Technical information
- Android.RemoteCode.221.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) 47.1####.40.225:80
- TCP(HTTP/1.1) bj####.j####.cn:80
- TCP(HTTP/1.1) statis####.youd####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) a.e####.cn:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) qzones####.g####.cn.####.com:80
- TCP(HTTP/1.1) p####.ugd####.com.####.com:80
- TCP(HTTP/1.1) a####.youd####.com:80
- TCP(HTTP/1.1) 1####.31.213.162:80
- TCP(HTTP/1.1) 47.97.2####.214:80
- TCP(HTTP/1.1) imgc####.qq.com.####.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) 1####.217.17.42:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) safebro####.google####.com:443
- TCP(TLS/1.0) gd-s####.j####.cn:443
- TCP(TLS/1.0) 18.1####.220.31:443
- TCP(TLS/1.0) dualsta####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) sf1-ttc####.ps####.com:443
- TCP(TLS/1.0) pic.e####.cn:443
- TCP(TLS/1.0) analy####.ray####.com:443
- TCP(TLS/1.0) sf3-ttc####.ps####.com:443
- TCP(TLS/1.0) s####.e.qq.com:443
- TCP(TLS/1.0) 1####.217.168.206:443
- TCP(TLS/1.0) mi.g####.qq.com:443
- TCP(TLS/1.0) fk-old-####.ray####.com:443
- TCP(TLS/1.0) r4---sn####.g####.com:443
- TCP(TLS/1.0) t####.j####.cn:443
- TCP(TLS/1.0) sf6-ttc####.ps####.com.####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) bid.ad####.cn:443
- TCP(TLS/1.2) 1####.217.17.42:443
- TCP 1####.230.236.28:7011
- UDP s.j####.cn:19000
- a####.youd####.com
- a.e####.cn
- ali-s####.j####.cn
- analy####.ray####.com
- and####.b####.qq.com
- bid.ad####.cn
- bj####.j####.cn
- f####.gst####.com
- gd-s####.j####.cn
- imgc####.qq.com
- is.sn####.com
- log.u####.com
- m####.go####.com
- mi.g####.qq.com
- n.syste####.me
- p####.google####.com
- p####.ugd####.com
- pic.e####.cn
- plb####.u####.com
- qzones####.g####.cn
- r4---sn####.g####.com
- s####.e.qq.com
- s.j####.cn
- safebro####.google####.com
- set####.ray####.com
- sf1-ttc####.ps####.com
- sf3-ttc####.ps####.com
- sf6-ttc####.ps####.com
- statis####.youd####.com
- t####.j####.cn
- u####.u####.com
- y####.manxia####.com
- a.e####.cn/favicon.ico
- a.e####.cn/public/getClickUrlPoList.shtml?sd=####&androidid=####&sign=##...
- a.e####.cn/public/rab.shtml?id=####&network=####&machine=####
- a.e####.cn/public/showUrlVisit.shtml?os=####&osversion=####&appversion=#...
- bj####.j####.cn/v1/appawake/status?uid=####&appkey=####&manufacturer=###...
- d####.c####.l####.####.com/1570616381047.png
- imgc####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/progu...
- p####.ugd####.com.####.com/gdt/0/DAA2bosAUAALQABkBdzUk6CwBR1GYG.jpg/0?ck...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android03/js-relea...
- a####.youd####.com/v2/app/ads/get-speed?version=####×tamp=####&toke...
- a####.youd####.com/v2/app/ads/plan-yd?version=####×tamp=####&token=...
- a####.youd####.com/v2/app/frame/frame-recommend?version=####×tamp=#...
- a####.youd####.com/v2/app/login/tourists-login?version=####×tamp=##...
- a####.youd####.com/v3/app/ads/plan?version=####×tamp=####&t####&age...
- a####.youd####.com/v3/app/ads/plan?version=####×tamp=####&token=###...
- a####.youd####.com/v3/app/client-site/client-config?version=####×ta...
- a####.youd####.com/v3/app/user/apply?version=####×tamp=####&token=#...
- a####.youd####.com/v4/app/frame/frame-list?version=####×tamp=####&t...
- and####.b####.qq.com/rqd/async?aid=####
- s####.e.qq.com/activate
- statis####.youd####.com/statistics/client-report/data-by-client?version=...
- statis####.youd####.com/statistics/client-report/user-switch?version=###...
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/0061e9d53732d3f30af2f46adc545bc0.xml
- /data/data/####/034c9a0e-3e40-4abb-ba7b-6cd3f2faf500
- /data/data/####/03bf31ec-98d7-474c-a51f-2734fa3e6578
- /data/data/####/065ad058-ee5d-43bd-90a7-ff8b5a3a6164
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/1021689741840853517
- /data/data/####/2D72A071.dex
- /data/data/####/2D72A071.dex.flock (deleted)
- /data/data/####/3190.yaqcookie
- /data/data/####/4036111cb4fe5f1f_0
- /data/data/####/5d348c11-ec8d-4338-a0da-523c18d06b6b
- /data/data/####/71f0d23b-8b21-4c97-839e-28e2b08846ec
- /data/data/####/78606cdf91857405_0
- /data/data/####/7b4258c4328b3b69_0
- /data/data/####/7b4258c4328b3b69_1
- /data/data/####/8a8a38a6d3e5af22_0
- /data/data/####/AdmobileApiAd_3.9.0.dex
- /data/data/####/AdmobileApiAd_3.9.0.dex (deleted)
- /data/data/####/AdmobileApiAd_3.9.0.dex.flock (deleted)
- /data/data/####/Alvin2.xml
- /data/data/####/AndroidLogPlusXl_5.7.0.dex
- /data/data/####/AndroidLogPlusXl_5.7.0.dex (deleted)
- /data/data/####/AndroidLogPlusXl_5.7.0.dex.flock (deleted)
- /data/data/####/BUGLY_COMMON_VALUES.xml
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/ContextData.xml
- /data/data/####/Cookies-journal
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/JPushSA_Config.xml
- /data/data/####/JPushSA_Config.xml.bak
- /data/data/####/JPushSA_Config.xml.bak (deleted)
- /data/data/####/SP_AROUTER_CACHE.xml
- /data/data/####/SP_AROUTER_CACHE.xml.bak
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/ad_adview.dex
- /data/data/####/ad_adview.dex.flock (deleted)
- /data/data/####/ad_adview.jar
- /data/data/####/appPackageNames_v2
- /data/data/####/bef2797e19bc0258_0
- /data/data/####/bugly_db_-journal
- /data/data/####/c4dbb71f05f95a5f_0
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.android.user.profile.xml.bak
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.ciba.data.xml
- /data/data/####/com.zhige.friendread.BETA_VALUES.xml
- /data/data/####/com.zhige.friendread.BETA_VALUES.xml.bak
- /data/data/####/com.zhige.friendread_preferences.xml
- /data/data/####/crashrecord.xml
- /data/data/####/cv.xml
- /data/data/####/d32661a057dfecd7_0
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTc0MTk5Nzk5MjUx;
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/dex_update_info.xml
- /data/data/####/downloader.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f9a605e8bb64e6cd_0
- /data/data/####/gdt_config.cfg
- /data/data/####/gdt_plugin.dex
- /data/data/####/gdt_plugin.dex.flock (deleted)
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.next.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_stat.db
- /data/data/####/gdt_stat.db-journal
- /data/data/####/gdt_suid
- /data/data/####/i==1.2.0&&2.0.8_1574199799439_envelope.log
- /data/data/####/index
- /data/data/####/info.xml
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/libMMANDKSignature.af0072e4.so
- /data/data/####/libjiagu.so
- /data/data/####/libyaqbasic.af0072e4.so
- /data/data/####/libyaqpro.af0072e4.so
- /data/data/####/local_crash_lock
- /data/data/####/local_crash_lock (deleted)
- /data/data/####/metrics_guid
- /data/data/####/mintegral.msdk.db-journal
- /data/data/####/mintegral.xml
- /data/data/####/native_record_lock
- /data/data/####/native_record_lock (deleted)
- /data/data/####/proc_auxv
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/share.db-journal
- /data/data/####/share_date.xml
- /data/data/####/sp_dev_info.xml
- /data/data/####/sp_push_time.xml
- /data/data/####/t==8.0.0&&2.0.8_1574199801358_envelope.log
- /data/data/####/the-real-index
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/tt_sdk_settings.xml.bak
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopenadsdk.xml.bak
- /data/data/####/ttopensdk.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_general_config.xml.bak (deleted)
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/update.xml
- /data/data/####/update_lc
- /data/data/####/yaq.af0072e4.sec
- /data/data/####/yaqsdkcookie
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/app_dex_load/ad_adview.jar --oat-fd=47 --oat-location=/data/user/0/<Package>/app_dex/ad_adview.dex --compiler-filter=speed
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/app_e_qq_com_plugin/gdt_plugin.jar --oat-fd=163 --oat-location=/data/user/0/<Package>/app_e_qq_com_dex/gdt_plugin.dex --compiler-filter=speed
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/cache/AdmobileApiAd_3.9.0.dex --oat-fd=129 --oat-location=/data/user/0/<Package>/app_admobile_api_dex/AdmobileApiAd_3.9.0.dex --compiler-filter=speed
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/cache/AndroidLogPlusXl_5.7.0.dex --oat-fd=69 --oat-location=/data/user/0/<Package>/app_android_log_plus_xl/AndroidLogPlusXl_5.7.0.dex --compiler-filter=speed
- getprop
- getprop ro.build.version.emui
- getprop ro.letv.release.version
- getprop ro.vivo.os.build.display.id
- ls /
- ls /sys/class/thermal
- ps
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- RSA-NONE-PKCS1Padding