Technical information
- Android.DownLoader.1007.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) cdn-sdk####.g####.com.####.com:80
- TCP(HTTP/1.1) tys####.wwe####.com:17001
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) zzm####.z####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) and####.b####.qq.com:443
- TCP(TLS/1.0) n####.moneyca####.com:443
- TCP(TLS/1.0) o####.e.kuai####.com:443
- TCP(TLS/1.0) 1####.217.16.10:443
- TCP(TLS/1.0) 1####.250.203.142:443
- TCP(TLS/1.0) zzm####.z####.com:443
- TCP(TLS/1.0) en####.t####.cn:443
- TCP(TLS/1.0) 1####.217.20.202:443
- TCP(TLS/1.0) api-ac####.pangoli####.com.####.com:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.2) 2####.58.209.10:443
- TCP(TLS/1.2) 1####.217.16.3:443
- TCP(TLS/1.2) 1####.217.16.10:443
- TCP(TLS/1.2) 1####.250.203.206:443
- TCP 1####.217.20.202:443
- TCP cm-1####.g####.com:5224
- TCP api-ac####.pangoli####.com.####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP umk####.moneyca####.com:443
- and####.b####.qq.com
- android####.go####.com
- api-ac####.pangoli####.com
- c-h####.g####.com
- cdn-sdk####.g####.com
- cm-1####.g####.com
- cn-zzm####.z####.com
- dm.tou####.com
- en####.t####.cn
- instant####.google####.com
- m####.go####.com
- md####.google####.com
- n####.moneyca####.com
- o####.e.kuai####.com
- pang####.sn####.com
- sdk-ope####.g####.com
- sdk.c####.g####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- sf3-ttc####.ps####.com
- step####.moneyca####.com
- to####.ctobsn####.com
- tys####.wwe####.com
- umk####.moneyca####.com
- www.gst####.com
- zzm####.z####.com
- api-ac####.pangoli####.com.####.com:443/service/2/app_alert_check/?aid=#...
- cdn-sdk####.g####.com.####.com/tdata_uKH393
- d####.c####.l####.####.com/config/hzv9.conf
- and####.b####.qq.com:443/rqd/async?aid=####
- api-ac####.pangoli####.com.####.com:443/service/2/app_log/?device_platfo...
- api-ac####.pangoli####.com.####.com:443/service/2/device_register_only/?...
- api-ac####.pangoli####.com.####.com:443/service/2/log_settings/?device_p...
- c-h####.g####.com/api.php?format=####&t=####
- en####.t####.cn:443/api/v1/activity/reportCrash2
- en####.t####.cn:443/sdk/put/queryCommonConfig
- n####.moneyca####.com:443/
- o####.e.kuai####.com:443/rest/e/v3/open/sdk
- sdk.o####.p####.####.com/api.php?format=####&t=####
- tys####.wwe####.com:17001/cbcvu9/
- zzm####.z####.com/gateway/open/api/v1/user/odid
- zzm####.z####.com:443/gateway/open/api/v1/bizsdk/placement/priority
- /data/data/####/-1135038580-754662270
- /data/data/####/-1135038580153849231
- /data/data/####/-1561220934-831839999
- /data/data/####/.bak
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/960535042270534062
- /data/data/####/IcYirkF.dex
- /data/data/####/IcYirkF.dex.flock (deleted)
- /data/data/####/IcYirkF.jar
- /data/data/####/SP_AROUTER_CACHE.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/androidx.work.workdb-journal (deleted)
- /data/data/####/bd_embed_tea_agent.db-journal
- /data/data/####/bt_common.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/com.mn.battery.BETA_VALUES.xml
- /data/data/####/crashrecord.xml
- /data/data/####/d_permit.xml
- /data/data/####/downloader.db-journal
- /data/data/####/dy_ad_config.xml
- /data/data/####/embed_applog_stats.xml
- /data/data/####/embed_header_custom.xml
- /data/data/####/embed_last_sp_session.xml
- /data/data/####/fv.xml
- /data/data/####/getui_sp.xml
- /data/data/####/gt_safe.pid
- /data/data/####/index
- /data/data/####/indicator_d
- /data/data/####/indicator_d-c
- /data/data/####/indicator_p
- /data/data/####/indicator_p-c
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/kssdk_api_pref.xml
- /data/data/####/local_crash_lock
- /data/data/####/local_crash_lock (deleted)
- /data/data/####/metrics_guid
- /data/data/####/native_record_lock
- /data/data/####/native_record_lock (deleted)
- /data/data/####/nc.xml
- /data/data/####/npth.xml
- /data/data/####/npth_log.db-journal
- /data/data/####/pref_domestic_lib_data.xml
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/shared_analysis_data.xml
- /data/data/####/snssdk_openudid.xml
- /data/data/####/sp_horn.xml
- /data/data/####/sp_push_time.xml
- /data/data/####/sp_step_channel.xml
- /data/data/####/tdata_uKH393
- /data/data/####/tdata_uKH393.dex
- /data/data/####/tdata_uKH393.dex.flock (deleted)
- /data/data/####/tdata_uKH393.jar
- /data/data/####/the-real-index
- /data/data/####/tray.db-journal
- /data/data/####/tt_ad_sdk_sp.xml
- /data/data/####/tt_mediation_open_sdk.db-journal
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/tt_sdk_settings.xml.bak
- /data/data/####/tt_sp_app_list.xml
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopensdk.db-journal
- /data/data/####/tui_base.xml
- /data/data/####/uzl
- /data/data/####/vgl
- /data/data/####/yyzx_analysis.db-journal
- /data/misc/####/primary.prof
- /system/bin/sh
- app_process32 / c.b.a.c.DMain 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 --application --nice-name=assist2
- app_process32 / c.b.a.c.DMain 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 --application --nice-name=assist1
- app_process32 / c.b.a.c.DMain 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 --application --nice-name=daemon
- cat /proc/version
- cat /sys/class/net/wlan0/address
- getprop
- getprop ro.build.version.emui
- getprop ro.miui.ui.version.name
- getprop ro.yunos.build.version
- logcat -d -v threadtime
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DES
- RSA-ECB-PKCS1Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- RSA-None-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DES
- RSA-None-PKCS1Padding