Technical information
- Android.Backdoor.616.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) m.shca####.net:80
- TCP(HTTP/1.1) d####.sdkbal####.com:9050
- TCP(HTTP/1.1) s####.sdkbal####.com:8060
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) int.d####.s####.####.cn:80
- TCP(HTTP/1.1) www.go####.com:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- a####.u####.com
- adser####.go####.com
- d####.sdkbal####.com
- d####.sdkbal####.com
- d####.sdkbal####.com
- int.d####.s####.####.cn
- m.shca####.net
- oc.u####.com
- s####.sdkbal####.com
- ssl.gst####.com
- www.go####.com
- www.go####.nl
- www.gst####.com
- int.d####.s####.####.cn/iplookup/iplookup.php?qq-pf-to=####
- www.go####.com/complete/search?hl=####&client=####&q=####
- a####.u####.com/app_logs
- d####.sdkbal####.com:9050/
- m.shca####.net/sc/s.action
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- s####.sdkbal####.com:8060/sdk/api/getclientsetup
- s####.sdkbal####.com:8060/sdk/api/log/insertLoginLog
- s####.sdkbal####.com:8060/sdk/api/log/upuserlog
- s####.sdkbal####.com:8060/sdk/login
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/UM.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/hbv0ww20.jar
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_cached_com.tesfgt.google.egame1
- /data/data/####/onlineconfig_agent_online_setting_com.tesfgt.go...me.xml
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/qjmlc4vt.jar
- /data/data/####/sdk.db
- /data/data/####/sdk.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/unique_id
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- ls -l /system/bin/su
- KDDIJF5s
- cocos2dcpp
- libjiagu
- DES