Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- UDP(DNS) 8####.8.4.4:53
- UDP(DNS) 1####.76.76.76:53
- TCP(HTTP/1.1) sdk.c####.g####.####.cn:80
- TCP(HTTP/1.1) m.d####.mob.com:80
- TCP(HTTP/1.1) adash####.man.aliy####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) api.s####.mob.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) sayu####.chongqi####.com:80
- TCP(HTTP/1.1) s####.cn.ron####.com:80
- TCP(TLS/1.0) 1####.194.163.27:443
- TCP(TLS/1.0) wa####.127.net:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) u####.u####.com:443
- TCP(TLS/1.0) nim.qi####.com:443
- TCP(TLS/1.0) l####.net####.im:443
- TCP(TLS/1.0) plb####.u####.com:443
- TCP(TLS/1.0) l####.cmpass####.com:9443
- TCP(TLS/1.0) s####.cn.ron####.com:443
- TCP(TLS/1.0) qy-swa####.qi####.com:443
- TCP(TLS/1.0) tyjr-co####.al####.com:443
- TCP(TLS/1.0) dt.net####.im:443
- TCP(TLS/1.0) f####.253.com:443
- TCP(TLS/1.2) 1####.177.14.94:443
- TCP(TLS/1.2) inte####.faceu####.com:6443
- TCP 1####.38.236.159:443
- TCP 59.1####.209.80:8080
- TCP inte####.faceu####.com:6443
- TCP 1####.227.15.16:80
- UDP 52.1####.158.59:25000
- TCP 47.93.2####.215:8000
- TCP l####.net####.im:8080
- TCP 49.7.2####.6:443
- UDP 8####.8.4.4:53
- TCP sdk.o####.t####.####.com:5224
- TCP 1####.226.26.138:80
- UDP 54.2####.118.211:9700
- TCP 1####.147.175.25:443
- TCP 54.2####.118.211:8000
- TCP 1####.3.18.118:443
- UDP 54.2####.118.211:8000
- TCP a####.exc.mob.com:80
- TCP 1####.227.15.225:80
- UDP 1####.14.12.130:1080
- TCP 1####.76.76.200:443
- TCP m.d####.mob.com:80
- UDP 1####.190.44.36:8000
- UDP 1####.166.142.150:8913
- UDP RepOrt-####.a####.IO:8000
- UDP 1####.76.76.76:53
- TCP 52.76.1####.122:443
- TCP cm-1####.g####.com:5225
- TCP 64.2####.165.113:443
- UDP <Google DNS>
- Ap1.A####.io
- RepOrt-####.a####.IO
- WWW.B####.COM
- Www.B####.COM
- a####.exc.mob.com
- a####.man.aliy####.com
- aP1.A####.io
- aP5.a####.iO
- and####.b####.qq.com
- ap1.a####.IO
- ap5.A####.iO
- api.s####.mob.com
- c.d####.mob.com
- cm-1####.g####.com
- dt.net####.im
- f####.253.com
- hotfix####.aliy####.com
- i####.me
- inte####.faceu####.com
- l####.cmpass####.com
- l####.net####.im
- lbs.net####.im
- m.d####.mob.com
- nav.cn.ron####.com
- nim.qi####.com
- p####.google####.com
- plb####.u####.com
- qy-swa####.qi####.com
- s####.cn.ron####.com
- sayu####.chongqi####.com
- sdk.c####.g####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- u####.u####.com
- wWW.Go####.cOM
- wa####.127.net
- wfd.net####.im
- wfd.net####.im.####.8
- www.Go####.COM
- dt.net####.im:443/api/getConfig
- l####.net####.im:443/cc/nrtc/v2?clientType=####&sdkVersion=####&manufact...
- m.d####.mob.com/v4/cconf?appkey=####&plat=####&apppkg=####&appver=####&n...
- sdk.c####.g####.####.cn/config/hzv9.conf
- tyjr-co####.al####.com:443/u/28316947/ZNzX+0U76iMDAGdzx1HHJdgj/4.9.7.1/0/
- wa####.127.net:443/lbs?version=####
- a####.exc.mob.com/errconf
- a####.exc.mob.com/v3/cdata
- adash####.man.aliy####.com/man/api?ak=####&s=####
- and####.b####.qq.com/rqd/async?aid=####
- api.s####.mob.com/conn
- api.s####.mob.com/snsconf
- f####.253.com:443/flash/accountInit/v3
- l####.cmpass####.com:9443/log/logReport
- nim.qi####.com:443/webapi/user/create.action?deviceid=####&appkey=####
- plb####.u####.com:443/umpx_internal
- s####.cn.ron####.com/navipush.json
- s####.cn.ron####.com:443/active.json
- sayu####.chongqi####.com/action/sayu/inFirst
- u####.u####.com:443/unify_logs
- /data/anr/traces.txt
- /data/data/####/.duid
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/.mrecord
- /data/data/####/.mrecord (deleted)
- /data/data/####/.mrlock
- /data/data/####/.statistics
- /data/data/####/.vpl_lock
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/Alvin2.xml
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/ContextData.xml
- /data/data/####/FwLog.xml
- /data/data/####/FwLog.xml.bak
- /data/data/####/NIMSDK_Config_5a9adb4b4a278d0b1f93263936ecf737.xml
- /data/data/####/NIMSDK_Config_5a9adb4b4a278d0b1f93263936ecf737.xml.bak
- /data/data/####/NIMSDK_Config_7c729326c29eecf450ea25afae0e8128.xml
- /data/data/####/NIMSDK_Config_7c729326c29eecf450ea25afae0e8128_...d7.xml
- /data/data/####/NearMeSTAT.db-journal
- /data/data/####/RongPushAppConfig.xml
- /data/data/####/RongPushAppConfig.xml.bak
- /data/data/####/SP_AROUTER_CACHE.xml
- /data/data/####/SP_AROUTER_CACHE.xml.bak
- /data/data/####/Statistics.xml
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/Unicorn.7c729326c29eecf450ea25afae0e8128.xml
- /data/data/####/Unicorn.7c729326c29eecf450ea25afae0e8128.xml.bak
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/agora_sdk_cache.dat
- /data/data/####/app.min.js
- /data/data/####/arrow.png
- /data/data/####/book_header_mask.png
- /data/data/####/book_icon_list.png
- /data/data/####/book_icon_more.png
- /data/data/####/btn_go.png
- /data/data/####/bugly_db_-journal
- /data/data/####/chats.db-journal
- /data/data/####/chuanglan_report_2.2.1.db
- /data/data/####/chuanglan_report_2.2.1.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.dex;classes6.dex
- /data/data/####/classes.dex;classes7.dex
- /data/data/####/com.nearme.common.util.DeviceUtil.xml
- /data/data/####/com.nearme.gamecenter.open.xml
- /data/data/####/com.nearme.gamecenter.open.xml.bak
- /data/data/####/com.opos.cmn.biz.ext.prefs.xml
- /data/data/####/com.qiyukf.analytics.xml
- /data/data/####/com.renxing.jimo.BETA_VALUES.xml
- /data/data/####/com.renxing.jimo_ip_prefs.xml
- /data/data/####/com.renxing.jimo_ip_prefs.xml.bak
- /data/data/####/com.renxing.jimo_preferences.xml
- /data/data/####/crashrecord.xml
- /data/data/####/ct_account_api_sdk.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNjkyMTk0ODI2Njg4;
- /data/data/####/default-banner.png
- /data/data/####/default-game.png
- /data/data/####/detail_icon_4.png
- /data/data/####/empty.png
- /data/data/####/error_sorry.png
- /data/data/####/error_wifi.png
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/game_comment_bg.png
- /data/data/####/game_comment_icon_1.png
- /data/data/####/game_comment_icon_2.png
- /data/data/####/game_comment_icon_3.png
- /data/data/####/gateway_command.xml
- /data/data/####/gateway_command.xml.bak
- /data/data/####/getui_sp.xml
- /data/data/####/global_config.xml
- /data/data/####/i==1.2.0&&4.9.7.1_1692194826512_envelope.log
- /data/data/####/icon-close.png
- /data/data/####/icon_detail_nomessage.png
- /data/data/####/icon_evaluation.png
- /data/data/####/icon_list.png
- /data/data/####/icon_more.png
- /data/data/####/icon_pointer_right.png
- /data/data/####/icon_strategy.png
- /data/data/####/icon_title.png
- /data/data/####/icon_video.png
- /data/data/####/index.html
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal
- /data/data/####/left_bg.png
- /data/data/####/libjiagu.so
- /data/data/####/liboneplussdk.so
- /data/data/####/libonlywechat_plugin.so
- /data/data/####/libs.min.js
- /data/data/####/local_crash_lock
- /data/data/####/locale.config.xml
- /data/data/####/metrics_guid
- /data/data/####/middle_bg.png
- /data/data/####/mob_commons_1
- /data/data/####/mob_sdk_exception_1
- /data/data/####/msg.db-journal
- /data/data/####/native_record_lock
- /data/data/####/nearme_config_com.renxing.jimo.xml
- /data/data/####/nearme_config_com.renxing.jimo.xml.bak
- /data/data/####/nearme_func_com.renxing.jimo.xml
- /data/data/####/nearme_setting_com.renxing.jimo.xml
- /data/data/####/net_remote_config.xml
- /data/data/####/no_more_left_icon.png
- /data/data/####/no_more_right_icon.png
- /data/data/####/num_bg.png
- /data/data/####/oppo_game_service_202306.apk
- /data/data/####/oppo_game_service_202306.apk_temp
- /data/data/####/oppo_game_service_202306.dex
- /data/data/####/oppo_game_service_202306.dex.flock (deleted)
- /data/data/####/oppo_spinner_black_16.png
- /data/data/####/oppo_spinner_black_48.png
- /data/data/####/plugin_framework.xml
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qiyu_save_7c729326c29eecf450ea25afae0e8128.xml
- /data/data/####/round_bg1.png
- /data/data/####/run.pid
- /data/data/####/security_info
- /data/data/####/share_data.xml
- /data/data/####/share_data.xml.bak
- /data/data/####/share_sdk_1
- /data/data/####/smile_face.png
- /data/data/####/spUtils.xml
- /data/data/####/sp_sophix.xml
- /data/data/####/sp_sophix.xml.bak
- /data/data/####/style.css
- /data/data/####/table_bg.png
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/unicorn#cheese#
- /data/data/####/version
- /data/data/####/vip_tag.png
- /data/media/####/.Og.meta
- /data/media/####/.artc_lock
- /data/media/####/.dh
- /data/media/####/.dh-journal
- /data/media/####/.dhlock
- /data/media/####/.di
- /data/media/####/.dic_lock
- /data/media/####/.duid
- /data/media/####/.globalLock
- /data/media/####/.lecd
- /data/media/####/.lesd_lock
- /data/media/####/.nomedia
- /data/media/####/.pkg_lock
- /data/media/####/.slw
- /data/media/####/8bc4a6ad486746cfb4f94576978a074c.0
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/agorasdk.log
- /data/media/####/app.db
- /data/media/####/cf73cb3a4a3b3984f91b547f5f9b9386.0.tmp
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.renxing.jimo.bin
- /data/media/####/com.renxing.jimo.db
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/mcs_msg.ini
- /data/media/####/nim_sdk.log
- /data/media/####/official_config
- /data/media/####/rong_sdk.log
- /data/media/####/rong_sdk_crash.log
- /data/media/####/tmp_c_20230816
- /data/media/####/tmp_u_20230816
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop
- cat /sys/class/net/wlan0/address
- getprop
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.code
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- ls -l /system/xbin/su
- ls /
- ls /sys/class/thermal
- libRongIMLib
- libagora-rtc-sdk-jni
- libgetuiext2
- libjiagu
- libnama
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-ECB-NoPadding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding