Technical information
- Android.Backdoor.616.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.159.180.48:8090
- TCP(HTTP/1.1) d####.sdkbal####.com:9050
- TCP(HTTP/1.1) s####.sdkbal####.com:8060
- TCP(HTTP/1.1) 1####.159.152.136:8090
- TCP(HTTP/1.1) int.d####.s####.####.cn:80
- d####.sdkbal####.com
- d####.sdkbal####.com
- int.d####.s####.####.cn
- s####.sdkbal####.com
- int.d####.s####.####.cn/iplookup/iplookup.php?qq-pf-to=####
- d####.sdkbal####.com:9050/
- s####.sdkbal####.com:8060/sdk/api/getclientsetup
- s####.sdkbal####.com:8060/sdk/api/init/sdk/getcolumnfontstyle
- s####.sdkbal####.com:8060/sdk/api/log/insertLoginLog
- s####.sdkbal####.com:8060/sdk/api/log/upuserlog
- s####.sdkbal####.com:8060/sdk/login
- /data/data/####/UM.xml
- /data/data/####/hbv0ww20.jar
- /data/data/####/qjmlc4vt.jar
- /data/data/####/sdk.db
- /data/data/####/sdk.db-journal
- ls -l /system/bin/su
- KDDIJF5s
- cocos2dcpp