Technical information
- Android.DownLoader.3394
- Android.DownLoader.635.origin
- Android.DownLoader.683.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.0) 4####.92.62.1:80
- TCP(HTTP/1.0) pis.al####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) pus.al####.com:80
- TCP(HTTP/1.1) w####.com.edg####.net:80
- TCP(HTTP/1.1) cdn.img.h####.####.com:80
- TCP(HTTP/1.1) m.w####.cn:80
- TCP(HTTP/1.1) cdn.app.win####.top:80
- TCP(HTTP/1.1) pss.al####.com:80
- TCP(HTTP/1.1) a####.shar####.cn:5566
- TCP(HTTP/1.1) cdn.app.ne####.####.com:80
- TCP(HTTP/1.1) cdn.game####.org:80
- TCP(HTTP/1.1) 1####.76.224.67:80
- TCP(TLS/1.0) w####.com:443
- TCP(TLS/1.0) kln.g####.sina####.com:443
- TCP(TLS/1.0) w####.com.edg####.net:443
- TCP(TLS/1.0) ho####.h####.top:443
- TCP(TLS/1.0) pns.al####.com:443
- TCP(TLS/1.0) m.w####.cn:443
- UDP 1####.168.68.254:4466
- a####.shar####.cn
- a####.u####.com
- cdn.app.ne####.top
- cdn.app.win####.top
- cdn.game####.org
- cdn.img.h####.top
- h5.sin####.cn
- ho####.h####.top
- m.w####.cn
- pis.al####.com
- pns.al####.com
- pss.al####.com
- pus.al####.com
- w####.com
- www.w####.com
- a####.shar####.cn:5566/date
- cdn.app.ne####.####.com/swenjian/fiv
- cdn.app.win####.top/upload/201805/23/app/20180523103734303.apk
- cdn.game####.org/strategy/UnknownDev
- cdn.game####.org/strategy/base
- cdn.game####.org/strategy/dev_root
- cdn.game####.org/strategy/dev_root2
- cdn.game####.org/strategy/larger4.3
- cdn.game####.org/strategy/loss_4.3
- cdn.game####.org/strategy/sul18
- cdn.game####.org/strategy/symlink-adbd
- cdn.img.h####.####.com/upload/201805/23/img/20180523103731481.png
- m.w####.cn/homeapp?&jumpfrom=####
- pus.al####.com/kernal/sdkcontrol/vod_android-mobile_x86_9.1.1.1220.jpg
- w####.com.edg####.net/homeapp
- a####.u####.com/app_logs
- pis.al####.com/p/pcdn/i.php?v=####
- pss.al####.com/iku/log/acc
- pss.al####.com/iku/log/acc?ver=####&flag=####&t=####&mytype=####
- /data/data/####/.jg.ic
- /data/data/####/1740c449fc10be62df60ba0f18696c9f
- /data/data/####/2ce48753-6c40-43a5-86d8-673885f4834a
- /data/data/####/32edd79a240b5f1e461d069caab1ec3e
- /data/data/####/3e769b03-996e-48b2-8e0b-4d08dc797656
- /data/data/####/8b6f263391259b7a8e5f58ee71852ca8
- /data/data/####/8ffe9691-8872-4d33-a753-e4a92acfb527
- /data/data/####/EgService.jar
- /data/data/####/GoActivity.xml
- /data/data/####/Matrix
- /data/data/####/SUBOXLOG_
- /data/data/####/SlideShow_Data.xml
- /data/data/####/a7c2194c-3d10-4fcc-b4cf-ffdaf7e25b7d
- /data/data/####/ac823cd6-1d1b-461a-87a5-8e3728450617.jar
- /data/data/####/ae9f2437-925a-44eb-b0b9-ee77745e80a3
- /data/data/####/alldown.xml
- /data/data/####/b0141e478b25af7c40a8cca8de6c4708
- /data/data/####/b18a021d11a3004d25017230b681476b
- /data/data/####/bzwn.db-journal
- /data/data/####/c61913b615fb6224701377a119081f36
- /data/data/####/com.saff.af.wqf.apk
- /data/data/####/d7d6e294-bfd0-41f2-acdd-e1ccdca37606
- /data/data/####/ddexe
- /data/data/####/debuggerd
- /data/data/####/device.db
- /data/data/####/e27af47f-46a6-482b-85fb-f79d8a1d2b27
- /data/data/####/e4c4703f-dffa-4eb3-9c3f-4cfcf031d6d6
- /data/data/####/ebn.xml
- /data/data/####/ebn.xml.bak
- /data/data/####/f6e74c86-9a9c-4f29-9b8b-6bf6c7ca3bab
- /data/data/####/fileWork
- /data/data/####/install-recovery.sh
- /data/data/####/jg_so_upgrade_setting.xml
- /data/data/####/libjiagu.so
- /data/data/####/libpcdn_acc.zip
- /data/data/####/libpcdn_acc_new.so
- /data/data/####/mobclick_agent_cached_com.saff.af.wqf
- /data/data/####/mobclick_agent_header_com.saff.af.wqf.xml
- /data/data/####/mobclick_agent_state_com.saff.af.wqf.xml
- /data/data/####/pcdnconfigs.xml
- /data/data/####/pcdnconfigs.xml.bak
- /data/data/####/pidof
- /data/data/####/plugin-deploy.jar
- /data/data/####/plugin-deploy.key
- /data/data/####/quit.xml
- /data/data/####/root3
- /data/data/####/share_sdk_0.xml
- /data/data/####/sharesdk.db-journal
- /data/data/####/small.ogg
- /data/data/####/su
- /data/data/####/supolicy
- /data/data/####/toolbox
- /data/data/####/unobs
- /data/data/####/wsroot.sh
- /data/media/####/.nomedia
- /data/media/####/ap316.tmp
- /data/media/####/c9f25c8b73c57
- /data/media/####/im316.tmp
- /data/media/####/myself.dat
- <Package Folder>/app_lib/unobs <Package> http://112.124.45.224/uninstall/?site=malbum&device_id=<IMEI>45e8fffaeb5ckkapp&version=2.3.2014711&imsi=<IMSI>&channel=wangdoujia&model=<System Property>&free_mem=818814976&total_mem=1055916032&language=en_US 0
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- chmod 775 <Package Folder>/app_lib/unobs
- chmod 777 Matrix ddexe debuggerd device.db fileWork install-recovery.sh pidof root3 su supolicy toolbox wsroot.sh
- chmod 777 Matrix ddexe debuggerd fileWork install-recovery.sh pidof su supolicy toolbox wsroot.sh
- sh
- sh <Package Folder>/app_lib/unobs <Package> http://112.124.45.224/uninstall/?site=malbum&device_id=<IMEI>45e8fffaeb5ckkapp&version=2.3.2014711&imsi=<IMSI>&channel=wangdoujia&model=<System Property>&free_mem=818814976&total_mem=1055916032&language=en_US 0
- libjiagu
- libpcdn_acc
- pcdn_acc
- AES-ECB-PKCS7Padding
- AES-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding