Technical information
- Android.Moplus.1
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) oth.eve.mdt.####.com:8080
- TCP(HTTP/1.1) oth.str.mdt.####.com:8080
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) app.qb####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) reso####.msg.xi####.net:80
- TCP(HTTP/1.1) m.b####.com:80
- TCP(HTTP/1.1) pg.x####.com:80
- UDP(NTP) 1.cn.p####.####.org:123
- TCP(TLS/1.0) jic.talking####.com:443
- TCP(TLS/1.0) app.x####.com:443
- TCP(TLS/1.0) www.qb####.com:443
- TCP(TLS/1.0) app.qb####.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) fp.fraudme####.cn:443
- TCP(TLS/1.0) ope####.b####.com:443
- TCP(TLS/1.0) m####.f####.com:16128
- TCP c####.g####.ig####.com:5225
- TCP sdk.o####.t####.####.com:5224
- TCP 1####.54.23.116:5222
- 1.cn.p####.####.org
- LB-IM-1####.ap-sout####.elb.####.com
- a####.u####.com
- app.qb####.com
- app.x####.com
- bbs.qb####.com
- c####.g####.ig####.com
- c.sz.gt.####.com
- fp.fraudme####.cn
- i####.cn
- jic.talking####.com
- m####.f####.com
- m.b####.com
- mt####.go####.com
- oc.u####.com
- ope####.b####.com
- oth.eve.mdt.####.com
- oth.str.mdt.####.com
- pg.x####.com
- regi####.xm####.xi####.com
- reso####.msg.xi####.net
- sdk.c####.ig####.com
- sdk.o####.i####.####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- www.qb####.com
- app.qb####.com/qbmapp/api/getAppUrl.html
- reso####.msg.xi####.net/gslb/?ver=####&type=####&uuid=####&list=####&key...
- a####.u####.com/app_logs
- m.b####.com/xcloudboss?r=####&pkgname=####&ver=####&pu=####
- m.b####.com/xcloudboss?r=####&type=####
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- oth.eve.mdt.####.com:8080/analytics/upload?rid=####&sid=####
- oth.str.mdt.####.com:8080/analytics/upload
- oth.str.mdt.####.com:8080/analytics/upload?sid=####
- pg.x####.com/api/q/a/3cff577985556567209c8fa8131303f63
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/-1317398305665725031
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/Beacon_sig_1.lock
- /data/data/####/DENGTA_META.xml
- /data/data/####/TDCloudSettingsConfig0C8662BE5E88719737C444AED18493D8.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/agreement_book.html
- /data/data/####/agreement_book_fast.html
- /data/data/####/back_holo_dark.png
- /data/data/####/back_holo_light.png
- /data/data/####/bank_list.html
- /data/data/####/beacon_db-journal
- /data/data/####/card_manager.html
- /data/data/####/card_setup.html
- /data/data/####/card_setup_credit.html
- /data/data/####/card_setup_debit.html
- /data/data/####/card_setup_fucard.html
- /data/data/####/card_setup_two.html
- /data/data/####/chkbtn.png
- /data/data/####/chkbtn_cur.png
- /data/data/####/com.qianbaomu.view.push_sync.xml
- /data/data/####/com.qianbaomu.view;pushservice
- /data/data/####/com.qianbaomu.view_preferences.xml
- /data/data/####/common.css
- /data/data/####/common.js
- /data/data/####/cordova.js
- /data/data/####/first_pref.xml
- /data/data/####/fm_shared.xml
- /data/data/####/httpRequest.js
- /data/data/####/increment.db-journal
- /data/data/####/index.html
- /data/data/####/init.pid
- /data/data/####/init_c.pid
- /data/data/####/jquery-2.1.1.min.js
- /data/data/####/jquery.mobile-1.4.2.min.css
- /data/data/####/jquery.mobile-1.4.2.min.js
- /data/data/####/jquery.touchSwipe.min.js
- /data/data/####/libjiagu.so
- /data/data/####/localData.js
- /data/data/####/logo.png
- /data/data/####/md5.js
- /data/data/####/mipush.xml
- /data/data/####/mipush_account.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/mobclick_agent_cached_com.qianbaomu.view50
- /data/data/####/mobclick_agent_online_setting_com.qianbaomu.view.xml
- /data/data/####/mobilepaysdk.zip
- /data/data/####/mobiscroll.core.js
- /data/data/####/mobiscroll.datetime.js
- /data/data/####/mobiscroll.scroller.css
- /data/data/####/mobiscroll.scroller.js
- /data/data/####/moplus_psetting.xml
- /data/data/####/moplus_server_config.db-journal
- /data/data/####/mpush_app.db-journal
- /data/data/####/mpush_gateway_preferences_file
- /data/data/####/mpush_version_preferences_file
- /data/data/####/mustache.js
- /data/data/####/pay.js
- /data/data/####/pay_pwd_setup.html
- /data/data/####/payment.html
- /data/data/####/pst.xml
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qianbaomu.xml
- /data/data/####/reset.css
- /data/data/####/result.html
- /data/data/####/run.pid
- /data/data/####/session.xml
- /data/data/####/sharedpref.xml
- /data/data/####/spin.min.js
- /data/data/####/style.css
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/tdlock.txt
- /data/data/####/tj.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/version.json
- /data/data/####/xml2json.js
- /data/media/####/.cuid
- /data/media/####/.fraudmetrixid
- /data/media/####/.nomedia
- /data/media/####/.tcookieid
- /data/media/####/1q67y253utwg5xgodi0an0fhv.tmp
- /data/media/####/2zpe4os72otk2vm6spxya85et.tmp
- /data/media/####/30f3e36bcbac3c28b6be3f525ec6f6e8
- /data/media/####/46dlcganoqcgzdjj8m3dtje2n.tmp
- /data/media/####/483fcf080d7467b462bfdcf685c1e24d
- /data/media/####/app.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.qianbaomu.view.db
- /data/media/####/e51ec2a136f775c2f2b2f48b158ff045
- /data/media/####/meta.dat
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop net.dns1
- getprop ro.product.device
- getprop ro.product.model
- getprop ro.product.name
- getprop ro.serialno
- ls -l /system/bin/su
- ls -l /system/xbin/su
- libjiagu
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding