Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) q####.c####.l####.####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) hd.a####.com:443
- TCP(TLS/1.0) cdnq####.51j####.com.####.com:443
- TCP(TLS/1.0) o####.map.b####.com:443
- TCP(TLS/1.0) m.51j####.com:443
- TCP(TLS/1.0) loc.map.b####.com:443
- TCP(TLS/1.0) 51j####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP cm-1####.ig####.com:5225
- 51j####.com
- 7j####.c####.z0.####.com
- a####.u####.com
- api.map.b####.com
- c-h####.g####.com
- cdnq####.51j####.com
- cm-1####.ig####.com
- l####.tbs.qq.com
- loc.map.b####.com
- m.51j####.com
- o####.map.b####.com
- pub-####.qin####.com
- sdk-ope####.g####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- st####.51j####.com
- q####.c####.l####.####.com/config/hz-hzv6.conf
- q####.c####.l####.####.com/tdata_EDT369
- q####.c####.l####.####.com/tdata_LRe817
- q####.c####.l####.####.com/tdata_OxN092
- q####.c####.l####.####.com/tdata_ZPR725
- q####.c####.l####.####.com/tdata_bca864
- sdk.o####.p####.####.com/api/addr.htm
- a####.u####.com/app_logs
- c-h####.g####.com/api.php?format=####&t=####
- l####.tbs.qq.com/ajax?c=####&k=####
- sdk-ope####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####&d=####&k=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####&d=####&k=####
- /data/anr/traces.txt
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/9c10ac2e616d
- /data/data/####/MultiDex.lock
- /data/data/####/access_control.control.mx
- /data/data/####/access_control.write.mx
- /data/data/####/authStatus_com.jinke.finance.xml
- /data/data/####/authStatus_com.jinke.finance;remote.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/core_info
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/debug.conf
- /data/data/####/default.realm
- /data/data/####/default.realm.lock
- /data/data/####/download_upload
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/firll.dat
- /data/data/####/gal.db
- /data/data/####/gal.db-journal
- /data/data/####/gdaemon_20161017
- /data/data/####/geofencing.db
- /data/data/####/geofencing.db-journal
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/gx_sp.xml
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/jinke.xml
- /data/data/####/libcuid.so
- /data/data/####/libjiagu635904408.so
- /data/data/####/mipush_extra.xml
- /data/data/####/mipush_region
- /data/data/####/mipush_region.lock
- /data/data/####/multidex.version.xml
- /data/data/####/ofl.config
- /data/data/####/ofl_location.db
- /data/data/####/ofl_location.db-journal
- /data/data/####/ofl_statistics.db
- /data/data/####/ofl_statistics.db-journal
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushk.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbs_pv_config
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdata_LRe817
- /data/data/####/tdata_LRe817.jar
- /data/data/####/tdata_OxN092
- /data/data/####/tdata_OxN092.jar
- /data/data/####/tdata_ZPR725
- /data/data/####/tdata_ZPR725.jar
- /data/data/####/tdata_bca864
- /data/data/####/tdata_bca864.jar
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/02d8adc4da6502b5017e0eaed42f9e1d6db8d6d3802da7....0.tmp
- /data/media/####/16add887973dedba1a481f12f35d11aa4522fe6136645e....0.tmp
- /data/media/####/18ff0bcb46bf6e681e46242711c65f65275ec8bbf54b44....0.tmp
- /data/media/####/268be230b9bbe32fcc800332072c9de805527c6f68adb6....0.tmp
- /data/media/####/28cd52fffd149255183d565148590292.0.tmp
- /data/media/####/28cd52fffd149255183d565148590292.1.tmp
- /data/media/####/2f4cdd9aeaeff704804a92bc367a0015.0.tmp
- /data/media/####/2f4cdd9aeaeff704804a92bc367a0015.1.tmp
- /data/media/####/302b1c320c2d15c5a8fc078aba7252a15487bc8545d723....0.tmp
- /data/media/####/36276d5c4b12b00390c8328c26a0fcad.0.tmp
- /data/media/####/36276d5c4b12b00390c8328c26a0fcad.1.tmp
- /data/media/####/456908b2a361dd8d81e9371f9f7a280a6f7cbd247ee0de....0.tmp
- /data/media/####/47682b3702bac829570f9558f9731c3752919327364b39....0.tmp
- /data/media/####/4a558e3b630378969343430cb1fb3732d7943218ccdf12....0.tmp
- /data/media/####/4e2812778f0dd37b183d14347e2f728e.0.tmp
- /data/media/####/4e2812778f0dd37b183d14347e2f728e.1.tmp
- /data/media/####/52a5a47e644fb7085f9ae88599c237f579e065ce47706d....0.tmp
- /data/media/####/54aeefbe62d0d8ab9d26a37d9bfd5153992fdf589d6d22....0.tmp
- /data/media/####/5de133ce6fb364f734e7806bdb64478e.0.tmp
- /data/media/####/5de133ce6fb364f734e7806bdb64478e.1.tmp
- /data/media/####/6463dc4d99278e5882c281ad82c8e557ecdce5a2c4ec43....0.tmp
- /data/media/####/701a547c2620631ed48937e3782b11edf1e505ada6d96f....0.tmp
- /data/media/####/731fac1238735ee251eff778f0017bd1dcc505f80ef432....0.tmp
- /data/media/####/792bba4747d3e2c7f4b437328c96ecd9.0.tmp
- /data/media/####/792bba4747d3e2c7f4b437328c96ecd9.1.tmp
- /data/media/####/7e13e8d223187434c6f5fc8f366f2ea369da9d45735038....0.tmp
- /data/media/####/8571523c30b91d65636ab0ae11ab2c9fe753f852149f42....0.tmp
- /data/media/####/8bd97836cb774e3278fd89e53f54420163f4d6d86e7a8f....0.tmp
- /data/media/####/903b42fb9fce405116e73d2fa6b8aee0670ac8a8bbf76f....0.tmp
- /data/media/####/91a73eedcaa7afb233e2800520d45ee634ff6c25bfcaaa....0.tmp
- /data/media/####/9505c1f260f5369d51c10b8a251167c14282bf4658d4eb....0.tmp
- /data/media/####/9596d8a47e1a1dd8d3f3ef7a485078ce2f819a5d60c458....0.tmp
- /data/media/####/9d964e8d0c744d6d9bd7f723d5bee090.0.tmp
- /data/media/####/9d964e8d0c744d6d9bd7f723d5bee090.1.tmp
- /data/media/####/9dbc09e30303a701649eb4199ee29bd46c00f9a1dd2610....0.tmp
- /data/media/####/a0dd7f60583ae0501f8f9f03b7446b57.0.tmp
- /data/media/####/a0dd7f60583ae0501f8f9f03b7446b57.1.tmp
- /data/media/####/a1d929d1ca2db8a40d4ee0020eda9fb9.0.tmp
- /data/media/####/a1d929d1ca2db8a40d4ee0020eda9fb9.1.tmp
- /data/media/####/a4efc44e67b73e1819c93934c20c063d393abcdfd3bf66....0.tmp
- /data/media/####/a889645b658bff17eafa009ebeae02b9157f0ebe3ac834....0.tmp
- /data/media/####/aa4e62a89461d8aac8dd11400a66c47c2d5fa00b04ee49....0.tmp
- /data/media/####/ac4ea64f9be8bf61ef392485e5831639.0.tmp
- /data/media/####/ac4ea64f9be8bf61ef392485e5831639.1.tmp
- /data/media/####/aff44fe7e547068678507c9762e91e87d32ac821d74bf0....0.tmp
- /data/media/####/app.db
- /data/media/####/b6776ab0e9ded05d4001f200128258f6cb655802612662....0.tmp
- /data/media/####/b8f10a43610bdd04e6128b6556847d60492b02f406fe84....0.tmp
- /data/media/####/banner.dat
- /data/media/####/bd94a2783afaa5c6225d49c9af389ef68e558c8adb97ec....0.tmp
- /data/media/####/c3f689d9c86750034aa0c1093d1ce5691d6267e3f13c65....0.tmp
- /data/media/####/cc5456614dd28f4bb9665be9c8f1bb9dfeafe339d3d815....0.tmp
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.jinke.finance.bin
- /data/media/####/com.jinke.finance.db
- /data/media/####/commonUse.dat
- /data/media/####/conlts.dat
- /data/media/####/dca160ae7127de7c4409f072f87465ffd7c46cd1c32471....0.tmp
- /data/media/####/e1d84bc9ebe63a167b72ef60943e8b1926e76241f62453....0.tmp
- /data/media/####/e312bbda19d4f89600192f5ea2a62f19f54dfc4c64c664....0.tmp
- /data/media/####/e7ea471f632058efd3918e71c1e1d83c.0.tmp
- /data/media/####/e7ea471f632058efd3918e71c1e1d83c.1.tmp
- /data/media/####/ef9118a7e76dca8830e63f942e673b5c7410cc645375a0....0.tmp
- /data/media/####/fc966192bb1d8ac5ba0bf6e15b22ee5d.0.tmp
- /data/media/####/fc966192bb1d8ac5ba0bf6e15b22ee5d.1.tmp
- /data/media/####/gkt-journal
- /data/media/####/gktper
- /data/media/####/home_cate_data
- /data/media/####/home_red_msg.dat
- /data/media/####/icons.dat
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/ls.db
- /data/media/####/ls.db-journal
- /data/media/####/sysid.dat
- /data/media/####/tbslog.txt
- /data/media/####/tdata_LRe817
- /data/media/####/tdata_OxN092
- /data/media/####/tdata_ZPR725
- /data/media/####/tdata_bca864
- /data/media/####/test.log
- /system/bin/cat /proc/cpuinfo
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.ernest.push.target.getui.GPushService 24664 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- getprop ro.product.cpu.abi
- mount
- sh
- BaiduMapSDK_base_v4_5_2
- X86Bridge
- getuiext3
- libjiagu635904408
- locSDK7a
- realm-jni
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS5Padding
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding