Technical information
- 12114: <IMSI>A
- Android.SmsSend.11446
- Android.SmsSend.1848.origin
- UDP(DNS) <Google DNS>
- TCP(GCM) <Google Host>
- TCP(HTTP/1.1) jt####.com:8082
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) f.nenglia####.cn:8090
- TCP(HTTP/1.1) 1####.129.132.111:8001
- TCP(HTTP/1.1) z####.com:9500
- TCP(HTTP/1.1) sdk.hzzr####.com:80
- TCP(HTTP/1.1) 1####.74.111.56:9039
- TCP(HTTP/1.1) x####.xl-####.cn:80
- TCP(HTTP/1.1) jiazi####.b0.a####.com:80
- TCP(HTTP/1.1) s####.z####.cn:80
- TCP(HTTP/1.1) tend####.b0.upa####.com:80
- TCP(HTTP/1.1) 754####.10####.com:80
- TCP(HTTP/1.1) wap.cm####.com:80
- TCP(HTTP/1.1) ut####.cn:8080
- TCP(HTTP/1.1) ip.ta####.com:80
- TCP(HTTP/1.1) api.ipa####.cn:80
- UDP(NTP) 2.and####.p####.####.org:123
- TCP(TLS/1.0) and####.cli####.go####.com:443
- 2.and####.p####.####.org
- 754####.10####.com
- a####.c####.com
- a####.u####.com
- a.abk####.com
- and####.cli####.go####.com
- ap####.yiwe####.com
- api.ipa####.cn
- c####.vu####.com
- c.abk####.com
- c.lv####.com
- cdn10####.b0.upa####.com
- dl.lands####.net
- f####.onew####.cn
- f.nenglia####.cn
- ip.ta####.com
- jt####.com
- l####.hao####.net
- mt####.go####.com
- s####.z####.cn
- sdk.hzzr####.com
- t####.neihan####.com
- ut####.cn
- vi.junma####.com
- wap.cm####.com
- www.tb####.com
- www.vu####.com
- x####.xl-####.cn
- z####.com
- 754####.10####.com/api7tb/getAdsOftbApi.php?imei=####&appkey=####&provin...
- 754####.10####.com/api7tbkj/getAdsOftbkjApi.php?imei=####&appkey=####&pr...
- 754####.10####.com/tubiaoApi.php?imei=####&appkey=####&adkey=####
- f.nenglia####.cn:8090/afee?cpid=####&appfee_id=####&fee=####&smsc=####&i...
- f.nenglia####.cn:8090/getdata?cpid=####&packagename=####
- f.nenglia####.cn:8090/getjar?cpid=####&packagename=####&ismi=####&versio...
- f.nenglia####.cn:8090/phoneget?cpid=####&ismi=####&calltime=####&callcou...
- jiazi####.b0.a####.com/1000su/app/aikantv.png
- jiazi####.b0.a####.com/1000su/app/daoguoshipin.png
- jiazi####.b0.a####.com/1000su/app/jskb.png
- jiazi####.b0.a####.com/1000su/app/miyingshipin.png
- jiazi####.b0.a####.com/1000su/app/xiuxiukanpian.png
- jiazi####.b0.a####.com/1000su/uploads/icon/2016-01-14/a8591d0da3ab4417a4...
- jiazi####.b0.a####.com/1000su/uploads/icon/meinvboke/meinvboke.png
- jiazi####.b0.a####.com/GG_50008_v3.0.apk
- s####.z####.cn/GetFeeData.aspx?iswifi=####
- s####.z####.cn/getconfig.aspx?
- s####.z####.cn/versioncheck.aspx?
- sdk.hzzr####.com/GetFeeData.aspx?iswifi=####
- sdk.hzzr####.com/getconfig.aspx?
- sdk.hzzr####.com/versioncheck.aspx?
- wap.cm####.com/r/409537199/index.htm?cm=####
- api.ipa####.cn/
- jt####.com:8082/feeinfo
- jt####.com:8082/net
- jt####.com:8082/register
- ut####.cn:8080/excalibur/avalon/sdk/init.aspx
- ut####.cn:8080/excalibur/avalon/sdk/pay.aspx
- x####.xl-####.cn/sdkServer/pay
- <Package Folder>/EOZTzhVG.jar
- <Package Folder>/app_dex/utopay.jar
- <Package Folder>/app_dex/utopay_close.png
- <Package Folder>/app_dex/utopay_icon.gif
- <Package Folder>/baea/entrance.jar
- <Package Folder>/baea/mapa.jar
- <Package Folder>/cache/####/1505948654344
- <Package Folder>/databases/MA_epay_db
- <Package Folder>/databases/MA_epay_db-journal
- <Package Folder>/databases/bil_db
- <Package Folder>/databases/bil_db-journal
- <Package Folder>/databases/database-journal
- <Package Folder>/databases/mp.db
- <Package Folder>/databases/mp.db-journal
- <Package Folder>/databases/sms_db
- <Package Folder>/databases/sms_db-journal
- <Package Folder>/databases/utopay.db
- <Package Folder>/databases/utopay.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/xl_thirdpay.db
- <Package Folder>/databases/xl_thirdpay.db-journal
- <Package Folder>/files/####/libcrypt_sign.so
- <Package Folder>/files/####/libcryptooperad.so
- <Package Folder>/files/####/libkjOnlinePay.so
- <Package Folder>/files/####/libplugin_phone.so
- <Package Folder>/files/####/libus.so
- <Package Folder>/files/bean_101.dat
- <Package Folder>/files/cfg.data
- <Package Folder>/files/filter.data
- <Package Folder>/files/mj.apk
- <Package Folder>/files/mobclick_agent_cached_<Package>
- <Package Folder>/files/old.jar
- <Package Folder>/files/rec_101.dat
- <Package Folder>/files/wap_101.dat
- <Package Folder>/libus.lock
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/<Package>_preferences.xml.bak
- <Package Folder>/shared_prefs/MYYR.xml
- <Package Folder>/shared_prefs/c_sp.xml
- <Package Folder>/shared_prefs/cpMsg.xml
- <Package Folder>/shared_prefs/data.xml
- <Package Folder>/shared_prefs/device_id.xml.xml
- <Package Folder>/shared_prefs/edition.xml
- <Package Folder>/shared_prefs/ma_call.xml
- <Package Folder>/shared_prefs/ma_call.xml.bak
- <Package Folder>/shared_prefs/ma_data.xml
- <Package Folder>/shared_prefs/ma_data.xml.bak
- <Package Folder>/shared_prefs/ma_epay_share.xml
- <Package Folder>/shared_prefs/ma_phone.xml
- <Package Folder>/shared_prefs/mobclick_agent_header_<Package>.xml
- <Package Folder>/shared_prefs/mobclick_agent_state_<Package>.xml
- <Package Folder>/shared_prefs/mobclick_agent_state_<Package>.xml.bak
- <Package Folder>/shared_prefs/new_vvsion.xml
- <Package Folder>/shared_prefs/nnt_data.xml
- <Package Folder>/shared_prefs/ui.xml
- <Package Folder>/shared_prefs/ui.xml.bak
- <Package Folder>/shared_prefs/wb.xml
- <Package Folder>/shared_prefs/wb.xml.bak
- <Package Folder>/shared_prefs/yunchao_sp.xml
- <Package Folder>/shared_prefs/zhangpay_share.xml
- <Package Folder>/shared_prefs/zhangpay_share.xml.bak
- <Package Folder>/shared_prefs/zhangpay_sms_info.xml
- <Package Folder>/shared_prefs/zhangpay_sms_info.xml.bak
- <SD-Card>/.yrdata/GG_50008_v3.0.apk_tmp
- <SD-Card>/.yrdata/a8591d0da3ab4417a4613d66e183d43c.pngdm
- <SD-Card>/.yrdata/aikantv.pngdm
- <SD-Card>/.yrdata/daoguoshipin.pngdm
- <SD-Card>/.yrdata/jskb.pngdm
- <SD-Card>/.yrdata/meinvboke.pngdm
- <SD-Card>/.yrdata/miyingshipin.pngdm
- <SD-Card>/.yrdata/xiuxiukanpian.png_tmp
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/Android/####/journal.tmp
- <SD-Card>/gooogle/userid.cfg
- getprop apps.customerservice.device
- plugin_phone
- us
- uuoin
- AES-ECB-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DES