Technical information
- Android.Triada.236.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i####.api.qiazhiw####.cn:10003
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10002
- TCP(HTTP/1.1) www.palmfun####.cn:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10201
- TCP(HTTP/1.1) i####.cn.com:80
- TCP(HTTP/1.1) wn.qiazhiw####.cn.####.net:80
- TCP(HTTP/1.1) gdv.a.s####.com:80
- TCP(HTTP/1.1) v####.api.eeric####.com:80
- TCP(HTTP/1.1) jx.ha####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10101
- TCP(HTTP/1.1) a.xunfa####.cn:8090
- TCP(HTTP/1.1) api.fujico####.com:8081
- TCP(HTTP/1.1) dev.pu####.com:80
- TCP(HTTP/1.1) 1####.159.131.193:10201
- TCP(HTTP/1.1) x####.ha####.com:80
- TCP(HTTP/1.1) 1####.27.154.102:1234
- TCP(HTTP/1.1) sm####.bingfe####.cn:80
- TCP(HTTP/1.1) p1.i####.cc:80
- TCP(HTTP/1.1) t####.cn.cdn.####.com:80
- TCP(HTTP/1.1) 1####.77.209.125:8080
- TCP(HTTP/1.1) 1####.129.132.111:8001
- TCP(HTTP/1.1) s####.ha####.com:9999
- TCP(HTTP/1.1) sdk.qipa####.cn:8088
- TCP(HTTP/1.1) pg.x####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10001
- TCP(HTTP/1.1) jx####.ha####.com:9999
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) ga.x####.com:443
- 6####.cn
- a.xunfa####.cn
- api.fujico####.com
- c####.api.qiazhiw####.cn
- dev.pu####.com
- ga.hi####.com
- ga.x####.com
- i####.api.qiazhiw####.cn
- i####.api.qiazhiw####.cn
- i####.cn.com
- jx####.ha####.com
- jx.ha####.com
- l####.i####.cc
- p1.i####.cc
- pg.x####.com
- pv.s####.com
- re####.api.qiazhiw####.cn
- s####.ha####.com
- sa.iosj####.com
- sdk.api.qiazhiw####.cn
- sdk.qipa####.cn
- sm####.bingfe####.cn
- t####.cn
- v####.api.eeric####.com
- wn.qiazhiw####.cn
- www.palmfun####.cn
- x####.ha####.com
- a.xunfa####.cn:8090/afee?cpid=####&appfee_id=####&fee=####&smsc=####&ims...
- a.xunfa####.cn:8090/getdata?cpid=####&packagename=####
- a.xunfa####.cn:8090/phoneget?cpid=####&ismi=####&calltime=####&callcount...
- dev.pu####.com/mvc/lgn
- gdv.a.s####.com/cityjson?ie=####
- i####.cn.com/a/38981eb8698da203d6be232f2e6af953d
- jx####.ha####.com:9999/main/checkAppInfo.do?IMSI=####&V=####&mobile=####...
- jx####.ha####.com:9999/main/uploadDeviceInfo.do?IMSI=####&V=####&mobile=...
- jx####.ha####.com:9999/page/getPageContent.do?IMSI=####&V=####&imei=####...
- jx####.ha####.com:9999/sms/submit.do?imsi=####&feechanid=####&sms=####&f...
- jx.ha####.com/SdkNotity.aspx?i=####&v=####&c=####&av=####&dm=####&t=####...
- s####.ha####.com:9999/log/stat.do?i=####&v=####&c=####&av=####&dm=####&t...
- t####.cn.cdn.####.com/c.rmvb
- wn.qiazhiw####.cn.####.net/update/up10107090
- x####.ha####.com/getconfig.aspx
- x####.ha####.com/getjar.aspx?pno=####
- x####.ha####.com/versioncheck.aspx
- api.fujico####.com:8081/check/apps?app_id=####&t=####
- api.fujico####.com:8081/check/update?app_id=####&t=####
- api.fujico####.com:8081/get
- api.fujico####.com:8081/order/get?app_id=####&t=####
- api.fujico####.com:8081/report/mt?app_id=####&t=####
- api.fujico####.com:8081/report/user?app_id=####&t=####
- dev.pu####.com/mvc/network/get_info.do
- i####.api.qiazhiw####.cn:10003/v2/chis
- p1.i####.cc/index.php/MC/HB
- p1.i####.cc/index.php/MC/LP
- p1.i####.cc/index.php/MC/RP
- pg.x####.com/api/q/a/38981eb8698da203d6be232f2e6af953d
- sdk.api.qiazhiw####.cn:10001/v2/bag/monitor?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/sdk/init?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/update/check?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10002/v2/callback/message?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/order/get?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/splog/config?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10201/v2/sdk/report?app_id=####&t=####
- sdk.qipa####.cn:8088/a.do
- sm####.bingfe####.cn/getspsms159.php
- v####.api.eeric####.com/api/payment/mobileInit.html
- v####.api.eeric####.com/api/payment/payDynamic.html
- www.palmfun####.cn/fee/active
- www.palmfun####.cn/fee/searchpc
- /data/data/####/.fb
- /data/data/####/.fb-journal
- /data/data/####/347781996620052-journal
- /data/data/####/BDTX140
- /data/data/####/MANIFEST.MF
- /data/data/####/MA_epay_db
- /data/data/####/MA_epay_db-journal
- /data/data/####/MySms.xml
- /data/data/####/MySms.xml.bak (deleted)
- /data/data/####/Plugin2.apk
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/abc.xml
- /data/data/####/antipathy.willingness.pages.Main.jar
- /data/data/####/b_setting.xml
- /data/data/####/b_share.xml
- /data/data/####/bil_db
- /data/data/####/bil_db-journal
- /data/data/####/cancel.png
- /data/data/####/cancel_on.png
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/config.ini
- /data/data/####/config.txt
- /data/data/####/config.xml
- /data/data/####/config50152.xml
- /data/data/####/confirm_bt.9.png
- /data/data/####/confirm_bt_on.9.png
- /data/data/####/constantcd.xml
- /data/data/####/dbinfo.xml
- /data/data/####/eigmdeqht.som
- /data/data/####/eledklqoven.som
- /data/data/####/error.xml
- /data/data/####/fikpkfgve.som
- /data/data/####/fodakeur.som
- /data/data/####/game.so
- /data/data/####/libcrypt_sign.so
- /data/data/####/lk.xml
- /data/data/####/ma_call.xml
- /data/data/####/ma_data.xml
- /data/data/####/ma_epay_share.xml
- /data/data/####/ma_phone.xml
- /data/data/####/main_bg.9.png
- /data/data/####/mpush_game.db-journal
- /data/data/####/mpush_gateway_preferences_file
- /data/data/####/mpush_version_preferences_file
- /data/data/####/new_md
- /data/data/####/new_md.jar
- /data/data/####/newfoq.jar
- /data/data/####/nibgrqne.som
- /data/data/####/nnt_data.xml
- /data/data/####/ondme.som
- /data/data/####/org.towards.ages.com.sdk.a.a_mseg.db
- /data/data/####/org.towards.ages.com.sdk.a.a_mseg.db-journal
- /data/data/####/org.towards.ages.xml
- /data/data/####/org.towards.ages_preferences.xml
- /data/data/####/p2j5x0m0v2q6e6a98911n867b7m4f3.xml
- /data/data/####/package.txt
- /data/data/####/plugin.jar
- /data/data/####/pref_file.xml
- /data/data/####/pz_sharedpre_cmreaderlogininfo.xml
- /data/data/####/remembered.zip
- /data/data/####/runtimeConfig.xml
- /data/data/####/service.txt
- /data/data/####/sevbiqdlen.som
- /data/data/####/sikofax.som
- /data/data/####/smsJx_v4_2.xml
- /data/data/####/tbflqpen.som
- /data/data/####/td_pefercen_profile.xml
- /data/data/####/tdid.xml
- /data/data/####/thirlfpqteen.som
- /data/data/####/thrkdeee.som
- /data/data/####/twdkeio.som
- /data/data/####/twebfaadlve.som
- /data/data/####/umeng_general_config.xml
- /data/data/####/unicom.png
- /data/data/####/up10107090
- /data/data/####/up10107090.jar
- /data/data/####/verify_et.9.png
- /data/data/####/webview.db-journal
- /data/data/####/wochi_v4.db-journal
- /data/data/####/woreader.png
- /data/data/####/zmuen.som
- /data/data/####/|account_file.xml
- /data/media/####/.tcookieid
- /data/media/####/exit
- /data/media/####/journal.tmp
- /data/media/####/pkg.dat
- /data/media/####/smslog.txt
- /data/media/####/userid.cfg
- /data/media/####/uu.dat
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- getprop
- ls -l /system/bin/su
- service list
- game
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- DESede