Technical information
- Android.DownLoader.3887
- Android.RemoteCode.41.origin
- Android.Xiny.20
- Android.Xiny.224.origin
- Android.Xiny.20
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) img.cool####.cn:80
- TCP(HTTP/1.1) hd.a####.com:80
- TCP(HTTP/1.1) adv.jpi####.com:80
- TCP(HTTP/1.1) l####.c####.q####.####.net:80
- TCP(HTTP/1.1) l.bjsd####.com:80
- TCP(HTTP/1.1) cdn.1####.wang:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) k.zcul####.net:80
- TCP(HTTP/1.1) api.51aiz####.cn:80
- TCP(HTTP/1.1) z.c####.com:80
- TCP(HTTP/1.1) z####.heyc####.net:80
- TCP(HTTP/1.1) www.ye####.org:80
- TCP(HTTP/1.1) d####.dd7####.com:80
- TCP(HTTP/1.1) m####.z####.cn:80
- TCP(HTTP/1.1) c.xz####.com:3350
- TCP(HTTP/1.1) d.bjsd####.com:80
- TCP(HTTP/1.1) b####.www.ye####.org:80
- TCP(HTTP/1.1) www.a####.cn:8010
- TCP(TLS/1.0) ip.mm####.cn:443
- TCP(TLS/1.0) aliyuns####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) aliyuno####.oss-cn-####.aliy####.com:443
- 7x####.dl1.z0.####.com
- a.appj####.com
- a.bjsd####.com
- adv-u####.t####.u####.net
- adv.jpi####.com
- aliyuno####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- api.51aiz####.cn
- b####.www.ye####.org
- c.appj####.com
- c.xz####.com
- cdn.1####.wang
- d####.dd7####.com
- d.bjsd####.com
- img.cool####.cn
- ip.mm####.cn
- k.zcul####.net
- l.bjsd####.com
- m####.z####.cn
- mt####.go####.com
- www.a####.cn
- www.ye####.org
- z####.heyc####.net
- z9.c####.com
- cdn.1####.wang/sc_160
- d####.dd7####.com//upload/plog/dfkn.jar
- d####.dd7####.com//upload/sdk2/SDK31dex20190220.jar
- d####.dd7####.com//upload/sdk2/cjmob20190301.jar
- d####.dd7####.com//upload/sdk2/clsdkdex20181129.jar
- d####.dd7####.com//upload/sdk2/sdk04dex20190218.jar
- d####.dd7####.com//upload/sdk3/Imgdex20190316.jar
- d####.dd7####.com/upload/plog/N38de20181225.jar
- d####.dd7####.com/upload/plog/mfgz.jar
- hd.a####.com/android/adv/qsz/advsdk/release/advsdk-release.enc
- hd.a####.com/android/adv/qsz/resource/ljsdk.dex
- hd.a####.com/android/adv/qsz/resource/zl003sdk.dex
- img.cool####.cn/201812/ww9.jar
- l####.c####.q####.####.net/aristotle_20190305_v55.zip
- www.a####.cn:8010/bookmng/m/book/getImage?id=####
- www.a####.cn:8010/bookmng/m/book/list?s=####&c=####&bkCat=####
- www.a####.cn:8010/resource/1461316805375611.mp3
- z.c####.com/stat.htm?id=####&cnzz_eid=####
- a.appj####.com/jiagu/check/upgrade
- adv.jpi####.com/adv/dayActive
- adv.jpi####.com/adv/getTask
- adv.jpi####.com/adv/pluginFeedback
- adv.jpi####.com/adv/pluginReq
- adv.jpi####.com/adv/taskFedback
- api.51aiz####.cn/api/cmcc/check?sdk=####&app=####
- b####.www.ye####.org/i?requestId=####&g=####&ua=####
- c.appj####.com/ad/splash/stats.html
- c.xz####.com:3350/s/
- d.bjsd####.com/index.php?r=####
- k.zcul####.net/vsdk/a/t
- l.bjsd####.com/index.php?r=####
- m####.z####.cn/s
- www.ye####.org/i?requestId=####&g=####&ua=####
- z####.heyc####.net/getlist
- z####.heyc####.net/xlogin
- /data/anr/traces.txt
- /data/data/####/.jg.ic
- /data/data/####/61561a876896a2a77dd8fe35b4403c0b.db
- /data/data/####/88GOLKLtpq.jar
- /data/data/####/8JsHMM4UOa.jar
- /data/data/####/8cgjTQK.jar
- /data/data/####/99fa89db37b9859fdb387aa6b1199ad2.db
- /data/data/####/A73A0540BCD4820052CCAC6FB86421A4.jar
- /data/data/####/A73A0540BCD4820052CCAC6FB86421A4.tmp
- /data/data/####/FairyTales.xml
- /data/data/####/Iu39O4.jar
- /data/data/####/LSpfT69.jar
- /data/data/####/MIME.MF
- /data/data/####/NDGBq57lSy.jar
- /data/data/####/W_Key.xml
- /data/data/####/ad_show_time.xml
- /data/data/####/b19288e.dex
- /data/data/####/cdsdfdse.xml
- /data/data/####/cdsdfdse.xml.bak
- /data/data/####/cdsdfdse.xml.bak (deleted)
- /data/data/####/cf7c39d.dex
- /data/data/####/cmcc.xml
- /data/data/####/com.mlan.xcmxd.story_preferences.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/downloadswc
- /data/data/####/downloadswc-journal
- /data/data/####/dpi
- /data/data/####/hid.db
- /data/data/####/index
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/lYhJYTpQi9.jar
- /data/data/####/libjiagu.so
- /data/data/####/lmelNy.jar
- /data/data/####/m379ybC.jar
- /data/data/####/st.xml
- /data/data/####/temp_file
- /data/data/####/temp_file (deleted)
- /data/data/####/vgsvfshq.data-journal
- /data/data/####/webview.db-journal
- /data/data/####/x9.so
- /data/data/####/ycmgce
- /data/data/####/ydzNak.jar
- /data/data/####/z.xml
- /data/media/####/.nid
- /data/media/####/19f78faf1cda7c78cbb7a9990a9403b8.0
- /data/media/####/2e8a5f83432ada2b90e381f57a2c36b0.0
- /data/media/####/34e26a90fc04a27eed8ac61018461782.0
- /data/media/####/5.0ww9.jar
- /data/media/####/51a55329d95b368c5acf0b7aa5be94a8.0
- /data/media/####/6e42c33a0446f2ca90bbf75cd4d8f4a1.0
- /data/media/####/Imgdex20190316.jar
- /data/media/####/N38de20181225.jar
- /data/media/####/SDK31dex20190220.jar
- /data/media/####/a5364873d5bb2f25055da608548e0f7c.0
- /data/media/####/c1d053af8e5418156a88f7578b90e1b9.0
- /data/media/####/c4f9023b421d279225b6e82306c5b89f.0
- /data/media/####/c724d8b4260eb7ba5d2430dc0ce711fc.0
- /data/media/####/cjmob20190301.jar
- /data/media/####/clsdkdex20181129.jar
- /data/media/####/dfkn.jar
- /data/media/####/e923d44212ce7a63709084201ebd09d5.0
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/mfgz.jar
- /data/media/####/restime.dat
- /data/media/####/sdk04dex20190218.jar
- /system/bin/sh
- cat /sys/class/android_usb/android0/idProduct
- cat /sys/class/android_usb/android0/idVendor
- chmod 0755 <Package Folder>/app_ht_sdk/check/MIME.MF
- chmod 0755 <Package Folder>/app_ht_sdk/check/x9.so
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- ls -l /dev
- ls -l /dev/block
- ls -l /dev/block/vold
- ls -l /dev/bus
- ls -l /dev/bus/usb
- ls -l /dev/bus/usb/001
- ls -l /dev/com.android.settings.daemon
- ls -l /dev/cpuctl
- ls -l /dev/cpuctl/apps
- ls -l /dev/cpuctl/apps/bg_non_interactive
- ls -l /dev/graphics
- ls -l /dev/input
- ls -l /dev/log
- ls -l /dev/pts
- ls -l /dev/snd
- ls -l /dev/socket
- ps
- libjiagu
- AES-CBC-PKCS5Padding
- DES-CBC-PKCS5Padding
- RSA
- RSA-ECB-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- ARCFOUR
- DES
- DES-CBC-PKCS5Padding