Technical information
- Android.Click.345.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) u####.a####.top:80
- TCP(HTTP/1.1) t####.a####.top:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) m.z####.com.####.cn:80
- TCP(HTTP/1.1) gm.mm####.com:80
- TCP(HTTP/1.1) res####.a####.top:80
- TCP(HTTP/1.1) j####.g####.vip:80
- TCP(HTTP/1.1) filt####.a####.top:80
- TCP(HTTP/1.1) m.sun####.com:80
- TCP(HTTP/1.1) api.g####.vip:80
- TCP(HTTP/1.1) api.lubang####.com:80
- TCP(HTTP/1.1) kou####.a####.top:80
- TCP(HTTP/1.1) st####.xiaoshu####.cn:80
- TCP(HTTP/1.1) c.c####.com:80
- TCP(HTTP/1.1) app.a####.top:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) pco####.ta####.com:80
- TCP(HTTP/1.1) s####.jom####.com:80
- TCP(HTTP/1.1) m.xiaoshu####.cn:80
- TCP(HTTP/1.1) m.yue####.com:80
- TCP(HTTP/1.1) luna-im####.qq.com.####.com:80
- TCP(HTTP/1.1) z.c####.com:80
- TCP(HTTP/1.1) yy.xinqi####.com.####.com:80
- TCP(HTTP/1.1) js.sun####.com:80
- TCP(HTTP/1.1) m.7####.net:80
- TCP(HTTP/1.1) amdc####.m.ta####.com:80
- TCP(HTTP/1.1) a.mm####.com:80
- TCP(HTTP/1.1) 47.1####.211.73:80
- TCP(HTTP/1.1) w####.b0.a####.com:80
- TCP(HTTP/1.1) api.mid####.com:80
- TCP(HTTP/1.1) js.7####.net:80
- TCP(HTTP/1.1) k.innv####.com.####.com:80
- TCP(HTTP/1.1) api.yunco####.com:80
- TCP(HTTP/1.1) down####.baiyuns####.com:80
- TCP(HTTP/1.1) j####.qq.com:80
- TCP(TLS/1.0) sdk.no####.cn.####.net:443
- TCP(TLS/1.0) 2####.107.1.97:443
- TCP(TLS/1.0) zz.imi####.com.####.com:443
- TCP(TLS/1.0) m.z####.com.####.cn:443
- TCP(TLS/1.0) e.ful####.cn:443
- TCP(TLS/1.0) s.dd####.com.####.com:443
- TCP(TLS/1.0) k.innv####.com.####.com:443
- TCP(TLS/1.0) js.mosfl####.cn:443
- TCP(TLS/1.0) 1####.217.19.206:443
- TCP(TLS/1.0) f.sqs####.com.cn:443
- TCP(TLS/1.0) lhyysdk####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) c.c####.com:443
- TCP(TLS/1.0) ada####.m.ta####.com:443
- TCP(TLS/1.0) di.fengche####.cn:443
- TCP(TLS/1.0) eo.70####.cn:443
- TCP(TLS/1.0) res.ydc####.com:443
- TCP(TLS/1.0) s####.e.qq.com:443
- TCP(TLS/1.0) gm.mm####.com:443
- TCP(TLS/1.0) dsp.ali####.xyz:443
- TCP(TLS/1.0) x####.sc####.cn.####.net:443
- TCP(TLS/1.0) t####.zgy####.com:5526
- TCP(TLS/1.0) i.ssl.6####.com:443
- TCP(TLS/1.0) z.c####.com:443
- TCP(TLS/1.0) c.cd####.com.####.com:443
- TCP(TLS/1.0) hm.b####.com:443
- TCP(TLS/1.0) gd.a.s####.com:443
- TCP(TLS/1.0) p####.b0.a####.com:443
- TCP(TLS/1.0) api.g####.vip:443
- TCP(TLS/1.0) al####.u####.com:443
- TCP(TLS/1.0) mo.big####.xyz:443
- TCP(TLS/1.0) tp.zzyanh####.com.####.com:443
- TCP(TLS/1.0) s####.shidux####.com:443
- TCP(TLS/1.0) dualsta####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) xxx.sc####.cn.####.net:443
- TCP zb-cent####.m.ta####.com:443
- 608.a####.top
- a####.man.aliy####.com
- a.mm####.com
- a.ssl.5####.top
- ada####.ut.ta####.com
- ag####.m.ta####.com
- amdc####.m.ta####.com
- api.g####.vip
- api.lubang####.com
- api.mid####.com
- api.s####.b####.com
- api.yunco####.com
- app.a####.top
- c####.mm####.com
- c.c####.com
- c.cd####.com
- cdn.junx####.com
- cs.shanyue####.com
- d.ssl.lfq####.top
- di.fengche####.cn
- down####.baiyuns####.com
- dsp.ali####.xyz
- dsp.jqh####.cn
- e.ful####.cn
- eo.70####.cn
- f.sqs####.com.cn
- filt####.a####.top
- hm.b####.com
- i.ssl.6####.com
- im.tio####.com
- imgc####.qq.com
- j####.g####.vip
- j####.qq.com
- js.7####.net
- js.mosfl####.cn
- js.sun####.com
- k.innv####.com
- kou####.a####.top
- ktr.m####.cn
- lhyysdk####.oss-cn-####.aliy####.com
- m.7####.net
- m.sun####.com
- m.xiaoshu####.cn
- m.yue####.com
- m.z####.com
- mi.g####.qq.com
- mo.big####.xyz
- nuo.sn####.com
- p####.ugd####.com
- p####.zhanz####.b####.com
- pco####.c####.com
- plb####.u####.com
- pv.s####.com
- res####.a####.top
- res.ydc####.com
- s####.e.qq.com
- s####.shidux####.com
- s.dd####.com
- s22.c####.com
- s23.c####.com
- s4.c####.com
- s5.c####.com
- s8.c####.com
- s9.c####.com
- sdk.no####.cn
- st####.xiaoshu####.cn
- t####.a####.top
- t####.zgy####.com
- tp.zzyanh####.com
- u####.a####.top
- u####.u####.com
- umen####.m.ta####.com
- umengj####.m.ta####.com
- x####.sc####.cn
- xxx.sc####.cn
- yy.xinqi####.com
- z1.c####.com
- z12.c####.com
- z3.c####.com
- z5.c####.com
- z9.c####.com
- zz.imi####.com
- a.mm####.com/
- api.g####.vip/landing_with_phy.js
- app.a####.top/anshuaControl.json
- app.a####.top/api.json
- c.c####.com/core.php?web_id=####&t=####
- c.c####.com/z_stat.php?id=####
- down####.baiyuns####.com/cy.js
- down####.baiyuns####.com/jquery.min.js
- filt####.a####.top/filter_control_608.json
- gm.mm####.com/9.gif?abc=####&rnd=####
- j####.g####.vip/ggx.js
- j####.qq.com/get?api=####
- js.7####.net/jwdd.js
- js.7####.net/solid_7xxs.js
- js.sun####.com/sun.js
- js.sun####.com/sun_solid.js
- k.innv####.com.####.com/d.php?pid=####
- k.innv####.com.####.com/h.php?pid=####
- k.innv####.com.####.com/img/zhezhe7
- k.innv####.com.####.com/static/channel/dabai02.js
- kou####.a####.top/kouling.json
- luna-im####.qq.com.####.com/gdt/0/EAApCZtAQ4AeAAAAgBFBfSLlMCROlb-aX.jpg/...
- luna-im####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/pr...
- m.7####.net/mbook_images/header-back.gif
- m.7####.net/mbook_images/header-backhome.gif
- m.7####.net/mbook_js/common.js
- m.7####.net/mbook_js/index.js
- m.7####.net/mbook_js/read.js
- m.7####.net/mbook_js/yuedu.js
- m.7####.net/mbook_js/zepto.min.js
- m.7####.net/mbyq/4794/549_1.html
- m.sun####.com/mbook_17162/786.html
- m.sun####.com/mbook_images/header-back.gif
- m.sun####.com/mbook_images/header-backhome.gif
- m.sun####.com/mbook_js/common.js
- m.sun####.com/mbook_js/index.js
- m.sun####.com/mbook_js/read.js
- m.sun####.com/mbook_js/yuedu.js
- m.sun####.com/mbook_js/zepto.min.js
- m.xiaoshu####.cn/mbook_images/header-back.gif
- m.xiaoshu####.cn/mbook_images/header-backhome.gif
- m.xiaoshu####.cn/mbook_js/common.js
- m.xiaoshu####.cn/mbook_js/index.js
- m.xiaoshu####.cn/mbook_js/read.js
- m.xiaoshu####.cn/mbook_js/yuedu.js
- m.xiaoshu####.cn/mbook_js/zepto.min.js
- m.xiaoshu####.cn/mbxs240/20999/213_1.html
- m.yue####.com/mbook_259/493.html
- m.z####.com.####.cn/zfb/ding001.php?callback=####&f=####&h=####¤t_...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&spsa=####&posh=####&count=####&r...
- pco####.ta####.com/app.gif?&cna=####
- res####.a####.top/LHYY.png
- res####.a####.top/sdk13_2.png
- res####.a####.top/sdk17.png
- res####.a####.top/sdk18.png
- res####.a####.top/sdk6.png
- s####.jom####.com/push.js
- s####.jom####.com/s.gif?l=####
- s####.jom####.com/s.gif?r=####&l=####
- st####.xiaoshu####.cn/soxs240.js
- st####.xiaoshu####.cn/xs240.js
- st####.xiaoshu####.cn/xs240/qisu_dp.js
- t####.a####.top/anshua.json
- t####.a####.top/req.json
- u####.a####.top/608.html
- w####.b0.a####.com/soltx/cbd37840.js?v=####
- w####.b0.a####.com/soltx/tempbd37840.js?v=####
- yy.xinqi####.com.####.com/gdw.php?m=SjhDQ####
- z.c####.com/stat.htm?id=####&r=####&lg=####&ntime=####&cnzz_eid=####&sho...
- amdc####.m.ta####.com/amdc/mobileDispatch?appkey=####&deviceId=####&plat...
- api.lubang####.com/ext_up.php?ac=####
- api.mid####.com/configure/query
- api.yunco####.com/service/rest
- s####.e.qq.com/activate
- s####.e.qq.com/msg
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/13_2.jar
- /data/data/####/17.jar
- /data/data/####/18.jar
- /data/data/####/189f7461a2c91dc4fee7ba8fee954494.db
- /data/data/####/2186.yaqcookie
- /data/data/####/6.jar
- /data/data/####/68042bb6c2b96966073e4cc117a3faa9.db
- /data/data/####/74568423bc1a91c431788ebee4d810e3.db
- /data/data/####/ACCS_BINDumeng;595b07bb45297d77f7000411.xml
- /data/data/####/ACCS_SDK.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml
- /data/data/####/AGOO_BIND.xml
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/ContextData.xml
- /data/data/####/DaemonServer
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/PREF_CONFIG_METHOD_TYPES.xml
- /data/data/####/UTCommon.xml
- /data/data/####/UTCommon.xml.bak
- /data/data/####/XkdjsIx132mM356507059351895comm.xml
- /data/data/####/XkdjsIx132mMskey1.xml
- /data/data/####/accs.db-journal
- /data/data/####/adashbc.ut.taobao.com.443
- /data/data/####/agoo.pid
- /data/data/####/ap.Lock
- /data/data/####/b608a2de3371f56be096217b3eb2320e.db
- /data/data/####/c83ddce7bcd3d67ca145852e0800ef7d
- /data/data/####/c83ddce7bcd3d67ca145852e0800ef7d.temp
- /data/data/####/com.midainc.dcjwys_preferences.xml
- /data/data/####/com.midainc.dcjwys_preferences.xml.bak (deleted)
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTk5MzI4Mjc4MTMy;
- /data/data/####/dW1weF9wdXNoX2xhdW5jaF8xNTk5MzI4MjkzNTkz;
- /data/data/####/data_0
- /data/data/####/data_0 (deleted)
- /data/data/####/data_1
- /data/data/####/data_1 (deleted)
- /data/data/####/data_2
- /data/data/####/data_2 (deleted)
- /data/data/####/data_3
- /data/data/####/data_3 (deleted)
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/dexMethod.36117467.dat
- /data/data/####/download.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/gdt_config.cfg
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_stat.db
- /data/data/####/gdt_stat.db-journal
- /data/data/####/gdt_suid
- /data/data/####/httpdns_config_cache.xml
- /data/data/####/i==1.2.0&&2.3.2_1599328278430_envelope.log
- /data/data/####/index
- /data/data/####/index (deleted)
- /data/data/####/info.xml
- /data/data/####/libjiagu235489702.so
- /data/data/####/libyaqbasic.36117467.so
- /data/data/####/libyaqpro.36117467.so
- /data/data/####/message_accs_db
- /data/data/####/message_accs_db-journal
- /data/data/####/pref_app_ad_display_num1.xml
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/shared_preferences_name_online.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umengDown.jar
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/update_lc
- /data/data/####/ut.db
- /data/data/####/ut.db-journal
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/data/####/yaqsdkcookie
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.nomedia
- /data/media/####/.umm.dat
- /data/media/####/4f3cb47f59dd4db7b383e19549557740
- /data/media/####/7fcbda5504d24556abafa568cf4a599b
- /data/media/####/93ade0baf6e6435f9074f2dda3ca25be
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/a0c2096263454909971c89e5db4b937c
- /data/media/####/deviceToken
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/files/DaemonServer -s <Package Folder>/lib/ -n runServer -p startservice -n <Package>/com.taobao.accs.ChannelService --user 0 -f <Package Folder> -t 600 -c agoo.pid -P <Package Folder> -K 1009527 -U tb_accs_eudemon_1.1.3 -L http://agoodm.m.taobao.com/agoo/report -D {"package":"<Package>","appKey":"umeng:595b07bb45297d77f7000411","utdid":"X1PQE4STOvADAGdzx1FiKsEQ","sdkVersion":"221"} -I agoodm.m.taobao.com -O 80 -T -Z
- chmod 500 <Package Folder>/files/DaemonServer
- grep 2186
- ls /
- ls /sys/class/thermal
- ps
- sh
- libjiagu235489702
- libyaqbasic.36117467
- libyaqpro.36117467
- tnet-3.1
- ut_c_api
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- DESede-CBC-PKCS5Padding
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- DES
- DESede-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding