Technical information
- Android.BackDoor.985
- Android.Triada.467.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) api.bi####.com:80
- TCP(HTTP/1.1) 4####.33.9.178:80
- TCP(HTTP/1.1) www.okyes####.com:8081
- TCP(HTTP/1.1) api.f####.com:80
- TCP(HTTP/1.1) www.koapk####.com:8081
- api.bi####.com
- api.f####.com
- www.koapk####.com
- www.okyes####.com
- api.f####.com/co?u=####&s=####&gaid=####&imei=####&androidId=####&at=###...
- api.bi####.com/un
- www.koapk####.com:8081/sm/sr/rt/ry
- www.okyes####.com:8081/sdk/nsd.action?b=####
- /data/data/####/20160121.xml
- /data/data/####/201908191150.apk
- /data/data/####/201908191150.dex
- /data/data/####/68bb1a82-b615-4e71-a38b-3888ad64a7d8.jar
- /data/data/####/84133269.apk
- /data/data/####/84133269.dex
- /data/data/####/8494d73e-3843-48d4-92d5-20e63300d27e.jar
- /data/data/####/MobikokCommonConfig.xml
- /data/data/####/MobikokCommonConfig.xml.bak
- /data/data/####/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- /data/data/####/a243a898-5fc8-4275-b49d-aa00ba1b2af2.dex (deleted)
- /data/data/####/a243a898-5fc8-4275-b49d-aa00ba1b2af2.jar
- /data/data/####/ag.xml
- /data/data/####/bdownloaders.db
- /data/data/####/bdownloaders.db-journal
- /data/data/####/c201908191150.apk
- /data/data/####/ja201908091350.data
- /data/data/####/rtr.db
- /data/data/####/rtr.db-journal
- /data/data/####/swith1014.db
- /data/data/####/swith1014.db-journal
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- app_process /system/bin com.android.commands.pm.Pm path <Package>
- awk {print $9}
- grep 2143
- grep 3092
- logcat -d -v time
- md5 /data/app/<Package>-1.apk
- ps
- sh
- com.xoele
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding