Technical information
- Android.RemoteCode.127.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) sh.wagbr####.alibaba####.com:80
- TCP(HTTP/1.1) amdc####.m.ta####.com:80
- TCP(HTTP/1.1) app.xbmj####.com:80
- TCP(TLS/1.0) api.s####.com:443
- TCP(TLS/1.0) msg.umengc####.com:443
- TCP umengj####.m.ta####.com:443
- TCP ope####.m.ta####.com:443
- ag####.m.ta####.com
- amdc####.m.ta####.com
- api.s####.com
- app.xbmj####.com
- log.u####.com
- msg.umengc####.com
- s####.u####.com
- umen####.m.ta####.com
- umengj####.m.ta####.com
- app.xbmj####.com/xiaobaima_api_v2/upload/ydt/y_0.png
- app.xbmj####.com/xiaobaima_api_v2/upload/ydt/y_1.png
- app.xbmj####.com/xiaobaima_api_v2/upload/ydt/y_2.png
- app.xbmj####.com/xiaobaima_api_v2/upload/ydt/y_3.png
- app.xbmj####.com/xiaobaima_api_v2/upload/ydt/y_5.png
- sh.wagbr####.alibaba####.com/bar/get/59dde162b27b0a42a0000237/?ud_get=####
- amdc####.m.ta####.com/amdc/mobileDispatch?appkey=####&deviceId=####&plat...
- app.xbmj####.com/xiaobaima_api_v2/index.php/api/getShopUrl
- app.xbmj####.com/xiaobaima_api_v2/index.php/api/getydtList
- app.xbmj####.com/xiaobaima_api_v2/index.php/api/nav_url
- /data/data/####/.jg.ic
- /data/data/####/1523217225987.log
- /data/data/####/ACCS_BINDumeng;59dde162b27b0a42a0000237.xml
- /data/data/####/ACCS_SDK.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml.bak
- /data/data/####/AGOO_BIND.xml
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/DaemonServer
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/accs.db-journal
- /data/data/####/agoo.pid
- /data/data/####/config.xml
- /data/data/####/eudemon
- /data/data/####/libjiagu-560775655.so
- /data/data/####/message_accs_db
- /data/data/####/message_accs_db-journal
- /data/data/####/setting.xml
- /data/data/####/sobot_chat_20180408_log.txt
- /data/data/####/sobot_config.xml
- /data/data/####/umeng_socialize.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromium.db-journal (deleted)
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.nomedia
- /data/media/####/02957d868228496a9024ae8a3ddf3337
- /data/media/####/6c8ae64ef0f54a7fa7bbda8e93316778
- /data/media/####/9bdc9479057042d59b485b63081f56c5
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/deviceToken
- /data/media/####/e4f8dbfc50ed4bfbaa446f96bdabf623
- <Package Folder>/files/DaemonServer -s <Package Folder>/lib/ -n runServer -p startservice -n <Package>/com.taobao.accs.ChannelService --user 0 -f <Package Folder> -t 600 -c agoo.pid -P <Package Folder> -K 1009527 -U tb_accs_eudemon_1.1.3 -L http://agoodm.m.taobao.com/agoo/report -D {"package":"<Package>","appKey":"umeng:59dde162b27b0a42a0000237","utdid":"WspzSd3yOL8DAGdzx1HK4DpR","sdkVersion":"221"} -I agoodm.m.taobao.com -O 80 -T -Z
- chmod 755 <Package Folder>/.jiagu/libjiagu-560775655.so
- sh
- libjiagu-560775655
- tnet-3.1
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-NoPadding