Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) a####.umengc####.com:80
- TCP(TLS/1.0) 2####.58.212.174:443
- TCP(TLS/1.0) g####.j####.com:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) lbs.net####.im:443
- TCP(TLS/1.0) dt.net####.im:443
- TCP(TLS/1.0) nim.qi####.com:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) qy-swa####.qi####.com:443
- TCP(TLS/1.0) api.bugfe####.com:443
- TCP l####.net####.im:8080
- a####.u####.com
- a####.umengc####.com
- and####.b####.qq.com
- api.bugfe####.com
- dt.net####.im
- g####.j####.com
- l####.net####.im
- lbs.net####.im
- mt####.go####.com
- nim.qi####.com
- oc.u####.com
- plb####.u####.com
- qy-swa####.qi####.com
- res####.a####.com
- u####.u####.com
- a####.u####.com/app_logs
- a####.umengc####.com/app_logs
- and####.b####.qq.com/rqd/async?aid=####
- oc.u####.com/v2/get_update_time
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1004
- /data/data/####/1d2b904cbeadfb72ed9546111a231c85.0
- /data/data/####/MultiDex.lock
- /data/data/####/NIMSDK_Config_650c1d35081401ec7f54d26eb73fb972.xml
- /data/data/####/NIMSDK_Config_650c1d35081401ec7f54d26eb73fb972_...96.xml
- /data/data/####/Unicorn.650c1d35081401ec7f54d26eb73fb972.xml
- /data/data/####/bugfender.device.key.xml
- /data/data/####/bugfender.preferences.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/c0586a10777146560765a69231d89beb.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.qiyukf.analytics.xml
- /data/data/####/crashrecord.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTYzNjg4;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTc1ODQ3;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTcwMjAw;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTg0MjQ4;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTg3OTMx;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTgwNzY1;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMTkzMDY2;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMjA5NTAy;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMjE4MzE1;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUzNzEzMjI2MTgz;
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/i==1.2.0&&1.3.2.1_1553713163854_envelope.log
- /data/data/####/i==1.2.0&&1.3.2.1_1553713209522_envelope.log
- /data/data/####/info.xml
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/k.store
- /data/data/####/kuaihuoyun.xml
- /data/data/####/libjiagu-1392025286.so
- /data/data/####/libweexjsb.so
- /data/data/####/local_crash_lock
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/logs
- /data/data/####/msg.db-journal
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/onlineconfig_agent_online_setting_com.alog.driver.xml
- /data/data/####/pref.xml
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/qiyu_save_650c1d35081401ec7f54d26eb73fb972.xml
- /data/data/####/security_info
- /data/data/####/session.json
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_cache_1553713165736.env
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/unicorn#cheese#
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.nomedia
- /data/media/####/.umm.dat
- /data/media/####/1553713164241.db
- /data/media/####/1553713171282.db
- /data/media/####/1553713176698.db
- /data/media/####/1553713184869.db
- /data/media/####/1553713188564.db
- /data/media/####/1553713194707.db
- /data/media/####/1553713226466.db
- /data/media/####/alsn20170807.db
- /data/media/####/alsn20170807.db-journal
- /data/media/####/kuaihuoyun.log
- /data/media/####/location
- /data/media/####/record.log
- /data/media/####/sysid.dat
- /data/media/####/tmp_u_20190327
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop
- getprop
- ls /sys/class/thermal
- Bugly
- libjiagu-1392025286
- weexjsc
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding
- AES-GCM-NoPadding