Technical information
- Android.Backdoor.613.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) gd.a.s####.com:80
- a####.u####.com
- c####.api.zhifa####.net
- col####.yy####.com
- i####.api.zhifa####.net
- i####.api.zhifa####.net
- p1.i####.cc
- pv.s####.com
- re####.api.zhifa####.net
- v####.api.eeric####.com
- <Package Folder>/app_Wyzf_plg/5.0.9.jar
- <Package Folder>/cache/####/crash-1508143721926.log
- <Package Folder>/cache/####/crash-1508143740398.log
- <Package Folder>/cache/####/crash-1508143764175.log
- <Package Folder>/databases/.fb
- <Package Folder>/databases/.fb-journal
- <Package Folder>/databases/MaiStore.db-journal
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/sy_pay_record-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/####/onib_clz.jar
- <Package Folder>/files/exid.dat
- <Package Folder>/files/pay
- <Package Folder>/files/pay.jar
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/files/yf.apk
- <Package Folder>/files/yf.dex (deleted)
- <Package Folder>/shared_prefs/SP_REPLACE_CLASSLOADER_CLASS_NAME.xml
- <Package Folder>/shared_prefs/config50126.xml
- <Package Folder>/shared_prefs/share_data.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/wyzf_config20647207.xml
- <Package Folder>/shared_prefs/wyzf_config20939888.xml
- <Package Folder>/shared_prefs/wyzf_config20939888.xml.bak
- cat /proc/version
- buck
- hellocpp