Technical information
- Android.Backdoor.613.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) gd.a.s####.com:80
- TCP(HTTP/1.1) sm####.hej####.com:80
- and####.5####.com
- c####.api.zhifa####.net
- i####.api.zhifa####.net
- i####.api.zhifa####.net
- l####.i####.cc
- p1.i####.cc
- pv.s####.com
- re####.api.zhifa####.net
- s####.hzzr####.com
- sdk.api.zhifa####.net
- sdk.hzzr####.com
- sm####.hej####.com
- v####.api.eeric####.com
- www.huangda####.com
- x####.d####.top
- gd.a.s####.com/cityjson?ie=####
- sm####.hej####.com/getAd.php?apiKey=####&imsi=####&mobile=####&apiKey=##...
- <Package Folder>/app_wyzf_plg/pay_plg.jar
- <Package Folder>/databases/.fb
- <Package Folder>/databases/.fb-journal
- <Package Folder>/databases/347781996620052-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/wochi_v4.db-journal
- <Package Folder>/files/####/onib_clz.jar
- <Package Folder>/files/new_md.jar
- <Package Folder>/shared_prefs/<Package>.xml
- <Package Folder>/shared_prefs/SP_REPLACE_CLASSLOADER_CLASS_NAME.xml
- <Package Folder>/shared_prefs/SP_REPLACE_CLASSLOADER_CLASS_NAME.xml.bak
- <Package Folder>/shared_prefs/config50240.xml
- <Package Folder>/shared_prefs/config50240.xml.bak
- <Package Folder>/shared_prefs/i2w5g0d0i2h656n9h9i1y8p7n724t3.xml
- <Package Folder>/shared_prefs/jy_hot_sdk_config.xml
- <Package Folder>/shared_prefs/pretw.xml
- <Package Folder>/shared_prefs/smsJx_v4.xml
- <SD-Card>/.twservice/####/tw
- <SD-Card>/.twservice/qshp_3003_2296.zip
- <SD-Card>/CrashLog/WyyyCrashLog_20171116123248_2079.log
- <SD-Card>/pay/<Package>_<IMSI>_20171116_pay.log
- cat /sys/block/mmcblk0/device/cid
- getprop apps.customerservice.device
- cocos2dcpp