_info.xml
- <SD-Card>/.tpservice/####/qsha_80001_5096.jar
- <SD-Card>/.twservice/####/tw
- <SD-Card>/.twservice/qshp_3003_2271.zip
- <SD-Card>/Android/####/com.skymobi.pay.plugin.main.data
- <SD-Card>/Android/####/com.skymobi.pay.plugin.recordupload.data
- <SD-Card>/Android/####/com.skymobi.pay.plugin.smspay.data
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- cat /sys/block/mmcblk0/device/cid
- chmod 666 /storage/emulated/0/Android/data/com.skymobi.pay.newsdk/plugins/com.skymobi.pay.plugin.main.data
- chmod 666 /storage/emulated/0/Android/data/com.skymobi.pay.newsdk/plugins/com.skymobi.pay.plugin.recordupload.data
- chmod 666 /storage/emulated/0/Android/data/com.skymobi.pay.newsdk/plugins/com.skymobi.pay.plugin.smspay.data
- getprop apps.customerservice.device
- getprop ro.build.product
- getprop ro.product.board
- getprop ro.product.brand
- getprop ro.product.cpu.abi
- getprop ro.product.device
- getprop ro.product.model
- sh -c cat /proc/cpuinfo
- sh -c cat /proc/tty/drivers
- sh -c ggetprop ro.hardware
- zniu -c id
- goldcoast
- hunt
- libabc
- libexec
- libexecmain
- yummy
- zpay