Technical information
- Android.Triada.2018
- Android.Triada.373.origin
- Android.Xiny.1513
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.23.136.190:8280
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) loc.map.b####.com:80
- a####.u####.com
- l.ace####.com
- loc.map.b####.com
- a####.u####.com/app_logs
- loc.map.b####.com/sdk.php
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/39iz0QsejhYBOs63vKEZEmNqnsWi9fyJgiVHFMHn69I=.new
- /data/data/####/4aJfitxmruc-CN6eWJkFSXSbVxYtGfqT.new
- /data/data/####/5P1bIWu6JQ6bDmav7raKuKgCyXg=.new
- /data/data/####/5dgB1gwg-TdJxCSK.new
- /data/data/####/85-6R-pKWiAEn3tMkJrF-ZY9FugpLzkINkFCt5GINmk=.new
- /data/data/####/8ISvHf-WoPcccUYe9srmmtpIjgk=.new
- /data/data/####/Alvin2.xml
- /data/data/####/Bjfo7oErS4T0sQAPSTZRVA==.new
- /data/data/####/C5X7lQ1VY-mKuTWm7oeJMTKdy89D3TK5RXn2ag==.new
- /data/data/####/ContextData.xml
- /data/data/####/Cxk6IvP4Vp05TNvd_zt6z1WV3GQrZitI.new
- /data/data/####/D97qh6NVGt5d91MJkJeZBHn0ixZZWHo0.new
- /data/data/####/Dl5K9FDz7U-iOe6w.zip
- /data/data/####/KoYv-zqP_c3Y3h8bYMdLLbK3V5oRpHNZkOgDLi0jzZk=.new
- /data/data/####/QOFgG6P-Fzhskm61bukMXMIOXs_rROn2xWH8mA==.new
- /data/data/####/QRbQ2FDpOHpkjzjTZPt-5z_AUDygmx2v.new
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_BFDkAu...ournal
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_eCZarJ...ournal
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_eCZarJ...rDhA==
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_irM3Gc...ournal
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_irM3GcZfyYNkUtM8
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_xxTf40...bFyII=
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_xxTf40...ournal
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_ztYjK8...G2KQ==
- /data/data/####/R0xDBa--dEexPDgiu2FETFZhrBIfwA1lHZGpwg==_ztYjK8...ournal
- /data/data/####/XIGye88J_26k1JWOJz8asw==.new
- /data/data/####/XQp6p39yxAm6qxfARhdSxX1nl5a0LlQ4.new
- /data/data/####/ZFtEpcJp6Zurz7Hd5jh54Q==.new
- /data/data/####/ZQfMd2nYWjxXe2aHIRUkzMKoaPb1UwJA.new
- /data/data/####/awAFUNzb2RbfUMcu3BYMGA==
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/dMjoYPfJi9_f0mqQZLqhLClWDsU=.new
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/g7ulmfVEMtYdB7AHkMViSAcLVWA=.new
- /data/data/####/kZnpwBAlhy9n86YKQizMxZSvnhY4rRVTc3pf0qRZLZc=.new
- /data/data/####/l-blioMS0cT7S9wevxk3D5hgY_XUpsiOYMLdfg==.new
- /data/data/####/lMJTKWcmFaXXWkm2etj5oyw0zN3g63Is.new
- /data/data/####/libjiagu1166909546.so
- /data/data/####/mg8fb709U_r3MGSn_zaOQBS9C_E=.new
- /data/data/####/oZrOWVGwU42VeKGU
- /data/data/####/or4EHFWhbltaxGq5
- /data/data/####/oyPzA-SSUkylvMcK7cUOTEv_Arg=
- /data/data/####/qQWeNsFDjmy6g3rfO19HYg==
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/rdata_comriunzuawvz.new
- /data/data/####/rob3zxT-iVRZDyjoRy_-aaxTf8Y=.new
- /data/data/####/runner_info.prop.new
- /data/data/####/sXpDx7wvdId0nbo605Achg_DahtXUBnU.new
- /data/data/####/sbuivw_f.zip
- /data/data/####/share_data.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/w3OUTdLmQzfxsV5R8YYNTly4lqA=.new
- /data/data/####/webview.db-journal
- /data/media/####/.uunique.new
- /data/media/####/5NCMj4FHDAiNMsrjQKob6JdxZXM=.new
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M
- /data/media/####/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M.lk
- /data/media/####/MP8MtaBuguN9jnuSwtN1kQ==
- /data/media/####/Yuanqi-2018-12-06-13-00-15-1544101215112.log
- /data/media/####/Yuanqi-2018-12-06-13-00-21-1544101221456.log
- /data/media/####/Yuanqi-2018-12-06-13-00-28-1544101228768.log
- /data/media/####/Yuanqi-2018-12-06-13-00-35-1544101235957.log
- /data/media/####/Yuanqi-2018-12-06-13-00-46-1544101246199.log
- /data/media/####/Yuanqi-2018-12-06-13-00-51-1544101251898.log
- /data/media/####/Yuanqi-2018-12-06-13-00-57-1544101257408.log
- /data/media/####/Yuanqi-2018-12-06-13-01-02-1544101262237.log
- /data/media/####/Yuanqi-2018-12-06-13-01-08-1544101268346.log
- /data/media/####/Yuanqi-2018-12-06-13-01-15-1544101275013.log
- /data/media/####/r_pkDgN4OhnkSa0D
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- <Package Folder>/code-1831052/oZrOWVGwU42VeKGU -p <Package> -c com.riunz.uawvz.blender.OrangeReceiver -r /storage/emulated/0/.armsd/tjfblFPob85GtAQw/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M -d /storage/emulated/0/Download/ladung
- chmod 755 <Package Folder>/.jiagu/libjiagu1166909546.so
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.version
- getprop ro.yunos.version
- sh <Package Folder>/code-1831052/oZrOWVGwU42VeKGU -p <Package> -c com.riunz.uawvz.blender.OrangeReceiver -r /storage/emulated/0/.armsd/tjfblFPob85GtAQw/I7HE1pd26tdvkjhloLWlx5UBeDOAmh6M -d /storage/emulated/0/Download/ladung
- cocos2dcpp
- libjiagu1166909546
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS7Padding