Executes the following shell scripts:
- chmod 700 <Package Folder>/app_bin/daemon
- id
- mars_d -p <Package> -s <Package>.service.Service2 -p1r 45 -p1w 46 -p2r 47 -p2w 48
- ps
- sh -c <Package Folder>/files/sux <Package> weixin <IMEI> /storage/emulated/legacy/data/tmp 00
- sh -c cat /proc/self/cgroup
- sh -c su -c '<Package Folder>/files/sux <Package> rapk /storage/emulated/legacy/data/tmp 00'
- sh -c su -c '<Package Folder>/files/sux <Package> weixin <IMEI> /storage/emulated/legacy/data/tmp 00'
- su -c <Package Folder>/files/sux <Package> rapk /storage/emulated/legacy/data/tmp 00
- su -c <Package Folder>/files/sux <Package> weixin <IMEI> /storage/emulated/legacy/data/tmp 00
- su -c id
Loads the following dynamic libraries:
- check
- daemon_api20
- libmina
- locSDK7b
Uses the following algorithms to encrypt data:
Uses the following algorithms to decrypt data:
Uses elevated priveleges.
Accesses audio/video recording interfaces.
Records audio/video.
Accesses camera interface.
Gets information about location.
Gets information about network.
Gets information about phone status (number, IMEI, etc.).
Gets information about installed apps.
Displays its own windows over windows of other apps.
Gets information about incoming/outgoing calls.
Gets information about sent/received SMS.