Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) m####.3g.qq.com:80
- TCP(HTTP/1.1) oth.eve.mdt.####.com:8080
- TCP(HTTP/1.1) a####.b####.qq.com:8011
- TCP(HTTP/1.1) 1####.31.213.162:80
- TCP(HTTP/1.1) 47.97.2####.214:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) cdn-sdk####.g####.com.####.com:80
- TCP(HTTP/1.1) up####.sdk.jig####.cn:80
- TCP(HTTP/1.1) luna-im####.qq.com.####.com:80
- TCP(HTTP/1.1) oth.str.mdt.####.com:8080
- TCP(HTTP/1.1) c####.g####.com:80
- TCP(HTTP/1.1) ap####.g####.com:80
- TCP(HTTP/1.1) ac####.we####.com.cn:80
- TCP(HTTP/1.1) gs.g####.com:80
- TCP(HTTP/1.1) api.aog####.com:80
- TCP(HTTP/1.1) b####.g####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- UDP(NTP) 2.and####.p####.####.org:123
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) plb####.u####.com:443
- TCP(TLS/1.0) o####.map.b####.com:443
- TCP(TLS/1.0) s####.j####.cn:443
- TCP(TLS/1.0) def####.cn.zb.####.com:443
- TCP(TLS/1.0) mi.g####.qq.com:443
- TCP(TLS/1.0) al####.u####.com:443
- TCP(TLS/1.0) is.sn####.com.####.com:443
- TCP(TLS/1.0) gs.g####.com:443
- TCP(TLS/1.0) s####.e.qq.com:443
- TCP(TLS/1.0) l####.tbs.qq.com:443
- TCP(TLS/1.0) socials####.we####.com.cn:8066
- TCP(TLS/1.2) 1####.250.179.142:443
- TCP 1####.0.1.254:43942
- TCP 1####.36.21.47:7005
- TCP 1####.0.1.254:43986
- TCP 1####.0.1.254:43864
- TCP 1####.0.1.254:43754
- UDP sis.j####.io:19000
- TCP 1####.0.1.254:43914
- TCP 1####.0.1.254:43994
- TCP 1####.0.1.254:43854
- TCP 1####.0.1.254:43998
- TCP 1####.0.1.254:43758
- TCP 1####.0.1.254:43764
- UDP 1####.250.179.138:443
- TCP 1####.0.1.254:43952
- TCP 1####.0.1.254:43972
- 2.and####.p####.####.org
- a####.b####.qq.com
- ac####.we####.com.cn
- and####.b####.qq.com
- ap####.g####.com
- api.aog####.com
- api.htp.hubc####.####.cn
- api.map.b####.com
- b####.g####.com
- b####.g####.com
- c####.g####.com
- c####.g####.com
- c####.g####.com
- cdn-sdk####.g####.com
- gs.g####.com
- imgc####.qq.com
- is.sn####.com
- l####.tbs.qq.com
- log.u####.com
- m####.3g.qq.com
- mi.g####.qq.com
- o####.map.b####.com
- oth.eve.mdt.####.com
- oth.str.mdt.####.com
- plb####.u####.com
- s####.e.qq.com
- s####.j####.cn
- s.j####.cn
- sdk-ser####.dftou####.com
- sf3-fe####.pglstat####.com
- sf3-ttc####.ps####.com
- sis.j####.io
- socials####.we####.com.cn
- u####.u####.com
- up####.sdk.jig####.cn
- ac####.we####.com.cn/android/splash
- ac####.we####.com.cn/android/start/chuanshanjia
- ac####.we####.com.cn/android/start/tencent
- api.aog####.com/data-receive/service/apm_data/api/task
- cdn-sdk####.g####.com.####.com/tdata_pZO822
- def####.cn.zb.####.com:443/bar/get/5bd1a8e6b465f51dc90001a0/?pcv=####&de...
- is.sn####.com.####.com:443/obj/ad-pattern/renderer/94647f/index.html
- is.sn####.com.####.com:443/obj/ad-pattern/renderer/94647f/index.js
- is.sn####.com.####.com:443/obj/ad-pattern/renderer/94647f/vendors~lp-sdk...
- is.sn####.com.####.com:443/obj/ad-pattern/renderer/package.json
- luna-im####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/pr...
- mi.g####.qq.com:443/gdt_mview.fcg?fc=####&datatype=####&posh=####&count=...
- socials####.we####.com.cn:8066/socialsecurity/advert/getAdvert?fromModel...
- a####.b####.qq.com:8011/rqd/async?aid=####
- al####.u####.com:443/unify_logs
- and####.b####.qq.com/rqd/async?aid=####
- ap####.g####.com/bd
- ap####.g####.com/rp
- api.aog####.com/data-receive/service/apm_data/api/crash
- api.aog####.com/data-receive/service/apm_data/api/data
- b####.g####.com/api.php?format=####&t=####
- c####.g####.com/api.php?format=####&t=####
- gs.g####.com/geshu/sdk/getBaseConfs
- gs.g####.com/geshu/sdkStatistics/bd
- gs.g####.com/geshu/sdkStatistics/ubi
- gs.g####.com/geshu/smartStatistics/upe
- gs.g####.com:443/encryption/key/fetch
- is.sn####.com.####.com:443/api/ad/union/sdk/get_ads/
- is.sn####.com.####.com:443/api/ad/union/sdk/settings/
- is.sn####.com.####.com:443/api/ad/union/sdk/stats/
- l####.tbs.qq.com:443/ajax?c=####&k=####
- m####.3g.qq.com/
- oth.eve.mdt.####.com:8080/analytics/upload?rid=####&sid=####
- oth.str.mdt.####.com:8080/analytics/upload
- plb####.u####.com:443/umpx_internal
- plb####.u####.com:443/umpx_share
- s####.e.qq.com/activate
- up####.sdk.jig####.cn/v1/push/sdk/postlist
- /data/data/####/-1127729055-1266689676
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/1021689741840853517
- /data/data/####/4444.yaqcookie
- /data/data/####/8606a6a0dbe1d78fee615b40ed3eb027.xml
- /data/data/####/AdmobileApiAd_3.9.0.dex
- /data/data/####/AdmobileApiAd_3.9.0.dex (deleted)
- /data/data/####/AdmobileApiAd_3.9.0.dex.flock (deleted)
- /data/data/####/AndroidLogPlusXl_5.7.0.dex
- /data/data/####/AndroidLogPlusXl_5.7.0.dex (deleted)
- /data/data/####/AndroidLogPlusXl_5.7.0.dex.flock (deleted)
- /data/data/####/BUGLY_COMMON_VALUES.xml
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/DENGTA_META.xml
- /data/data/####/DeviceInfo.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/JPushSA_Config.xml
- /data/data/####/P_DID_UUID
- /data/data/####/TMAssistantSDKSharedPreference.xml
- /data/data/####/TMSDKPrefer.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/Web Data
- /data/data/####/Web Data-journal
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/adhubsdk_config.xml
- /data/data/####/authStatus_com.weface.kksocialsecurity;remote.xml
- /data/data/####/beacon_selfupdate_db
- /data/data/####/beacon_selfupdate_db-journal
- /data/data/####/bugly_db_
- /data/data/####/bugly_db_-journal
- /data/data/####/chuanglan_report_2.2.0.db
- /data/data/####/chuanglan_report_2.2.0.db-journal
- /data/data/####/chuanglan_report_2.2.0.db-journal (deleted)
- /data/data/####/chuanglan_report_2.2.0.db-shm
- /data/data/####/chuanglan_report_2.2.0.db-shm (deleted)
- /data/data/####/chuanglan_report_2.2.0.db-wal
- /data/data/####/chuanglan_report_2.2.0.db-wal (deleted)
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.ciba.data.xml
- /data/data/####/com.weface.kksocialsecurity.BETA_VALUES.xml
- /data/data/####/com.weface.kksocialsecurity_preferences.xml
- /data/data/####/core_info
- /data/data/####/crashrecord.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNjUwMTMxMzI5NTA2;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNjUwMTMxMzYxNjcx;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNjUwMTMxMzg4MDAw;
- /data/data/####/dW1weF9zaGFyZV8xNjUwMTMxMzM1ODE2;
- /data/data/####/dW1weF9zaGFyZV8xNjUwMTMxMzMyMTY1;
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/download_upload
- /data/data/####/downloader.db
- /data/data/####/downloader.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/gal.db
- /data/data/####/gal.db-journal
- /data/data/####/gdt_config.cfg
- /data/data/####/gdt_plugin.dex
- /data/data/####/gdt_plugin.dex.flock (deleted)
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_stat.db
- /data/data/####/gdt_stat.db-journal
- /data/data/####/gdt_suid
- /data/data/####/gin.db-journal
- /data/data/####/gis.db
- /data/data/####/gis.db-journal
- /data/data/####/gtc.db
- /data/data/####/gtc.db-journal
- /data/data/####/gxcoreframework_app_setting.xml
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/i==1.2.0&&1.54_1650131329715_envelope.log
- /data/data/####/i==1.2.0&&1.54_1650131361672_envelope.log
- /data/data/####/ias.db
- /data/data/####/ias.db-journal
- /data/data/####/ias_sp.xml
- /data/data/####/info.xml
- /data/data/####/jAnalysis_genera_config.xml
- /data/data/####/jp_msg.xml
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-journal (deleted)
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/jpush_statistics.db-wal (deleted)
- /data/data/####/jxlh_push.db
- /data/data/####/jxlh_push.db-journal
- /data/data/####/kankanshebao_guide.xml
- /data/data/####/keycursession
- /data/data/####/keysession
- /data/data/####/libMMANDKSignature.5e612106.so
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/libyaqbasic.5e612106.so
- /data/data/####/libyaqpro.5e612106.so
- /data/data/####/local_crash_lock
- /data/data/####/mac.xml
- /data/data/####/metrics_guid
- /data/data/####/native_record_lock
- /data/data/####/ofl.config
- /data/data/####/ofl_location.db
- /data/data/####/ofl_location.db-journal
- /data/data/####/ofl_statistics.db
- /data/data/####/ofl_statistics.db-journal
- /data/data/####/proc_auxv
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/share.db
- /data/data/####/share.db-journal
- /data/data/####/share_data.xml
- /data/data/####/sp_aograph_agent.xml
- /data/data/####/sp_aograph_agent.xml.bak
- /data/data/####/sp_push_time.xml
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_config.xml.bak (deleted)
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbs_pv_config
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdata_pZO822.dex
- /data/data/####/tdata_pZO822.dex.flock (deleted)
- /data/data/####/tdata_pZO822.jar
- /data/data/####/tdata_pZO8221529090276.tmp
- /data/data/####/tmapkpatch_sdk.db
- /data/data/####/tmapkpatch_sdk.db-journal
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopenadsdk.xml (deleted)
- /data/data/####/ttopensdk.db
- /data/data/####/ttopensdk.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/update_lc
- /data/data/####/yaq.5e612106.sec
- /data/data/####/yaqsdkcookie
- /data/media/####/.P_DID_UUID
- /data/media/####/.cuid2
- /data/media/####/7fc5983a6c105bee5a8ecc459e9730b9
- /data/media/####/7fc5983a6c105bee5a8ecc459e9730b9 (deleted)
- /data/media/####/7fc5983a6c105bee5a8ecc459e9730b9.tmp
- /data/media/####/7fc5983a6c105bee5a8ecc459e9730b9.tmp (deleted)
- /data/media/####/9493fc1f6f98527c0d455b074eecedbe
- /data/media/####/agent_log.txt
- /data/media/####/c22239f9b1f1b13ee1898229429f009d.tmp
- /data/media/####/c52dc5301d1aac09e40226b2ed98816d.tmp
- /data/media/####/log.k
- /data/media/####/ls.db
- /data/media/####/ls.db-journal
- /data/media/####/sysid.dat
- /data/media/####/tbslog.txt
- /data/media/####/temp_pkg_info.json
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- getprop
- getprop ro.build.version.emui
- getprop ro.letv.release.version
- getprop ro.product.cpu.abi
- getprop ro.vivo.os.build.display.id
- ls -l /system/bin/su
- ls /
- ls /sys/class/thermal
- libBugly
- libMMANDKSignature.5e612106
- libindoor
- libjcore115
- libjiagu
- liblocSDK7b
- libnms
- libpl_droidsonroids_gif
- libyaqbasic.5e612106
- libyaqpro.5e612106
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-NoPadding
- RSA-ECB-PKCS1Padding
- AES
- AES-CBC-PKCS5Padding
- AES-ECB-NoPadding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- RSA-NONE-PKCS1Padding