Technical information
- Android.Backdoor.613.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) v####.api.eeric####.com:80
- TCP(HTTP/1.1) yuey####.ld####.com:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- TCP(TLS/1.0) res-jar####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- i####.cn.com
- pg.x####.com
- res-jar####.oss-cn-####.aliy####.com
- ssl.gst####.com
- v####.api.eeric####.com
- www.go####.com
- www.go####.nl
- www.gst####.com
- yuey####.ld####.com
- v####.api.eeric####.com/api/payment/updateinit_v2
- yuey####.ld####.com/channel/paymentHandle.action?requestId=####&v=####
- /data/data/####/3c1e0985093cceca4f16f5f8da551f103|account_file.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/libexec.so
- /data/data/####/onib_clz.jar
- /data/data/####/pay_plg.jar
- /data/data/####/pref_file.xml
- /data/data/####/reg.df.rrtg.dxty.xml
- /data/data/####/reg.df.rrtg.dxty.xml (deleted)
- /data/data/####/reg.df.rrtg.dxty_preferences.xml
- /data/data/####/shunpay_config
- /data/data/####/talkingdata_app.db-journal
- /data/data/####/talkingdata_app_process_preferences_file
- /data/data/####/talkingdata_app_version_preferences_file
- /data/data/####/td_pefercen_profile.xml
- /data/data/####/tdid.xml
- /data/media/####/.tcookieid
- /data/media/####/reg.df.rrtg.dxty_250026699187743_20180516_pay.log
- /data/media/####/spay_v10034.dex
- getprop ro.product.cpu.abi
- cocos2dcpp
- libexec
- shunpay
- DES-CBC-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding