Technical information
- Android.Triada.467.origin
- Android.Xiny.287.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 45.79.2####.252:80
- TCP(HTTP/1.1) api.f####.com:80
- TCP api.f####.com:80
- api.f####.com
- mt####.go####.com
- api.f####.com/co?u=####&s=####&gaid=####&imei=####&androidId=####&at=###...
- /data/data/####/0d2bfd7e-0aaf-4a37-bfc5-b5dded662523.dex (deleted)
- /data/data/####/0d2bfd7e-0aaf-4a37-bfc5-b5dded662523.jar
- /data/data/####/0dfe20f6-d1d9-4f6d-baed-87b9b22294d9.dex (deleted)
- /data/data/####/0dfe20f6-d1d9-4f6d-baed-87b9b22294d9.jar
- /data/data/####/1b6fcc74-fe72-4f0f-b921-8e1d5a680eb4.jar
- /data/data/####/20160121.xml
- /data/data/####/20160121.xml.bak
- /data/data/####/201911201150.apk
- /data/data/####/201911201150.dex
- /data/data/####/29486478.apk
- /data/data/####/3219745f-4859-481d-b3b4-cb19001cb60f.dex (deleted)
- /data/data/####/3219745f-4859-481d-b3b4-cb19001cb60f.jar
- /data/data/####/53eeceb2-5d8c-4f5e-9dd0-5bc7fb99e6c3.dex (deleted)
- /data/data/####/53eeceb2-5d8c-4f5e-9dd0-5bc7fb99e6c3.jar
- /data/data/####/7b86600d-7fc0-49dd-b932-d709b02e71df.dex (deleted)
- /data/data/####/7b86600d-7fc0-49dd-b932-d709b02e71df.jar
- /data/data/####/7f22d7fb-5ece-4d38-848f-538ef602dd42.dex (deleted)
- /data/data/####/7f22d7fb-5ece-4d38-848f-538ef602dd42.jar
- /data/data/####/MobikokCommonConfig.xml
- /data/data/####/MobikokCommonConfig.xml.bak
- /data/data/####/MobikokCommonConfig.xml.bak (deleted)
- /data/data/####/MobikokDeviceConfig.xml
- /data/data/####/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- /data/data/####/ag.xml
- /data/data/####/bdownloaders.db
- /data/data/####/bdownloaders.db-journal
- /data/data/####/c201911201150.apk
- /data/data/####/fc0fcfec-58fc-4dd7-8be0-398c587b470f.dex (deleted)
- /data/data/####/fc0fcfec-58fc-4dd7-8be0-398c587b470f.jar
- /data/data/####/ja201908091350.data
- /data/data/####/rtr.db
- /data/data/####/rtr.db-journal
- /data/data/####/swith1014.db
- /data/data/####/swith1014.db-journal
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- /data/media/####/Config.txt
- app_process /system/bin com.android.commands.pm.Pm path <Package>
- awk {print $9}
- grep 2121
- grep 3376
- grep 4612
- grep 5843
- grep 7119
- grep 8425
- grep 9742
- logcat -d -v time
- md5 /data/app/<Package>-1.apk
- ps
- sh
- libcom.fellen.armse.moth
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding