Technical information
- Adware.Egame.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) o####.mill####.com:80
- TCP(HTTP/1.1) unipay####.wos####.cn:80
- TCP(HTTP/1.1) unipa####.wos####.cn:8080
- TCP(HTTP/1.1) int.d####.s####.####.cn:80
- TCP(HTTP/1.1) un####.wos####.cn:8061
- TCP(HTTP/1.1) u####.mill####.com:80
- TCP(HTTP/1.1) se####.wos####.cn:81
- TCP(TLS/1.0) seccli####.al####.com:443
- TCP p####.wos####.cn:18098
- TCP p####.wos####.cn:8064
- a####.u####.com
- ga####.mill####.com
- int.d####.s####.####.cn
- o####.mill####.com
- p####.mill####.com
- p####.mill####.com
- p####.wos####.cn
- s####.mill####.com
- se####.wos####.cn
- seccli####.al####.com
- u####.mill####.com
- un####.wos####.cn
- unipa####.wos####.cn
- unipay####.wos####.cn
- www.bj####.cn
- int.d####.s####.####.cn/iplookup/iplookup.php?format=####
- o####.mill####.com/i10005/firstastat
- o####.mill####.com/i10005/ver
- unipa####.wos####.cn:8080/SDKStoreManager/sdkRequest/sdkupdate.do?sdktyp...
- a####.u####.com/app_logs
- o####.mill####.com/cgi-bin/dpr
- o####.mill####.com/cgi-bin/fpr
- o####.mill####.com/cgi-bin/p888c
- o####.mill####.com/cgi-bin/s888t
- o####.mill####.com/cgi-bin/u888p
- se####.wos####.cn:81/unipay/queryAccumulate
- u####.mill####.com/cgi-bin/p888s
- un####.wos####.cn:8061/logserver/unipay/unipayLog2
- unipay####.wos####.cn/unicompay/alipay/pay?key=Dki####
- /data/data/####/.jiagu.ls
- /data/data/####/20180531.log
- /data/data/####/3.0.0L2111B1208_resource.apk
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/bsconf.xml
- /data/data/####/classez.jar
- /data/data/####/common
- /data/data/####/conn.xml
- /data/data/####/conn.xml-journal
- /data/data/####/decrypt.so
- /data/data/####/help.xml
- /data/data/####/help.xml-journal
- /data/data/####/libjiagu.so
- /data/data/####/libunicom.so
- /data/data/####/libunicomsdk.so
- /data/data/####/mmbclasses.dve
- /data/data/####/mobclick_agent_cached_com.windmill.fruitlink
- /data/data/####/mobclick_agent_header_com.windmill.fruitlink.xml
- /data/data/####/mobclick_agent_state_com.windmill.fruitlink.xml
- /data/data/####/msg_store.xml
- /data/data/####/msp.db
- /data/data/####/msp.db-journal
- /data/data/####/notice
- /data/data/####/profiles.xml
- /data/data/####/projec.xml
- /data/data/####/projec.xml-journal
- /data/data/####/sdk_load_info.xml
- /data/data/####/suggest
- /data/data/####/u_10005
- /data/data/####/umc.xml
- /data/data/####/unicom_cl.xml
- /data/data/####/unicomsdk.xml
- /data/data/####/unipay_profile.dat
- /data/data/####/ver
- /data/data/####/virtualImeiAndImsi.xml
- /data/data/####/webview.db-journal
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/data
- /data/media/####/data1.dat
- /data/media/####/data2.dat
- /data/media/####/data3.dat
- /data/media/####/data5.dat
- /data/media/####/login
- /data/media/####/pay
- /system/bin/sh -c ps
- getprop ro.product.cpu.abi
- ls -l /system/xbin/su
- ps
- DexHelper_mmb
- decrypt
- googlearm
- libDexHelper_mmb-x86
- libjiagu
- libunicom
- libunicomsdk
- AES-CBC-PKCS5Padding
- DESede-CBC-NoPadding
- DESede-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding
- DESede-CBC-NoPadding