Technical information
- Android.DownLoader.751.origin
- Android.RemoteCode.178.origin
- Android.Triada.417.origin
- Android.Triada.440.origin
- Android.Xiny.4018
- Android.Xiny.73.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) p####.9b####.com:12089
- TCP(HTTP/1.1) n####.6e####.com:12089
- TCP(HTTP/1.1) n####.6e####.com:12086
- TCP(HTTP/1.1) log.koapk####.com:80
- TCP(HTTP/1.1) bg.haiqi####.top:8080
- TCP(HTTP/1.1) y####.k8####.com:80
- TCP(HTTP/1.1) 1####.104.215.170:80
- TCP(HTTP/1.1) l.a####.com:80
- TCP(HTTP/1.1) 4####.33.9.178:80
- TCP(HTTP/1.1) pic.a####.com:80
- TCP(HTTP/1.1) www.okyes####.com:8081
- TCP(HTTP/1.1) www.koapk####.com:8081
- TCP(HTTP/1.1) n####.6e####.com:12090
- TCP(HTTP/1.1) bg1.haiqi####.top:8080
- TCP(HTTP/1.1) idv####.qini####.com:80
- TCP(HTTP/1.1) 13.2####.16.115:8081
- TCP(TLS/1.0) api.s####.1####.com:443
- TCP(TLS/1.0) h####.b####.com:443
- api.unm####.u17888####.com
- bg.haiqi####.top
- bg1.haiqi####.top
- h####.b####.com
- l.a####.com
- log.koapk####.com
- mt####.go####.com
- n####.6e####.com
- p####.9b####.com
- pe7th####.s####.gdi####.com
- pic.a####.com
- www.koapk####.com
- www.okyes####.com
- y####.k8####.com
- zj####.4v####.com
- bg.haiqi####.top:8080/ads/getJarVersion/HW_Q_00006/24/cn
- bg.haiqi####.top:8080/ads/getJarVersion/HW_Q_00006/58/cn
- bg1.haiqi####.top:8080/ads/getJarVersion/HW_Q_00006/58/cn
- idv####.qini####.com/path_hw_q06_update17.dat
- pic.a####.com/img/ap82381.png
- y####.k8####.com/Adown/zjdtikgd.zip
- y####.k8####.com/dtjz/Mtqdqnndq.zip
- y####.k8####.com/hw/avkjpvbvx.zip
- y####.k8####.com/hw/awvmfnjtysx.zip
- 13.2####.16.115:8081/sm/sr/sdl/in
- l.a####.com/l.php
- l.a####.com/sal.php
- log.koapk####.com/pgm/sr/gm/gy
- n####.6e####.com:12086/ts/
- n####.6e####.com:12090/drq/
- p####.9b####.com:12089/ds/
- www.koapk####.com:8081/sm/sr/rt/ry
- www.koapk####.com:8081/sm/sr/sdl/in
- www.okyes####.com:8081/sdk/nsd.action?b=####
- /data/data/####/.atmp9.dex
- /data/data/####/.atmp9.jar
- /data/data/####/.atmp_8.log
- /data/data/####/.do.dex
- /data/data/####/.do.jar
- /data/data/####/1180807000016154905aa925fcb22d3ff8890d44677f2d7...sp.xml
- /data/data/####/13ac5cb0008ae82bd77e17a78673152d.jp
- /data/data/####/13ac5cb0008ae82bd77e17a78673152d.jp.temp
- /data/data/####/20160121.xml
- /data/data/####/20160121.xml.bak
- /data/data/####/201812272050.apk
- /data/data/####/201812272050.dex
- /data/data/####/3323003.dex
- /data/data/####/3323003.jar
- /data/data/####/3323003.ttf
- /data/data/####/97657649.apk
- /data/data/####/9bec2b08ec75d39255a25c8d400779c4.jp.temp
- /data/data/####/F2A6715737C9504B2F82BDDEA960CD1B.xml
- /data/data/####/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- /data/data/####/VirtualAPK_Settings.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1551807194264
- /data/data/####/__send_data_1551807204884
- /data/data/####/__send_data_1551807213903
- /data/data/####/__send_data_1551807224624
- /data/data/####/__send_data_1551807234505
- /data/data/####/__send_data_1551807243904
- /data/data/####/ag.xml
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/bdownloaders.db
- /data/data/####/bdownloaders.db-journal
- /data/data/####/c201812272050.apk
- /data/data/####/cdlxvncv.dex (deleted)
- /data/data/####/cdlxvncv.jar
- /data/data/####/d2327ba32c0bbe68147a8587eb02d5ad.xml
- /data/data/####/daeewkts.dex (deleted)
- /data/data/####/daeewkts.jar
- /data/data/####/external.apk
- /data/data/####/external.dex
- /data/data/####/external.so
- /data/data/####/external_dex.apk
- /data/data/####/external_dex.dex
- /data/data/####/external_dex.so
- /data/data/####/f7cfca1aa6ce9a9d444190c11b45be24
- /data/data/####/fswwqene.dex (deleted)
- /data/data/####/fswwqene.jar
- /data/data/####/gameid
- /data/data/####/gameid.zip
- /data/data/####/ikgd.png
- /data/data/####/ikgd.png (deleted)
- /data/data/####/ikudkmli.dex (deleted)
- /data/data/####/ikudkmli.jar
- /data/data/####/ja201902191450.data
- /data/data/####/libcom.turtle.wall.pro.so
- /data/data/####/libcuid.so
- /data/data/####/libdntz.so
- /data/data/####/libdntz.so-32
- /data/data/####/libdntz.so-64
- /data/data/####/libdntz.so-64 (deleted)
- /data/data/####/ljtq.xml
- /data/data/####/lob.xml
- /data/data/####/m2019010709.apk
- /data/data/####/m2019010709.dex
- /data/data/####/mid.dex
- /data/data/####/moduleinfos
- /data/data/####/path_hw_q06_update17.temp (deleted)
- /data/data/####/pmaasgpg.dex (deleted)
- /data/data/####/pmaasgpg.jar
- /data/data/####/s2019010709.apk
- /data/data/####/s2019010709.dex
- /data/data/####/settingsLog.xml
- /data/data/####/settingsLog.xml.bak
- /data/data/####/settingsLog.xml.bak (deleted)
- /data/data/####/swith1014.db
- /data/data/####/swith1014.db-journal
- /data/data/####/temp.zip (deleted)
- /data/data/####/u3kmid.db
- /data/data/####/u3kmid.db-journal
- /data/data/####/v71.xml
- /data/data/####/ver.ini.xml
- /data/data/####/xntwbxkd.dex (deleted)
- /data/data/####/xntwbxkd.jar
- /data/data/####/yd_config_c.xml
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid2
- /data/media/####/.roboid
- /data/media/####/7FA8EF59C53BD8BC651100E9984B09EB
- /data/media/####/7FA8EF59C53BD8BC651100E9984B09EB.temp
- /data/media/####/7FA8EF59C53BD8BC651100E9984B09EB.zip
- /data/media/####/sub_imei.txt
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- app_process /system/bin com.android.commands.pm.Pm path <Package>
- awk {print $9}
- cat /proc/version
- cat /sys/class/net/wlan0/address
- getprop
- getprop ro.board.platform
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.product.cpu.abi
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- grep 2293
- grep 3101
- grep 4157
- grep 5243
- grep 6191
- grep 7157
- logcat -d -v time
- md5 /data/app/<Package>-1.apk
- ps
- sh
- com.turtle.wall
- libdntz
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- RSA-None-PKCS1Padding
- AES
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- RSA-None-PKCS1Padding