Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) api.tianq####.com:80
- TCP(HTTP/1.1) 05img####.eas####.com.####.com:80
- TCP(HTTP/1.1) con####.pic.tianqis####.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) o####.tianqis####.com:80
- TCP(HTTP/1.1) a####.umengc####.com:80
- TCP(HTTP/1.1) m.d####.mob.com:80
- TCP(HTTP/1.1) api.wnl.tianq####.com:80
- TCP(HTTP/1.1) api.tj.tianq####.com:80
- TCP(HTTP/1.1) sf1-ttc####.ps####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) r####.tianq####.com:80
- TCP(HTTP/1.1) i####.t####.s####.com:80
- TCP(TLS/1.0) loc.map.b####.com:443
- TCP(TLS/1.0) mobads-####.b####.com:443
- TCP(TLS/1.0) ali-s####.j####.cn:443
- TCP(TLS/1.0) bds.sn####.com:443
- TCP(TLS/1.0) is.sn####.com.####.com:443
- TCP(TLS/1.0) t####.j####.cn:443
- TCP(TLS/1.0) api.map.b####.com:443
- UDP s.j####.cn:19000
- TCP 43.2####.88.100:7008
- 01img####.eas####.com
- 05img####.eas####.com
- 08img####.eas####.com
- a####.exc.mob.com
- a####.u####.com
- a####.umengc####.com
- ali-s####.j####.cn
- api.map.b####.com
- api.tianq####.com
- api.tj.tianq####.com
- api.wnl.tianq####.com
- bds.sn####.com
- con####.pic.tianqis####.com
- ex####.sn####.com
- i####.t####.s####.com
- is.sn####.com
- loc.map.b####.com
- m.d####.mob.com
- mo####.b####.com
- mobads-####.b####.com
- o####.tianqis####.com
- r####.tianq####.com
- s.j####.cn
- sf1-ttc####.ps####.com
- t####.j####.cn
- 05img####.eas####.com.####.com/mobile/20190922/2019092114_454afdd8f7b34b...
- 05img####.eas####.com.####.com/mobile/20190922/2019092114_875daba4631c48...
- 05img####.eas####.com.####.com/mobile/20190922/2019092114_a09a277a3bd24f...
- 05img####.eas####.com.####.com/mobile/20190922/20190922014842_e9155c0102...
- 05img####.eas####.com.####.com/mobile/20190923/2019092309_32951e05fd184b...
- 05img####.eas####.com.####.com/mobile/20190923/2019092309_69c1442fc07f43...
- 05img####.eas####.com.####.com/mobile/20190923/2019092309_ceffc8d1913f4a...
- 05img####.eas####.com.####.com/mobile/20190923/2019092319_f0fd405380184f...
- con####.pic.tianqis####.com/content/img/201908/16/e88609193acfeccc.png
- m.d####.mob.com/v3/cconf?appkey=####&plat=####&apppkg=####&appver=####&n...
- o####.tianqis####.com/content/20190923/0cfbahfyP3tFhXNqJXdumAvo.jpg
- o####.tianqis####.com/content/20190923/2Q6Xr2kGyScEIGHbDHWH9Lqu.jpg
- o####.tianqis####.com/content/20190923/BRNGHlYv2GJqrupkSkTXpj4R.jpg
- o####.tianqis####.com/content/20190923/WCur9waOfSsW3QmXu3yaBVhK.jpg
- o####.tianqis####.com/content/20190923/Z6zAoZR2GpgEPaDqHiaUMyTy.jpg
- sf1-ttc####.ps####.com/img/ad.union.api/da633a597022c3b5150061b19d6f8495...
- sf1-ttc####.ps####.com/img/ad.union.api/e3b96cc6d6a4561ea6ec5ad03227e141...
- sf1-ttc####.ps####.com/img/web.business.image/201909235d0ddf54d26c3e4649...
- a####.exc.mob.com/errconf
- a####.u####.com/app_logs
- a####.umengc####.com/app_logs
- api.tianq####.com/?service=####
- api.tianq####.com/V2/?service=####
- api.tj.tianq####.com/?service=####
- api.wnl.tianq####.com/index.php?service=####
- i####.t####.s####.com/tracer/applist
- r####.tianq####.com/?service=####
- /data/data/####/.bak
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/00bbde28-6e62-455e-ae7d-f46df9ea8fd2
- /data/data/####/0c2b7367-e457-4132-94bf-fd5839e5e40b
- /data/data/####/0eb62b6f2ce08a81ba6241ecb298c39448d7b6579c2880c....0.tmp
- /data/data/####/1069590712
- /data/data/####/1475846639
- /data/data/####/1492a6cea18994b867f071b79d6b59eb254f9c5d2e02530....0.tmp
- /data/data/####/1bc5f6801fe86971b1328505ed7d8de32c90b6b623e7d4b....0.tmp
- /data/data/####/25a2de85-f8db-41bc-a54d-5ea93549ba6f
- /data/data/####/26f7b0f9-7452-4c33-9124-8833f3965b27
- /data/data/####/2982dac33033b4f06043eddba046ae19e0c33b646a7019f....0.tmp
- /data/data/####/3506f2b92be4c7a4e40224a695a085f5268e50fb2bafd94....0.tmp
- /data/data/####/352c2ed55ba56f14216d201a65bdc01aa0a9650e8728cd7....0.tmp
- /data/data/####/368c46f6-24f6-4871-8087-4ad9c260cb49
- /data/data/####/3e572d0b-64d5-44e9-8a5c-8d7c8ab53a26
- /data/data/####/4c853d018838d138d84861616e59fb8698d3fa93a11d8d8....0.tmp
- /data/data/####/5cf350a6df85f95ccf903883ff8ca5b7e411c0b7d88c00e....0.tmp
- /data/data/####/5f2ffade369222389cd1e06ecb7c0ef771ec37d66d4bd3b....0.tmp
- /data/data/####/80f53cf6f2cd1a3ff135f5679146034ef51a2b8b567610e....0.tmp
- /data/data/####/8730423a5820c0e338e2e7161e9131079afe0c90aaebeb9....0.tmp
- /data/data/####/929fdfa3a2227d917edd6a1aaf62531a3056755facfaec1....0.tmp
- /data/data/####/95f7b0e4fa700a800fffc3a43704578cb4eb55f30756780....0.tmp
- /data/data/####/JPushSA_Config.xml
- /data/data/####/MultiDex.lock
- /data/data/####/TodayStepDB.db-journal
- /data/data/####/WeatherNewDb.db-journal
- /data/data/####/__x_adsdk_agent_header__.xml
- /data/data/####/__xadsdk__remote__final__builtin__.jar
- /data/data/####/__xadsdk__remote__final__builtinversion__.jar
- /data/data/####/__xadsdk__remote__final__running__.jar
- /data/data/####/a193b40aecbd8aa70a1f4c147a7e4683ba9f38e0f661a3d....0.tmp
- /data/data/####/a2f1b410-3a54-41ee-9d8e-ea23f3e0ce90
- /data/data/####/appPackageNames_v2
- /data/data/####/app_crash_copy.xml
- /data/data/####/authStatus_com.intimateweather.weather.xml
- /data/data/####/authStatus_com.intimateweather.weather;pushcore.xml
- /data/data/####/authStatus_com.intimateweather.weather;remote.xml
- /data/data/####/authStatus_com.intimateweather.weather;todaystep.xml
- /data/data/####/b3cbd929b8cee4bb8796fc3e7c2c22aadbc686c07c0d0a3....0.tmp
- /data/data/####/b7137567ea65d6640f24b48e5248cd25a251d06b6d63d73....0.tmp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.baidu.mobads.loader.xml
- /data/data/####/e33c927e5bbc2a091b5bf0ad407605c507ad96ac6c09532....0.tmp
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f2365dfcfb72d86e334c415b849f51e230611b13f626624....0.tmp
- /data/data/####/fe63fefd987c0abc0fb6ba253d7b298c49a937c2d2d0eeb....0.tmp
- /data/data/####/firll.dat
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/journal.tmp
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_local_notification.db-wal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/libcuid.so
- /data/data/####/libjiagu1911406002.so
- /data/data/####/mob_commons_1
- /data/data/####/mob_sdk_exception_1
- /data/data/####/mobads_aplist_status.xml
- /data/data/####/multidex.version.xml
- /data/data/####/sdk_config.xml
- /data/data/####/ss_downloads.db-journal
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopensdk.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_cache_1569274739650.env
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/upload_device_data_time.xml
- /data/data/####/weather.xml
- /data/data/####/weatherCity.db
- /data/data/####/weatherCity.db-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.dic_lock
- /data/media/####/.duid
- /data/media/####/.globalLock
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.push_deviceid
- /data/media/####/.rcTag
- /data/media/####/.rc_lock
- /data/media/####/microlog.txt
- getprop ro.build.version.emui
- getprop ro.letv.release.version
- getprop ro.vivo.os.build.display.id
- ps
- sh
- BaiduMapSDK_base_v4_5_2
- imagepipeline
- jcore126
- libjiagu1911406002
- locSDK7b
- neh
- nms
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding