Technical information
- Android.Backdoor.481.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) 1####.171.131.72:80
- TCP(HTTP/1.1) img.nin####.cn:80
- TCP(HTTP/1.1) c.nin####.cn:80
- TCP(HTTP/1.1) ssl.a####.com.####.net:80
- TCP(TLS/1.0) 2####.58.214.10:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) and####.google####.com:443
- TCP(TLS/1.2) 2####.58.214.10:443
- TCP(TLS/1.2) 1####.250.179.174:443
- TCP(TLS/1.2) 2####.58.208.99:443
- TCP(TLS/1.2) and####.google####.com:443
- airdown####.a####.com
- and####.google####.com
- android####.go####.com
- b.nin####.cn
- c.nin####.cn
- img.nin####.cn
- m####.go####.com
- mobi####.a####.com
- mobi####.a####.com.####.8
- p.nin####.cn
- s.nin####.cn
- img.nin####.cn/dat/b/1.0.5/12.dat
- img.nin####.cn/dat/p/2.1.6/12.dat
- ssl.a####.com.####.net/air?version=####&appid=####&runtimeType=####&os=#...
- c.nin####.cn/admin/bcp.action?requestId=####
- c.nin####.cn/admin/nbad.action
- c.nin####.cn/admin/sc.action?requestId=####
- c.nin####.cn/admin/scs.action?requestId=####
- /data/data/####/.appInfo
- /data/data/####/.hptc_kache_tionOfEggExpert
- /data/data/####/1.dex
- /data/data/####/1.dex.flock (deleted)
- /data/data/####/1.jar
- /data/data/####/13.dex
- /data/data/####/13.dex.flock (deleted)
- /data/data/####/13.jar
- /data/data/####/14.dex
- /data/data/####/14.dex.flock (deleted)
- /data/data/####/14.jar
- /data/data/####/15.dex
- /data/data/####/15.dex.flock (deleted)
- /data/data/####/15.jar
- /data/data/####/2.dex
- /data/data/####/2.dex.flock (deleted)
- /data/data/####/2.jar
- /data/data/####/9j_recommend.xml
- /data/data/####/AIRShell.swf
- /data/data/####/GameV1.swf
- /data/data/####/aaiairair.air.lair.lxair.lx.air.lx.Eair.lx.Elai...ef.xml
- /data/data/####/application.xml
- /data/data/####/bigPoins.xml
- /data/data/####/box_cp_states.xml
- /data/data/####/boxcpdownloads
- /data/data/####/boxcpdownloads-journal
- /data/data/####/bulletList.png (deleted)
- /data/data/####/bulletList.xml
- /data/data/####/cachetimesha_sidebar.xml
- /data/data/####/config.xml
- /data/data/####/curl-ca-bundle.crt
- /data/data/####/dim.xml
- /data/data/####/effectList.png
- /data/data/####/effectList.xml
- /data/data/####/extension.xml
- /data/data/####/gameData.xml
- /data/data/####/javaTrustStore.tmp
- /data/data/####/library.swf
- /data/data/####/library.swf (deleted)
- /data/data/####/mid.xml
- /data/data/####/music.swf
- /data/data/####/plainList.png
- /data/data/####/plainList.xml
- /data/data/####/proc_auxv
- /data/data/####/rs.xml
- /data/data/####/running_app_name.xml
- /data/data/####/type.xml
- /data/data/####/ui.swf
- /data/data/####/xd_101.sxx
- /data/data/####/xy.xml
- /data/media/####/1.dat
- /data/media/####/12.dat
- /data/media/####/MID.DAT
- /data/media/####/d.dat
- /data/media/####/names.dat
- /data/media/####/packgename.txt
- /data/media/####/share.dat
- /data/misc/####/primary.prof
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /proc/meminfo
- /system/bin/cat /sys/devices/system/cpu/present
- DES
- DES