Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) pub-####.qin####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(TLS/1.0) gl####.w.kunl####.####.com:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) c####.yaof####.com:443
- TCP c####.g####.ig####.com:5226
- TCP sdk.o####.t####.####.com:5224
- 7j####.c####.z0.####.com
- c####.g####.ig####.com
- c####.yaof####.com
- c-h####.g####.com
- l####.tbs.qq.com
- log.u####.com
- plb####.u####.com
- pub-####.qin####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- st####.yaof####.com
- u####.u####.com
- pub-####.qin####.com/tdata_EDT356
- t####.c####.q####.####.com/tdata_YYn966
- t####.c####.q####.####.com/tdata_eOt091
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- c-h####.g####.com/api.php?format=####&t=####
- l####.tbs.qq.com/ajax?c=####&k=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/106fc1f59db8689400b04da7875364ebf8de360c7cb2e08....0.tmp
- /data/data/####/10cec18adf22d5640f411935d04e606f0d22dddf7d4c3a0....0.tmp
- /data/data/####/17d9c16674f4bac611784a2a6f1d9a598184b98e99cb13f....0.tmp
- /data/data/####/17ec06fb8df000d109461851c8028d80a61be6a7847b4c9....0.tmp
- /data/data/####/255c97928af991184b42e9c9427288c1c054605f5f3c0c0....0.tmp
- /data/data/####/27cd2128d33d61db88dc079d9afb9d1eef81a31ac5d5178....0.tmp
- /data/data/####/292b63d8f052b5426746b61a8b04fa38237071d7f4767f8....0.tmp
- /data/data/####/2c93406626ab94a99e06f47d93b3b0ff20067cb5e32e31c....0.tmp
- /data/data/####/35517f03c5ebddd217fdec49e9f38819c8d71c12ab9851d....0.tmp
- /data/data/####/38cc8be0a5847276b0f35e8423ff8b6fb9fc763d392d6a0....0.tmp
- /data/data/####/552adcfe4b08cd5fab94e57e43fb6c7a10d73e898505ee0....0.tmp
- /data/data/####/87c974f4c18b9b8b66f7ad05396b38567a7d9c200d15781....0.tmp
- /data/data/####/90d2dd6e83172c68c40da8b45b42feaead24e16f8ed9f99....0.tmp
- /data/data/####/979ebb726427a1e149436ff8dbcefd196d8b06624c3ad91....0.tmp
- /data/data/####/Alvin2.xml
- /data/data/####/ClassicsHeader.xml
- /data/data/####/ContextData.xml
- /data/data/####/MultiDex.lock
- /data/data/####/NAME_MILESTONE_PREFERENCE.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/a==7.5.4&&4.1.1_1545288424129_envelope.log
- /data/data/####/b1eefd0d3ffa4e123ef45ce8479b2738c589c23fada073d....0.tmp
- /data/data/####/b62f8ffca6a566769a5d62cd6f8100ebfbbf2ceb5720b23....0.tmp
- /data/data/####/b96116cec5684368fe525934b026eee2c1c885ede2855e3....0.tmp
- /data/data/####/c089e5372fa7418e8a7a2089c01543b6054ab2f6885834e....0.tmp
- /data/data/####/c54a67388db5b05c4db4ea40574b912a08763136461ebb4....0.tmp
- /data/data/####/c92c93749c00c9758fe539e6a54673ef7156c8cf6d1176c....0.tmp
- /data/data/####/core_info
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQ1Mjg4NDIyMjQz;
- /data/data/####/dW1weF9zaGFyZV8xNTQ1Mjg4NDI0Mjgz;
- /data/data/####/dW1weF9zaGFyZV8xNTQ1Mjg4NDI0NTQ3;
- /data/data/####/download_upload
- /data/data/####/e896a18d160bf871deb225fcdcdf63ae88553801f15011b....0.tmp
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f33f5759c31ded61e2b7c7ee7e689a59e89fc60c8f1ff84....0.tmp
- /data/data/####/f4c5dca5fbf0842c9f25aeb109dfe2cbf79f1eb4265ead3....0.tmp
- /data/data/####/fdda3cad60c7d601cfea4652a6bfb1a99e533858b1db076....0.tmp
- /data/data/####/ff5bdc9aaba6a93286768402cd2169be5ba8f8ee6a6868c....0.tmp
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gx_sp.xml
- /data/data/####/i==1.2.0&&4.1.1_1545288422520_envelope.log
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/libjiagu1220830957.so
- /data/data/####/multidex.version.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/share.db-journal
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbs_pv_config
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdata_YYn966
- /data/data/####/tdata_YYn966.jar
- /data/data/####/tdata_eOt091
- /data/data/####/tdata_eOt091.jar
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_config.xml.bak
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.nomedia
- /data/media/####/.umm.dat
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.yantan.hitbus.bin
- /data/media/####/com.yantan.hitbus.db
- /data/media/####/tdata_YYn966
- /data/media/####/tdata_eOt091
- /data/media/####/test.log
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.CustomPushService 24717 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- getprop ro.product.cpu.abi
- ls /
- ls /sys/class/thermal
- mount
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.CustomPushService 24717 300 0
- getuiext2
- libjiagu1220830957
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding