Technical information
- Android.Backdoor.613.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) gd.a.s####.com:80
- a####.u####.com
- c####.api.zhifa####.net
- i####.api.zhifa####.net
- i####.api.zhifa####.net
- p1.i####.cc
- pv.s####.com
- re####.api.zhifa####.net
- sdk.api.zhifa####.net
- v####.api.eeric####.com
- <Package Folder>/app_Wyzf_plg/5.0.9.jar
- <Package Folder>/app_wyzf_plg/5.2.0.jar
- <Package Folder>/databases/.fb
- <Package Folder>/databases/.fb-journal
- <Package Folder>/databases/347781996620052-journal
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/msg_com.wyzfpay.plugin.dao.DBOpenHel...ournal
- <Package Folder>/databases/msg_com.wyzfpay.plugin.dao.DBOpenHelper.db
- <Package Folder>/databases/sms_db
- <Package Folder>/databases/sms_db-journal
- <Package Folder>/databases/smspay20647207.db
- <Package Folder>/databases/smspay20647207.db-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/####/onib_clz.jar
- <Package Folder>/files/exid.dat
- <Package Folder>/files/new_md.jar
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/files/yf.apk
- <Package Folder>/shared_prefs/<Package>.xml
- <Package Folder>/shared_prefs/SP_REPLACE_CLASSLOADER_CLASS_NAME.xml
- <Package Folder>/shared_prefs/config50126.xml
- <Package Folder>/shared_prefs/config50126.xml.bak (deleted)
- <Package Folder>/shared_prefs/sp_name_config20939888.xml
- <Package Folder>/shared_prefs/sp_name_config20939888.xml.bak
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/v225D0C0l276v6c9e9n1f8D737A4j3.xml
- <Package Folder>/shared_prefs/wyzf_config20647207.xml
- <Package Folder>/shared_prefs/wyzf_config20939888.xml
- hellocpp