Technical information
- Android.Backdoor.623.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) n.qik####.com.####.com:80
- TCP(HTTP/1.1) s####.s.360.cn:80
- TCP(HTTP/1.1) app####.3####.com:80
- TCP(TLS/1.0) api.os.q####.com:443
- api.os.q####.com
- app####.3####.com
- n.qik####.com
- s####.s.360.cn
- n.qik####.com.####.com/t/1p5d97bdaf09f983b471fa.bvg
- s####.s.360.cn/ak/a532400ed62e772b9dc0b86f46e583ff.html?m2=####
- app####.3####.com/sdk/upgrade.do
- /data/data/####/.old_file_converted
- /data/data/####/Data.zip
- /data/data/####/Data.zip (deleted)
- /data/data/####/QH_SDK_M2.xml
- /data/data/####/QH_SDK_UserData.xml
- /data/data/####/QK_AService.zip
- /data/data/####/QK_AService.zip (deleted)
- /data/data/####/QK_AService.zip.bvg
- /data/data/####/TQHStatAgentEx.dex
- /data/data/####/TQHStatAgentEx.dex (deleted)
- /data/data/####/Tconfigcenterproxy-api.1.0.5.dex
- /data/data/####/Tconfigcenterproxy-api.1.0.5.dex (deleted)
- /data/data/####/adflag.png
- /data/data/####/adflag.png (deleted)
- /data/data/####/back.png
- /data/data/####/back.png (deleted)
- /data/data/####/classes.dex
- /data/data/####/classes.dex (deleted)
- /data/data/####/close.png
- /data/data/####/close.png (deleted)
- /data/data/####/com.android.giftbox.xml
- /data/data/####/dynamic.apk
- /data/data/####/dynamic.apk (deleted)
- /data/data/####/filedownloader.db-journal
- /data/data/####/magaizne_ad_bg_default.png
- /data/data/####/qkas_upload.xml
- /data/data/####/qksdkapp.xml
- /data/data/####/qksdkapp.xml (deleted)
- /data/data/####/refrush.png
- /data/data/####/refrush.png (deleted)
- /data/data/####/tv_link_icon.png
- /data/data/####/tv_link_icon.png (deleted)
- /data/data/####/usage.xml
- /data/data/####/user_desc.xml
- /data/data/####/zookongsdkapp.xml
- /data/media/####/1eW
- /data/media/####/1eW (deleted)
- /data/media/####/4y9
- /data/media/####/4y9 (deleted)
- /data/media/####/IQ4
- /data/media/####/IQ4 (deleted)
- /data/media/####/tHN
- /data/media/####/tHN (deleted)
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding