Technical information
- Android.Triada.308.origin
- Android.DownLoader.363.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) z.c####.com:80
- TCP(HTTP/1.1) sd####.0####.net.cn:80
- TCP(HTTP/1.1) MY####.huita####.com:10091
- TCP(HTTP/1.1) www.mas####.com:7006
- TCP(HTTP/1.1) php.sho####.com:80
- TCP(HTTP/1.1) d####.dd7####.com:80
- TCP(HTTP/1.1) d.sho####.com:80
- MY####.huita####.com
- d####.dd7####.com
- d.sho####.com
- php.sho####.com
- sd####.0####.net.cn
- www.mas####.com
- z8.c####.com
- d####.dd7####.com//upload/plog/cvfd.jar
- d####.dd7####.com/upload/plog/bghu.jar
- d####.dd7####.com/upload/sdk1/n38dex201811091.jar
- d####.dd7####.com/upload/sdk2/mob050129.jar
- sd####.0####.net.cn/api?channelId=####&appVer=####&sdk=####
- z.c####.com/stat.htm?id=####&cnzz_eid=####
- MY####.huita####.com:10091/wisdom/marking
- d.sho####.com/index.php?r=####
- php.sho####.com/index.php?r=####
- www.mas####.com:7006/ad_server/get_seed
- www.mas####.com:7006/ad_server/upload_device
- /data/data/####/LabelStore.db-journal
- /data/data/####/OperationPlugin_1.0.0.1.0.dex
- /data/data/####/_nohttp_cookies_db.db
- /data/data/####/_nohttp_cookies_db.db-journal
- /data/data/####/com.ebook.mvgwyhylpro.youhua2_preferences.xml
- /data/data/####/gameid
- /data/data/####/gameid.zip
- /data/data/####/libcsmk.so
- /data/data/####/libcsmk.so-32
- /data/data/####/libcsmk.so-64
- /data/data/####/ljxkftop.jar
- /data/data/####/lxy0001.data-journal
- /data/data/####/lxy0001.xml
- /data/data/####/nane.png
- /data/data/####/spdsj.xml
- /data/data/####/webview.db-journal
- /data/data/####/yd_config_c.xml
- /data/media/####/.file_uxpak
- cat /proc/version
- cat /sys/class/net/wlan0/address
- getprop
- getprop ro.board.platform
- getprop ro.product.cpu.abi
- QingCrypto
- libcsmk
- AES
- DES
- AES
- DES