Technical information
- Android.Backdoor.564.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) up####.sdk.jig####.cn:80
- TCP(TLS/1.0) s####.j####.cn:443
- TCP(TLS/1.0) 1####.250.179.202:443
- TCP(TLS/1.0) and####.google####.com:443
- TCP(TLS/1.0) app.yida####.com:443
- TCP(TLS/1.2) 1####.217.168.195:443
- TCP(TLS/1.2) 1####.217.168.238:443
- TCP(TLS/1.2) 1####.250.179.206:443
- UDP sis.j####.io:19000
- TCP 1####.230.236.19:7005
- and####.google####.com
- app.yida####.com
- p####.google####.com
- s####.j####.cn
- s.j####.cn
- sis.j####.io
- up####.sdk.jig####.cn
- up####.sdk.jig####.cn/v1/push/sdk/postlist
- /data/data/####/.cl
- /data/data/####/.jg.ic
- /data/data/####/appPackageNames
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.uama.smartcommunityforyida_preferences.xml
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-journal (deleted)
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/jpush_statistics.db-wal (deleted)
- /data/data/####/libjiagu.so
- /data/data/####/proc_auxv
- /data/misc/####/primary.prof
- libjcore118
- libjiagu
- AES-ECB-PKCS7Padding
- AES-ECB-NoPadding