http://www.iykpqm7jiradoeezzkhj7c4b33g4hbgfwelht2evxxeicbpjy44c7ead.onion/deeplinks/2022/04/anatomy-android-malware-dropper
When first doing this investigation, the domain referenced yuuzzlllaa.xyz , but this has since changed to zhgggga.in . We can see a login page for the C & C server administrator when accessed: One of the main features of the Tor network is censorship-resistance. If you can access the Tor network, you can access information and websites that cannot easily be taken down because of the way the network is architected.