Technical information
- Adware.Dowgin.3.origin
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ni.ei.ne####.cn:80
- TCP(HTTP/1.1) h####.b####.com:80
- TCP(HTTP/1.1) ftp.zt####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- and####.b####.qq.com
- e.anzhua####.com
- e1.anzhua####.com
- ftp.zt####.com
- h####.b####.com
- ni.ei.ne####.cn
- ftp.zt####.com/client/ztmomo_update/uplus_update_android.xml
- and####.b####.qq.com/rqd/async
- ftp.zt####.com/upload
- h####.b####.com/app.gif
- ni.ei.ne####.cn/v/87f7/p70
- ni.ei.ne####.cn/v/87f7/q70
- ni.ei.ne####.cn/v/87f7/s70
- ni.ei.ne####.cn/v/87f7/t70
- ni.ei.ne####.cn/v/87f7/w70
- /data/data/####/323877c3-19f1-4ec8-8737-0cab11e4eb13.zip
- /data/data/####/Alvin2.xml
- /data/data/####/AppStore.xml
- /data/data/####/ContextData.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/_msv_r.xml
- /data/data/####/area.db
- /data/data/####/bugly_db_lejiagu-journal
- /data/data/####/classes.jar
- /data/data/####/com.jrh.jar
- /data/data/####/common.db
- /data/data/####/dbpzyti-journal
- /data/data/####/legu_900015015.xml
- /data/data/####/legudzbait.zip
- /data/data/####/libshella-2.2.14.so
- /data/data/####/local_crash_lock
- /data/data/####/mix.dex
- /data/data/####/native_record_lock
- /data/data/####/null.txt
- /data/data/####/security_info
- /data/data/####/umeng_message_state.xml
- /data/data/####/uplus_prefer.xml
- /data/media/####/.cuid
- /data/media/####/.nomedia
- /data/media/####/2019_02_17_16_47_00.log.txt
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/edu.maths.zuoye.v.p
- /data/media/####/journal.tmp
- /system/bin/app_process /system/bin com.jrh.ndq 2291 <Package>
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libshella-2.2.14.so
- getprop ro.board.platform
- getprop ro.yunos.version
- Bugly
- libshella-2.2.14
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- DES
- DES-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES-GCM-NoPadding
- DES