Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- UDP(DNS) 1####.29.29.29:53
- TCP(HTTP/1.1) q####.c####.l####.####.com:80
- TCP(HTTP/1.1) qfy.innot####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) api.1####.com:80
- TCP(HTTP/1.1) h####.1####.com:80
- TCP(HTTP/1.1) m####.3g.qq.com:80
- TCP(HTTP/1.1) log.1####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) i####.1####.com:80
- TCP(HTTP/1.1) qfc.innot####.com:80
- TCP(HTTP/1.1) apk.1####.com:80
- TCP(HTTP/1.1) rcv.a####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) ddd.1####.com:80
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(HTTP/1.1) st####.1####.com.####.com:80
- TCP(TLS/1.0) only-14####.ns####.net####.com:443
- TCP(TLS/1.0) upd####.a####.com:443
- TCP(TLS/1.0) only-93####.ns####.net####.com:443
- TCP(TLS/1.0) only-59####.ns####.net####.com:443
- TCP(TLS/1.0) api.w####.com:443
- TCP(TLS/1.0) dualsta####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) cdn.a####.com.####.com:443
- TCP(TLS/1.0) api.1####.com:443
- TCP(TLS/1.0) 2####.107.1.97:443
- TCP(TLS/1.0) st####.1####.com.####.com:443
- TCP(TLS/1.0) static####.qutou####.net:443
- TCP(TLS/1.0) recall-####.1####.com:443
- TCP(TLS/1.0) msg.umengc####.com:443
- TCP(TLS/1.0) ns####.net####.com:443
- TCP cm-1####.ig####.com:5227
- TCP sdk.o####.t####.####.com:5224
- UDP 1####.168.128.1:137
- 7j####.c####.z0.####.com
- a####.man.aliy####.com
- amap####.cn-hang####.oss####.####.com
- and####.b####.qq.com
- api.1####.com
- api.w####.com
- apk.1####.com
- c-h####.g####.com
- cdn.a####.com
- cm-1####.ig####.com
- ddd.1####.com
- h####.1####.com
- i####.1####.com
- log.1####.com
- m####.3g.qq.com
- msg.umengc####.com
- ns####.net####.com
- only-14####.ns####.net####.com
- only-59####.ns####.net####.com
- only-93####.ns####.net####.com
- plb####.u####.com
- pub-####.qin####.com
- qfc.innot####.com
- qfy.innot####.com
- rcv.a####.com
- recall-####.1####.com
- res####.a####.com
- sdk-ope####.g####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- st####.1####.com
- static####.qutou####.net
- u####.u####.com
- upd####.a####.com
- api.1####.com/activity/getActivityCardList?platform=####&lon=####&tuid=#...
- api.1####.com/app/bottomBar?model=####&lon=####&tuid=####&device_code=##...
- api.1####.com/app/coldStart?lon=####&tuid=####&device_code=####&OSVersio...
- api.1####.com/app/coldStart?lon=####&tuid=####&device_code=####&plugins=...
- api.1####.com/app/getAdConfig?lon=####&tuid=####&device_code=####&OSVers...
- api.1####.com/app/getCloudPluginV3?os=####&lon=####&tuid=####&device_cod...
- api.1####.com/app/getConfig?lon=####&tuid=####&device_code=####&OSVersio...
- api.1####.com/app/getGuide?lon=####&tuid=####&device_code=####&OSVersion...
- api.1####.com/app/getResource?os=####&lon=####&tuid=####&device_code=###...
- api.1####.com/app/msgBox?lon=####&tuid=####&device_code=####&OSVersion=#...
- api.1####.com/app/start?model=####&tuid=####&OSVersion=####&from=####&tk...
- api.1####.com/app/updateV2?platform=####&lon=####&tuid=####&OSVersion=##...
- api.1####.com/component/getFeComponentInfo?name=####&currtime=####&sign=...
- api.1####.com/content/getDefaultChannelList?lon=####&tuid=####&device_co...
- api.1####.com/content/getListV2?qdata=Q####
- api.1####.com/guide/logoutGuide?lon=####&tuid=####&device_code=####&OSVe...
- api.1####.com/memberinvite/getSkinDetail?lon=####&tuid=####&device_code=...
- api.1####.com/remain/getIncreaseRead?lon=####&tuid=####&device_code=####...
- api.1####.com/search/getHotwords?version_name=####&tuid=####&sys=####&OS...
- apk.1####.com/qukan_resource_emoji_244_302.apk
- apk.1####.com/qukan_resource_level_897_295.apk
- h####.1####.com/search_middle/release/middle/static/release/middle.zip?l...
- i####.1####.com/module_detail/release/video/release/static/template.zip
- i####.1####.com/module_detail/release/video/release/static/template.zip....
- log.1####.com/a.gif?lon=####&tuid=####&device_code=####&OSVersion=####&d...
- q####.c####.l####.####.com/config/hz-hzv6.conf
- q####.c####.l####.####.com/tdata_EDT369
- q####.c####.l####.####.com/tdata_LRe817
- q####.c####.l####.####.com/tdata_OxN092
- q####.c####.l####.####.com/tdata_bca864
- q####.c####.l####.####.com/tdata_yFl369
- rcv.a####.com/trace?iclicashsid=####&os=####&v=####&op1=Did####&t=####&o...
- sdk.o####.p####.####.com/api/addr.htm
- sh.wagbr####.aliyun####.com/sdkcoor/android/x86/libJni_wgs2gcj.so
- st####.1####.com.####.com/image/sp/2018/09/07/1fb25e7fac2ef1e66bd41e94dd...
- st####.1####.com.####.com/image/sp/2018/12/20/1d0076ef795337253b3f366b11...
- st####.1####.com.####.com/image/sp/2018/12/20/5c1b07cfa429a.png
- st####.1####.com.####.com/image/sp/2019/06/04/5cf5d99d6d9c7.png
- and####.b####.qq.com/rqd/async?aid=####
- api.1####.com/member/isDeviceReport
- api.1####.com/operate/resource/openScreen
- c-h####.g####.com/api.php?format=####&t=####
- ddd.1####.com/report
- m####.3g.qq.com/
- qfc.innot####.com/report/v1
- qfy.innot####.com/report/v1
- sdk-ope####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####&d=####&k=####
- sdk.o####.p####.####.com/api.php?format=####&t=####&d=####&k=####
- sh.wagbr####.aliyun####.com/man/api?ak=####&s=####
- /data/anr/traces.txt
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/028f8df8753c8762d1b9705bb8dad8e0.0.tmp
- /data/data/####/028f8df8753c8762d1b9705bb8dad8e0.1.tmp (deleted)
- /data/data/####/04273ce96b51d4f755c3f585c317e7a458a5a72f5e64c54....0.tmp
- /data/data/####/0df678a7f3143bbd019b845ec9cebd2d
- /data/data/####/1004
- /data/data/####/4077e5503ef4b24525f37558ff2a91f7
- /data/data/####/53e04345727d00ad66c79d76867af6234c33a177855e6be....0.tmp
- /data/data/####/7dff8943197035c6ca0411cdd21bfaee3f69e01d04441b9....0.tmp
- /data/data/####/7e78d79200e8112826994e4d8aa4f911
- /data/data/####/7e78d79200e8112826994e4d8aa4f911.tmp
- /data/data/####/826323f8e625037fca9ee615af2eb214.ttf
- /data/data/####/ACCS_SDK.xml
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/QK_room-journal
- /data/data/####/SupportABImpl.xml
- /data/data/####/T1mru_MFKlAplpJSuaFmlUAfqyEX-0yV
- /data/data/####/T2ECHlUXIGmubCm6vI6AyUPMTbcJZw4Z
- /data/data/####/T5KZnqiauk0jRMrpK7IZYUeIbZQNqbV5
- /data/data/####/T8RPQRgIOH8RvMrUGYOZsEJTo1wsVAT6
- /data/data/####/T9TI98nc8FVompFSyI2Bk0lyJlmXXtLd
- /data/data/####/TMSPropertiesw_s_c.xml
- /data/data/####/TznmyN93huHwvUA4MIu8ZU8hpw-t-P6b
- /data/data/####/_aisdk_local.jar
- /data/data/####/_aisdk_remote.jar
- /data/data/####/_loadremote_config.xml
- /data/data/####/_s_base_switch.xml
- /data/data/####/ab4c5a6c8a9c5c747cb9ca7497aa1d1f
- /data/data/####/accs.db-journal
- /data/data/####/andpatch.xml
- /data/data/####/andpatch_extra.xml
- /data/data/####/avatar_default-5610d054.png
- /data/data/####/b2d8b18f576da3a380d720aec0bacdfdde1f2895e4fc44a....0.tmp
- /data/data/####/base.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/cmd_data_tracker_v2.db
- /data/data/####/cmd_data_tracker_v2.db-journal
- /data/data/####/cmd_data_tracker_v2.db_pushservice
- /data/data/####/cmd_data_tracker_v2.db_pushservice-journal
- /data/data/####/com.jifen.qkbase.web.template.source.SourceManager.xml
- /data/data/####/com.jifen.qukan.xml
- /data/data/####/com.jifen.qukan.xml.bak
- /data/data/####/common.56725196.js
- /data/data/####/common.9c88e62c.css
- /data/data/####/common.acbf1d6f.css
- /data/data/####/common.f5e3c832.js
- /data/data/####/config.json
- /data/data/####/content0Selected.png
- /data/data/####/crashrecord.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTY4MjA1MTMwMjE3;
- /data/data/####/daemon
- /data/data/####/dafile.db
- /data/data/####/dafile.db-journal
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/data_tracker_v2.db
- /data/data/####/data_tracker_v2.db-journal
- /data/data/####/data_tracker_v2.db_pushservice
- /data/data/####/data_tracker_v2.db_pushservice-journal
- /data/data/####/db288d15af70
- /data/data/####/download.zip
- /data/data/####/emoji.apk
- /data/data/####/emoji.cfg
- /data/data/####/emoji.md5
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f4747c234b0f608a33b61a13613e44a9418a6b419aa6118....0.tmp
- /data/data/####/f_000001
- /data/data/####/finch.db-journal
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/gx_sp.xml
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/httpdns_config_cache.xml
- /data/data/####/i==1.2.0&&3.9.42.000.0911.0031_1568205129806_envelope.log
- /data/data/####/ic_return-c01af319.png
- /data/data/####/ic_search-a9054d83.png
- /data/data/####/icon-delete-7e1541c7.png
- /data/data/####/icon-history-28be26f0.png
- /data/data/####/icon-hotnews-3b31a624.png
- /data/data/####/icon_article-77ec0e08.png
- /data/data/####/icon_close_search-bf54bcc6.png
- /data/data/####/icon_hot-fccf250e.png
- /data/data/####/icon_more-9568d56c.png
- /data/data/####/icon_picture-03fc07e6.png
- /data/data/####/icon_play-bcdf2dfb.png
- /data/data/####/icon_qutoutiaohao-98fbbebd.png
- /data/data/####/icon_success-fac4a5d6.png
- /data/data/####/icon_video-567efe5a.png
- /data/data/####/icon_vip-d40ce791.png
- /data/data/####/icon_wemedia_more-897cdcb9.png
- /data/data/####/index
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/level.apk
- /data/data/####/level.md5
- /data/data/####/libijkffmpeg.so
- /data/data/####/libijkffmpeg.so.md5
- /data/data/####/libijkplayer.so
- /data/data/####/libijkplayer.so.md5
- /data/data/####/libijksdl.so
- /data/data/####/libijksdl.so.md5
- /data/data/####/libjiagu-1385524905.so
- /data/data/####/libquid.so
- /data/data/####/lite_qkbase.xml
- /data/data/####/loading-6525f20e.gif
- /data/data/####/local_crash_lock
- /data/data/####/loctemp.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/lottie_cache_httpsstaticossqutoutiaonetjsontime...p.json
- /data/data/####/main_metadata
- /data/data/####/main_metadata.bak
- /data/data/####/middle.7efde61c.js
- /data/data/####/middle.926cf01a.css
- /data/data/####/middle.html
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/noactivity-eaac7382.png
- /data/data/####/noresult-e375458a.png
- /data/data/####/open_screen_image.png
- /data/data/####/pdm.db
- /data/data/####/pdm.db-journal
- /data/data/####/pref.xml
- /data/data/####/proc_monitor_local_rec_main.xml
- /data/data/####/proc_monitor_local_rec_push.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushk.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/qk_app.xml
- /data/data/####/qk_app.xml (deleted)
- /data/data/####/qk_app.xml.bak (deleted)
- /data/data/####/qk_app_optsp.xml
- /data/data/####/qk_crash_report_cache.xml
- /data/data/####/qk_push_sp.xml
- /data/data/####/run.pid
- /data/data/####/search_middle.zip
- /data/data/####/security_info
- /data/data/####/statistic_all_new_log.db
- /data/data/####/statistic_all_new_log.db-journal
- /data/data/####/statistic_all_new_log.db_pushservice
- /data/data/####/statistic_all_new_log.db_pushservice-journal
- /data/data/####/tdata_LRe817
- /data/data/####/tdata_LRe817.jar
- /data/data/####/tdata_OxN092
- /data/data/####/tdata_OxN092.jar
- /data/data/####/tdata_bca864
- /data/data/####/tdata_bca864.jar
- /data/data/####/tdata_yFl369
- /data/data/####/tdata_yFl369.jar
- /data/data/####/template.1c84dfcf.css
- /data/data/####/template.5b6abd95.js
- /data/data/####/template.html
- /data/data/####/timer_ab.xml
- /data/data/####/tmsdk_dualsim_shark.xml
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/vendor.0678e785.js
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal (deleted)
- /data/data/####/weibo_sdk_aid1
- /data/data/####/wifi_signal_table-journal
- /data/media/####/.2e1b3.cuid2
- /data/media/####/.2e1b3.openidcom.jifen.qukan
- /data/media/####/.301d5.cuid2
- /data/media/####/.3f05f.acid
- /data/media/####/.8e8b2.cuid
- /data/media/####/.8e8b2.openidcom.jifen.qukan
- /data/media/####/.98ff3.acid
- /data/media/####/.98ff3.ncuid
- /data/media/####/.9bf72.openidcom.jifen.qukan
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.b11dd.cuid
- /data/media/####/.b11dd.cuid2
- /data/media/####/.b11dd.ncuid
- /data/media/####/.cca.dat
- /data/media/####/.com.jifen.ac.ReportCount
- /data/media/####/.com.jifen.ac.acid
- /data/media/####/.com.jifen.ac.cuid
- /data/media/####/.com.jifen.ac.cuid2
- /data/media/####/.com.jifen.ac.ncuid
- /data/media/####/.com.jifen.op.openidcom.jifen.qukan
- /data/media/####/.e84e3.cuid
- /data/media/####/.e84e3.ncuid
- /data/media/####/.e8b74.acid
- /data/media/####/.nomedia
- /data/media/####/.quid
- /data/media/####/.umm.dat
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/alsn.db
- /data/media/####/alsn.db-journal
- /data/media/####/app.db
- /data/media/####/cf_lk_2.dat
- /data/media/####/cf_st_2.dat
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.jifen.qukan.bin
- /data/media/####/com.jifen.qukan.db
- /data/media/####/crash-2019-09-11.log
- /data/media/####/gkt-journal
- /data/media/####/gktper
- /data/media/####/tdata_LRe817
- /data/media/####/tdata_OxN092
- /data/media/####/tdata_bca864
- /data/media/####/tdata_yFl369
- /data/media/####/test.log
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/netcfg
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.jifen.framework.push.getui.GTCoreService 24479 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/app_bin/daemon
- chmod 700 <Package Folder>/files/gdaemon_20161017
- getprop
- getprop net.hostname
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.serialno
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- getprop wifi.interface
- logcat -d -v threadtime
- ls -i
- ls -l
- ls -l /proc/2456/fd/
- ls /sys/class/thermal
- mount
- ps
- sh
- sh -c cat /sys/block/mmcblk0/device/cid
- sh -c cd /proc/sys/kernel/ && stat random
- sh -c cd /sys/class/net/wlan0/ && cat address
- sh -c cd /sys/class/net/wlan0/ && stat address
- sh -c cd /system/bin && ls -i
- sh -c cd /system/bin && ls -l
- sh -c cd <SD-Card>/ && ls -i
- sh /data/user/0/<Package>/files/T1mru_MFKlAplpJSuaFmlUAfqyEX-0yV
- sh /data/user/0/<Package>/files/T2ECHlUXIGmubCm6vI6AyUPMTbcJZw4Z
- sh /data/user/0/<Package>/files/T5KZnqiauk0jRMrpK7IZYUeIbZQNqbV5
- sh /data/user/0/<Package>/files/T8RPQRgIOH8RvMrUGYOZsEJTo1wsVAT6
- sh /data/user/0/<Package>/files/T9TI98nc8FVompFSyI2Bk0lyJlmXXtLd
- sh /data/user/0/<Package>/files/TznmyN93huHwvUA4MIu8ZU8hpw-t-P6b
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/com.jifen.framework.push.getui.GTCoreService 24479 300 0
- stat /cache
- stat /data
- stat /data/app
- stat /proc/sys/kernel/random
- stat /root
- stat random
- uname -a
- Bugly
- InnoSecure
- InnoSo
- NativeExample
- getuiext3
- libTmsdk-2.0.8-dual-mfr
- libjiagu-1385524905
- AES-CBC-PKCS5Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS5Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-GCM-NoPadding
- DES-ECB-NoPadding
- RSA-ECB-PKCS1Padding