Technical information
- Android.Backdoor.564.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) schedul####.w####.com:80
- TCP(HTTP/1.1) ga####.lotu####.com:80
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) schedul####.w####.com:443
- 8.w####.com
- api.map.b####.com
- cr####.w####.com
- ga####.lotu####.com
- mo####.w####.com
- ga####.lotu####.com/?st=####&sv=####&tm=####&sid=jzQ####&apn=####&ct=###...
- schedul####.w####.com/client/api/sendlog
- /data/anr/traces.txt
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/app_ACRA-unapproved/1510833298569-IS_SILENT.stacktrace
- <Package Folder>/app_ACRA-unapproved/1510833330398-IS_SILENT.stacktrace
- <Package Folder>/app_ACRA-unapproved/1510833338285-IS_SILENT.stacktrace
- <Package Folder>/app_ACRA-unapproved/1510833347347-IS_SILENT.stacktrace
- <Package Folder>/app_ACRA-unapproved/1510833355716-IS_SILENT.stacktrace
- <Package Folder>/databases/kuaidai.so-journal
- <Package Folder>/databases/message.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/files/####/libBaiduMapSDK_base_v4_3_0.so
- <Package Folder>/files/libcuid.so
- <Package Folder>/files/lotuseed.apps
- <Package Folder>/files/lotuseed.lock
- <Package Folder>/files/lotuseed.s
- <Package Folder>/files/lotuseed.task
- <Package Folder>/lib-main/dso_deps
- <Package Folder>/lib-main/dso_lock
- <Package Folder>/lib-main/dso_manifest
- <Package Folder>/lib-main/dso_state
- <SD-Card>/.system/lotuseed.devid
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/Android/####/journal
- <SD-Card>/Android/####/journal.tmp
- <SD-Card>/backups/####/.cuid
- <SD-Card>/backups/####/.cuid2
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- ps
- BaiduMapSDK_base_v4_3_0
- libBaiduMapSDK_base_v4_3_0
- libjiagu