Technical information
- Android.RemoteCode.907
- Android.SmsSend.1848.origin
- Android.Xiny.1513
- Android.Xiny.240.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i####.api.qiazhiw####.cn:10003
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10002
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10201
- TCP(HTTP/1.1) wn.qiazhiw####.cn.####.net:80
- TCP(HTTP/1.1) 1####.62.69.130:80
- TCP(HTTP/1.1) gdv.a.s####.com:80
- TCP(HTTP/1.1) 1####.29.147.201:8003
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10101
- TCP(HTTP/1.1) a.xunfa####.cn:8090
- TCP(HTTP/1.1) 2####.73.211.68:5292
- TCP(HTTP/1.1) q####.a####.com:80
- TCP(HTTP/1.1) 1####.55.93.104:9004
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) wb.cn####.com:80
- TCP(HTTP/1.1) 1####.159.131.193:10201
- TCP(HTTP/1.1) sm####.bingfe####.cn:80
- TCP(HTTP/1.1) e.angs####.com:6284
- TCP(HTTP/1.1) p1.i####.cc:80
- TCP(HTTP/1.1) 1####.129.132.111:8001
- TCP(HTTP/1.1) ji####.jieme####.com:8152
- TCP(HTTP/1.1) www.3####.com:8081
- TCP(HTTP/1.1) v####.api.eeric####.com:80
- TCP(HTTP/1.1) sdk.api.qiazhiw####.cn:10001
- TCP(HTTP/1.1) d.angs####.com:5284
- TCP(HTTP/1.1) yuey####.ld####.com:80
- TCP(TLS/1.0) 2####.58.212.142:443
- a####.u####.com
- a.xunfa####.cn
- c####.api.qiazhiw####.cn
- d.angs####.com
- e.angs####.com
- i####.api.qiazhiw####.cn
- i####.api.qiazhiw####.cn
- ji####.dl####.com
- ji####.jieme####.com
- l####.i####.cc
- p1.i####.cc
- pv.s####.com
- re####.api.qiazhiw####.cn
- sdk.api.qiazhiw####.cn
- sm####.bingfe####.cn
- v####.api.eeric####.com
- wb.cn####.com
- wc.cn####.com
- wn.qiazhiw####.cn
- www.3####.com
- yuey####.ld####.com
- a.xunfa####.cn:8090/afee?cpid=####&appfee_id=####&fee=####&smsc=####&ims...
- a.xunfa####.cn:8090/getdata?cpid=####&packagename=####
- a.xunfa####.cn:8090/phoneget?cpid=####&ismi=####&calltime=####&callcount...
- gdv.a.s####.com/cityjson?ie=####
- q####.a####.com/jieplginf/wchzfdat25
- wn.qiazhiw####.cn.####.net/update/up10107090
- a####.u####.com/app_logs
- d.angs####.com:5284/android.frontserver/pcsvc?r=####
- e.angs####.com:6284/android.frontserver/pcsvc
- i####.api.qiazhiw####.cn:10003/v2/chis
- ji####.jieme####.com:8152/ryf_webserver/payment/checkupdate.html
- p1.i####.cc/index.php/MC/HB
- p1.i####.cc/index.php/MC/LP
- p1.i####.cc/index.php/MC/RP
- sdk.api.qiazhiw####.cn:10001/v2/adconfig/get?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/bag/monitor?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/sdk/init?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10001/v2/update/check?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10002/v2/callback/message?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/order/get?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10101/v2/splog/config?app_id=####&t=####
- sdk.api.qiazhiw####.cn:10201/v2/sdk/report?app_id=####&t=####
- sm####.bingfe####.cn/getspsms159.php
- v####.api.eeric####.com/api/payment/mobileInit.html
- v####.api.eeric####.com/api/payment/payDynamic.html
- wb.cn####.com//a?v=####&r=####&z=####
- www.3####.com:8081/e/mmc
- yuey####.ld####.com/channel/paymentHandle.action?requestId=####&v=####
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1B3A2967E5FD862EFD957606C65C8122
- /data/data/####/30592A6B8B0C769E3F7FDE6E1A033DF5
- /data/data/####/347781996620052-journal
- /data/data/####/D99494BB10D048C393648C204AF8AA38
- /data/data/####/F85C58A2196623557E8A00D8A4680702
- /data/data/####/JiePay.xml
- /data/data/####/MA_epay_db
- /data/data/####/MA_epay_db-journal
- /data/data/####/b.d
- /data/data/####/cb.d
- /data/data/####/cbn.d
- /data/data/####/cbn_d.d
- /data/data/####/cbs.d
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com_android_command_nn_v.xml
- /data/data/####/config50238.xml
- /data/data/####/constantcd.xml
- /data/data/####/csdksession.xml
- /data/data/####/d_h_d.d
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/jiepay_config.xml
- /data/data/####/jiepayplugin.apk
- /data/data/####/jiepayplugin.apkdata
- /data/data/####/jiepaysmspay.db
- /data/data/####/jiepaysmspay.db-journal
- /data/data/####/kb_idle.ini
- /data/data/####/kes.xml
- /data/data/####/kv_cf.ini
- /data/data/####/libjiagu-87326129.so
- /data/data/####/lt.d
- /data/data/####/ma_call.xml
- /data/data/####/ma_data.xml
- /data/data/####/ma_epay_share.xml
- /data/data/####/ma_phone.xml
- /data/data/####/mai.egmkaEOR.RBfy.com.sdk.a.a_mseg.db
- /data/data/####/mai.egmkaEOR.RBfy.com.sdk.a.a_mseg.db-journal
- /data/data/####/mai.egmkaEOR.RBfy.xml
- /data/data/####/mai.egmkaEOR.RBfy.xml.bak (deleted)
- /data/data/####/mai.egmkaEOR.RBfy_preferences.xml
- /data/data/####/new_md.jar
- /data/data/####/newfoq.jar
- /data/data/####/nn.jaru
- /data/data/####/nn_app.xml
- /data/data/####/pcn.d
- /data/data/####/pcs.d
- /data/data/####/pgb.d
- /data/data/####/ppashow.dat
- /data/data/####/pretw.xml
- /data/data/####/pretw6000050ZYXD_P25327_1222.xml
- /data/data/####/sdk_DB-journal
- /data/data/####/shunpay_config
- /data/data/####/twc.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/up10107090
- /data/data/####/up10107090.jar
- /data/data/####/v2c5w0x082l6g6D9j9B178k7n7s403.xml
- /data/data/####/webview.db-journal
- /data/data/####/wx.d
- /data/data/####/yy.dt
- /data/data/####/zfb.d
- /data/data/####/{6109AB2B-769CFABF}_{B6476C79-722ACEF0}.P2
- /data/data/####/{B6476C79-722ACEF0}.P1
- /data/data/####/{B6476C79-722ACEF0}.P3
- /data/data/####/{BE2355DB-D785E335}.PC1
- /data/media/####/NDID.DAT
- /data/media/####/UIW.DAT
- /data/media/####/WyyyCrashLog_20180920133132_2289.log
- /data/media/####/msg.db
- /data/media/####/msg.db-journal
- /data/media/####/order
- /data/media/####/tw
- /data/media/####/userid.cfg
- /data/media/####/yydd_3009_2323.zip
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- cat /sys/block/mmcblk0/device/cid
- chmod 755 <Package Folder>/.jiagu/libjiagu-87326129.so
- getprop ro.product.cpu.abi
- cocos2dcpp
- libjiagu-87326129
- shunpay
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES
- DES-CBC-PKCS5Padding
- DES-ECB-PKCS5Padding
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES
- DES-CBC-PKCS5Padding
- DES-ECB-PKCS5Padding