Technical information
- Android.Backdoor.613.origin
- UDP(DNS) <Google DNS>
- TCP(GCM) <Google Host>
- TCP(HTTP/1.1) l####.i####.cc:80
- TCP(HTTP/1.1) p1.i####.cc:80
- TCP(HTTP/1.1) pay.all####.cn:80
- TCP(HTTP/1.1) 1####.55.89.238:8977
- l####.i####.cc
- p1.i####.cc
- pay.all####.cn
- l####.i####.cc/index.php/MC/LP
- pay.all####.cn/pay/pay.action?rqid=####
- <Package Folder>/app_dexlm/classes.jar
- <Package Folder>/databases/MaiStore.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/files/####/onib_clz.jar
- <Package Folder>/shared_prefs/CONFIG.xml
- <Package Folder>/shared_prefs/com.fax.runrect.JumpRectangleActivity.xml
- <Package Folder>/shared_prefs/jmsdk.dat.xml
- <Package Folder>/shared_prefs/pinfo.xml
- <Package Folder>/shared_prefs/share_data.xml
- <Package Folder>/shared_prefs/share_data.xml.bak
- <Package Folder>/shared_prefs/version.dat.xml
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding