Technical information
- Android.Backdoor.371.origin
- Android.Backdoor.371.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) t####.s####.com:80
- TCP(HTTP/1.1) doud####.com:8080
- TCP(HTTP/1.1) doud####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) a####.doud####.com:80
- TCP(HTTP/1.1) pan.b####.com:80
- TCP(TLS/1.0) s####.com:443
- TCP(TLS/1.0) www.google-####.com:443
- TCP(TLS/1.0) c####.jq####.com:443
- TCP(TLS/1.0) ma####.bootstr####.com:443
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) pan.b####.com:443
- TCP(TLS/1.0) img.you####.com:443
- TCP(TLS/1.0) f####.google####.com:443
- TCP(TLS/1.0) sett####.crashly####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) d31qbv1####.cloudf####.net:443
- TCP(TLS/1.0) c####.cloudf####.com:443
- TCP(TLS/1.0) cer####.alexame####.com:443
- 0.oklasnf####.d####.com
- a####.doud####.com
- a####.u####.com
- ac####.c####.twinp####.com
- c####.cloudf####.com
- c####.jq####.com
- cer####.alexame####.com
- d31qbv1####.cloudf####.net
- doud####.com
- f####.google####.com
- f####.gst####.com
- img.you####.com
- ma####.bootstr####.com
- pan.b####.com
- pri####.s####.com
- s####.com
- sett####.crashly####.com
- ssl.google-####.com
- t####.s####.com
- www.google-####.com
- a####.doud####.com/a4d7bfeed0556e351450428584122.dex
- doud####.com/update.html?version=####
- pan.b####.com/s/18E2tH
- t####.s####.com/
- a####.u####.com/app_logs
- doud####.com:8080/adCenter/ad/get
- doud####.com:8080/adCenter/app/get
- doud####.com:8080/adCenter/seo/get
- /data/data/####/.imprint
- /data/data/####/5C40D8A20269-0001-08ED-C0F93B82DAEBBeginSession.cls_temp
- /data/data/####/5C40D8A20269-0001-08ED-C0F93B82DAEBSessionApp.cls_temp
- /data/data/####/5C40D8A20269-0001-08ED-C0F93B82DAEBSessionDevice.cls_temp
- /data/data/####/5C40D8A20269-0001-08ED-C0F93B82DAEBSessionOS.cls_temp
- /data/data/####/5C40D8A20269-0001-08ED-C0F93B82DAEBSessionUser.cls_temp
- /data/data/####/5C40D8A3024F-0002-08ED-C0F93B82DAEBBeginSession.cls_temp
- /data/data/####/5C40D8A3024F-0002-08ED-C0F93B82DAEBSessionApp.cls_temp
- /data/data/####/5C40D8A3024F-0002-08ED-C0F93B82DAEBSessionDevice.cls_temp
- /data/data/####/5C40D8A3024F-0002-08ED-C0F93B82DAEBSessionOS.cls_temp
- /data/data/####/SHOTS_DB-journal
- /data/data/####/com.a.a.a.c.xml
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/dbname
- /data/data/####/dbname-journal
- /data/data/####/ddcp.dex
- /data/data/####/ddspname.xml
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v2.db-journal
- /data/data/####/initialization_marker
- /data/data/####/sa_07a2b2bc-fc2b-4af0-a464-8e913eb19df6_1547753634829.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/sharedPreferencesName.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/media/####/core.dex
- AES-ECB-PKCS7Padding
- AES-ECB-PKCS5Padding