Technical information
- Android.Triada.236.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i####.api.qiazhiw####.cn:10003
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10002
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10201
- TCP(HTTP/1.1) i####.cn.com:80
- TCP(HTTP/1.1) wn.qiazhiw####.cn.####.net:80
- TCP(HTTP/1.1) gdv.a.s####.com:80
- TCP(HTTP/1.1) v####.api.eeric####.com:80
- TCP(HTTP/1.1) jx.ha####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10101
- TCP(HTTP/1.1) 1####.159.131.193:10201
- TCP(HTTP/1.1) x####.ha####.com:80
- TCP(HTTP/1.1) 1####.27.154.102:1234
- TCP(HTTP/1.1) 1####.77.209.125:8080
- TCP(HTTP/1.1) p1.i####.cc:80
- TCP(HTTP/1.1) t####.cn.cdn.####.com:80
- TCP(HTTP/1.1) 1####.129.132.111:8001
- TCP(HTTP/1.1) s####.ha####.com:9999
- TCP(HTTP/1.1) www.palmfun####.cn:80
- TCP(HTTP/1.1) pg.x####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10001
- TCP(HTTP/1.1) jx####.ha####.com:9999
- TCP(TLS/1.0) ga.x####.com:443
- c####.api.qiazhiw####.cn
- ga.x####.com
- i####.api.qiazhiw####.cn
- i####.api.qiazhiw####.cn
- i####.cn.com
- jx####.ha####.com
- jx.ha####.com
- l####.i####.cc
- p1.i####.cc
- pg.x####.com
- pv.s####.com
- re####.api.qiazhiw####.cn
- s####.ha####.com
- sdk.api.qiazhiw####.cn
- t####.cn
- v####.api.eeric####.com
- wn.qiazhiw####.cn
- www.palmfun####.cn
- x####.ha####.com
- gdv.a.s####.com/cityjson?ie=####
- i####.cn.com/a/32db7093dd8f6019462e8f7583ab8dd85
- jx####.ha####.com:9999/main/checkAppInfo.do?IMSI=####&V=####&mobile=####...
- jx####.ha####.com:9999/main/uploadDeviceInfo.do?IMSI=####&V=####&mobile=...
- jx####.ha####.com:9999/page/getPageContent.do?IMSI=####&V=####&imei=####...
- jx####.ha####.com:9999/sms/submit.do?imsi=####&feechanid=####&sms=####&f...
- jx.ha####.com/SdkNotity.aspx?i=####&v=####&c=####&av=####&dm=####&t=####...
- jx.ha####.com/SdkNotity.aspx?i=<IMSI>&v=VA5.1.2|V180321_01&c=15510067&av...
- s####.ha####.com:9999/log/stat.do?i=####&v=####&c=####&av=####&dm=####&t...
- t####.cn.cdn.####.com/c.rmvb
- wn.qiazhiw####.cn.####.net/update/up11057092
- x####.ha####.com/getconfig.aspx
- x####.ha####.com/getjar.aspx?pno=####
- x####.ha####.com/versioncheck.aspx
- i####.api.qiazhiw####.cn:10003/v2/chis
- p1.i####.cc/index.php/MC/HB
- p1.i####.cc/index.php/MC/LP
- p1.i####.cc/index.php/MC/RP
- pg.x####.com/api/q/a/32db7093dd8f6019462e8f7583ab8dd85
- sdk.api.qiazhiw####.cn:10001/v2/bag/monitor?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/sdk/init?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/update/check?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10002/v2/callback/message?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/order/get?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/splog/config?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10201/v2/sdk/report?app_id=####&t=####
- v####.api.eeric####.com/api/payment/mobileInit.html
- v####.api.eeric####.com/api/payment/payDynamic.html
- www.palmfun####.cn/fee/active
- www.palmfun####.cn/fee/code
- www.palmfun####.cn/fee/searchpc
- /data/data/####/-108370733.xml
- /data/data/####/.fb
- /data/data/####/.fb-journal
- /data/data/####/347781996620052-journal
- /data/data/####/;account_file.xml
- /data/data/####/BDTX140
- /data/data/####/MANIFEST.MF
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/a41ef78f80bd3e308dc65bb85a782673.xml
- /data/data/####/c8ef51bca7c6ca597d96a5924f5daec5.xml
- /data/data/####/cancel.png
- /data/data/####/cancel_on.png
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/config.ini
- /data/data/####/config.txt
- /data/data/####/config.xml
- /data/data/####/config50152.xml
- /data/data/####/confirm_bt.9.png
- /data/data/####/confirm_bt_on.9.png
- /data/data/####/db3284fc93bacac81bd058e5fb28483c.xml
- /data/data/####/dbinfo.xml
- /data/data/####/e5a7fd91687a94e8eba9a721ad5e9ded.xml
- /data/data/####/eigmdeqht.som
- /data/data/####/eledklqoven.som
- /data/data/####/error.xml
- /data/data/####/fikpkfgve.som
- /data/data/####/fodakeur.som
- /data/data/####/game.so
- /data/data/####/libcrypt_sign.so
- /data/data/####/main_bg.9.png
- /data/data/####/mpush_game.db-journal
- /data/data/####/mpush_gateway_preferences_file
- /data/data/####/mpush_version_preferences_file
- /data/data/####/new_md
- /data/data/####/new_md.jar
- /data/data/####/nibgrqne.som
- /data/data/####/ondme.som
- /data/data/####/org.sheds.capacity.com.sdk.a.a_mseg.db
- /data/data/####/org.sheds.capacity.com.sdk.a.a_mseg.db-journal
- /data/data/####/org.sheds.capacity.xml
- /data/data/####/org.sheds.capacity_preferences.xml
- /data/data/####/p2j5x0m0v2q6e6a98911n867b7m4f3.xml
- /data/data/####/package.txt
- /data/data/####/plugin.jar
- /data/data/####/pref_file.xml
- /data/data/####/pz_sharedpre_cmreaderlogininfo.xml
- /data/data/####/runtimeConfig.xml
- /data/data/####/service.txt
- /data/data/####/sevbiqdlen.som
- /data/data/####/sikofax.som
- /data/data/####/smsJx_v4_2.xml
- /data/data/####/stuff.corruption.answer.Main.jar
- /data/data/####/tbflqpen.som
- /data/data/####/td_pefercen_profile.xml
- /data/data/####/tdid.xml
- /data/data/####/thirlfpqteen.som
- /data/data/####/thrkdeee.som
- /data/data/####/twdkeio.som
- /data/data/####/twebfaadlve.som
- /data/data/####/unicom.png
- /data/data/####/up11057092
- /data/data/####/up11057092.jar
- /data/data/####/verify_et.9.png
- /data/data/####/webview.db-journal
- /data/data/####/wochi_v4.db-journal
- /data/data/####/woreader.png
- /data/data/####/workshops.zip
- /data/data/####/yfpay.cf
- /data/data/####/zmuen.som
- /data/media/####/.tcookieid
- /data/media/####/exit
- /data/media/####/f
- /data/media/####/smslog.txt
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- cat /sys/class/net/wlan0/address
- ls -l /system/bin/su
- game
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- DESede