Technical information
- Android.SmsSend.1922.origin
- Android.Triada.222.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) gpup####.min####.com:80
- TCP(HTTP/1.1) api.zhuo####.com:80
- TCP(HTTP/1.1) gp.miaoxi####.com:80
- TCP(HTTP/1.1) pm.zhuo####.com:80
- a.cs####.top
- api.a####.z####.com
- api.zhuo####.com
- b####.mtu####.com
- gp.miaoxi####.com
- gpup####.min####.com
- h####.b####.com
- m####.hej####.com
- owe.joy-r####.com
- pm.zhuo####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- v####.api.eeric####.com
- api.zhuo####.com/Api/UnifiedAccess?PBindKey=####&data=ey####
- gp.miaoxi####.com/cr/sv/getGoFile?name=####
- <Package Folder>/app_Wyzf_plg/5.0.6.jar
- <Package Folder>/app_aqPVSg3/tMS866P3hcq
- <Package Folder>/app_mdex/abc.zip
- <Package Folder>/app_mdex/classes.dex
- <Package Folder>/databases/MA_epay_db
- <Package Folder>/databases/MA_epay_db-journal
- <Package Folder>/databases/bil_db
- <Package Folder>/databases/bil_db-journal
- <Package Folder>/databases/pushsdk.db-journal
- <Package Folder>/databases/xUtils_http_cookie.db-journal
- <Package Folder>/files/####/<Package>12<System Property>2
- <Package Folder>/files/####/ntmp22102238
- <Package Folder>/files/####/ntmp23132341
- <Package Folder>/files/####/ntmp24362464
- <Package Folder>/files/####/ntmp25342562
- <Package Folder>/files/####/ntmp26152644
- <Package Folder>/files/####/ntmp26942721
- <Package Folder>/files/####/ntmp28082858
- <Package Folder>/files/1510822671642_libneo32.so
- <Package Folder>/files/1510822678774_libneo32.so
- <Package Folder>/files/1510822691234_libneo32.so
- <Package Folder>/files/1510822702397_libneo32.so
- <Package Folder>/files/1510822707614_libneo32.so
- <Package Folder>/files/1510822712164_libneo32.so
- <Package Folder>/files/1510822727983_libneo32.so
- <Package Folder>/files/3018798.jar
- <Package Folder>/files/H4O783l.apk
- <Package Folder>/files/__local_ap_info_cache.json
- <Package Folder>/files/__local_stat_cache.json
- <Package Folder>/files/__send_data_1510822668947
- <Package Folder>/files/hftJcw46N.jar
- <Package Folder>/files/init.pid
- <Package Folder>/files/init_c1.pid
- <Package Folder>/files/libcuid.so
- <Package Folder>/files/push.pid
- <Package Folder>/files/run.pid
- <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s
- <Package Folder>/pspace/nexor.jar
- <Package Folder>/pspace/prim.jar
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/ZYASDKPOIEJMFKL##@!!!.xml
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml.bak (deleted)
- <Package Folder>/shared_prefs/b_setting.xml
- <Package Folder>/shared_prefs/b_share.xml
- <Package Folder>/shared_prefs/constant_ecd.xml
- <Package Folder>/shared_prefs/constant_version.xml
- <Package Folder>/shared_prefs/ma_call.xml
- <Package Folder>/shared_prefs/ma_data.xml
- <Package Folder>/shared_prefs/ma_epay_share.xml
- <Package Folder>/shared_prefs/nnt_data.xml
- <Package Folder>/shared_prefs/wyzf_configzhuoyian.xml
- <SD-Card>/BIRDDOWNLOAD/####/rinsWPVPycqVPSq38.db
- <SD-Card>/BIRDDOWNLOAD/####/rinsWPVPycqVPSq38.db-journal
- <SD-Card>/backups/####/.confd
- <SD-Card>/backups/####/.confd-journal
- <SD-Card>/backups/####/.cuid
- <SD-Card>/backups/####/.cuid2
- <SD-Card>/backups/####/.timestamp
- <SD-Card>/llc/####/20171116AdRequest
- <Package Folder>/app_aqPVSg3/tMS866P3hcq -p <Package> -s com.system.setting.BackgroundService -t 600
- <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s -h 9d051a7f5ce243ccaa3a5a10e8d24c4e <Package Folder>/.syslib-
- chmod 0755 <Package Folder>/app_aqPVSg3/tMS866P3hcq
- chmod 0771 <Package Folder>/.syslib-
- rm -f <Package Folder>/files/hftJcw46N.dex
- rm -f <Package Folder>/files/hftJcw46N.jar
- rm <Package Folder>/files/hftJcw46N.dex
- rm <Package Folder>/files/hftJcw46N.jar
- sh -c /system/usr/toolbox rm -f <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c /system/usr/toolbox rm -f <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh -c rm <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c rm <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh -c rm -f <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c rm -f <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh <Package Folder>/app_aqPVSg3/tMS866P3hcq -p <Package> -s com.system.setting.BackgroundService -t 600
- sh <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s -h 9d051a7f5ce243ccaa3a5a10e8d24c4e <Package Folder>/.syslib-
- 1510822671642_libneo32
- 1510822678774_libneo32
- 1510822691234_libneo32
- 1510822702397_libneo32
- 1510822707614_libneo32
- 1510822712164_libneo32
- 1510822727983_libneo32
- cocos2dcpp
- com_zhuoyian_gemlegendguonei
- getuiext2