Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) versi####.api.h####.cn:80
- TCP(HTTP/1.1) l####.c####.h####.cn:443
- TCP(HTTP/1.1) wea####.api.h####.cn:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(HTTP/1.1) qiniuvi####.cdn.d####.com:80
- TCP(HTTP/1.1) connect####.gst####.com:80
- TCP(TLS/1.0) plb####.u####.com:443
- TCP(TLS/1.0) api.w####.com:443
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) 74.1####.205.138:443
- TCP(TLS/1.0) u####.u####.com:443
- TCP(TLS/1.0) rr2---s####.g####.com:443
- TCP(TLS/1.2) www.go####.com:443
- TCP(TLS/1.2) p####.google####.com:443
- TCP init####.c####.h####.cn:443
- UDP p####.google####.com:443
- 041791b####.bug####.cn
- and####.a####.go####.com
- and####.google####.com
- api.w####.com
- connect####.gst####.com
- gmscomp####.google####.com
- init####.c####.h####.cn
- l####.c####.h####.cn
- l####.tbs.qq.com
- m####.go####.com
- mm.u.h####.cn
- mo####.my####.cn
- p####.google####.com
- plb####.u####.com
- rr18---####.g####.com
- rr2---s####.g####.com
- u####.u####.com
- versi####.api.h####.cn
- wea####.api.h####.cn
- www.go####.com
- api.w####.com:443/oauth2/getaid.json?appkey=####&mfp=####&packagename=##...
- l####.c####.h####.cn:443/produce/pcontent/android/362/678318853be1a67e86...
- qiniuvi####.cdn.d####.com/mxu/2019/0106/a2/a2e49686ad39653b0f969e3536ab7...
- qiniuvi####.cdn.d####.com/mxu/2019/0106/f9/f9f113fe25b98c0a71faf39f75d81...
- qiniuvi####.cdn.d####.com/mxu/2019/0513/14/14231e846f25d6defdaf3ee1cbee3...
- qiniuvi####.cdn.d####.com/mxu/2019/0513/39/39d49f10115c29d102a56be5fcdfe...
- qiniuvi####.cdn.d####.com/mxu/2019/0513/c7/c7445ddfbc660544067df1f9fe7a4...
- qiniuvi####.cdn.d####.com/mxu/2019/0513/fc/fc841d7319d3fbcd4c94c3d3b3e17...
- qiniuvi####.cdn.d####.com/mxu/2019/0611/50/509f82173e45ce7faa0e8b9487d8e...
- qiniuvi####.cdn.d####.com/mxu/2019/0611/c7/c7beacd52426808668958b491059e...
- versi####.api.h####.cn/?m=####&c=####&bundle_id=####&client_type=####&sy...
- wea####.api.h####.cn/?m=####&c=####&system_version=####&app_version=####...
- l####.tbs.qq.com/ajax?c=####&k=####
- plb####.u####.com:443/umpx_internal
- u####.u####.com:443/unify_logs
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jgck
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/CookiePersistence.xml
- /data/data/####/LOCALE_FILE.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/a==7.4.0&&1.0.0_1702298887384_envelope.log
- /data/data/####/audio.xml
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes10.dex
- /data/data/####/classes.dex;classes11.dex
- /data/data/####/classes.dex;classes12.dex
- /data/data/####/classes.dex;classes13.dex
- /data/data/####/classes.dex;classes14.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.dex;classes6.dex
- /data/data/####/classes.dex;classes7.dex
- /data/data/####/classes.dex;classes8.dex
- /data/data/####/classes.dex;classes9.dex
- /data/data/####/classes.oat
- /data/data/####/core_info
- /data/data/####/dW1weF9pbnRlcm5hbF8xNzAyMjk4ODgwODA2;
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/i==1.2.0&&1.0.0_1702298880751_envelope.log
- /data/data/####/info.xml
- /data/data/####/journal
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/mxu.db-journal
- /data/data/####/mxu.db-journal (deleted)
- /data/data/####/proc_auxv
- /data/data/####/setting.xml
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/weibo_sdk_aid1
- /data/media/####/.cuid2
- /data/media/####/0676eaaa83b4d22c4bcdeafcfaa93c432ed1c4c8defe42....0.tmp
- /data/media/####/0676eaaa83b4d22c4bcdeafcfaa93c432ed1c4c8defe42...7849.0
- /data/media/####/088c07d49a9848ed52af7dc91f295ce97ca7f1df870f33....0.tmp
- /data/media/####/08b04d4ccec1e8f06b3b26fd37878eabc75c3881e0a470....0.tmp
- /data/media/####/08b04d4ccec1e8f06b3b26fd37878eabc75c3881e0a470...b011.0
- /data/media/####/15872b99300db289704f131700468546511c4c6d2973bf...d40c.0
- /data/media/####/1de3d39209944abd8107d679e5990a715c83dce481b441....0.tmp
- /data/media/####/31ef57377df32caa9b84a1785da9a9966c6dc24da5851f....0.tmp
- /data/media/####/36077785d1f4fe94dcfab7e25c7c99afb5ba73510d6f1f....0.tmp
- /data/media/####/44db4f4c63fe48df6b2c2c4331cc24ac4e975cb4d8a608....0.tmp
- /data/media/####/44db4f4c63fe48df6b2c2c4331cc24ac4e975cb4d8a608...e38c.0
- /data/media/####/50d4211d543e1353c6751ab471edfcbb4bb9ccc06a10cf....0.tmp
- /data/media/####/50d4211d543e1353c6751ab471edfcbb4bb9ccc06a10cf...2268.0
- /data/media/####/758fd94c62f06960bd1da1fb403192e371980d514292f3....0.tmp
- /data/media/####/758fd94c62f06960bd1da1fb403192e371980d514292f3...36f1.0
- /data/media/####/7fd020b71709e128dc34109c80f13c8ac8fe4efc7a187d....0.tmp
- /data/media/####/847aa0925b61844e55214240826fc7ec5cb407dedb42d3....0.tmp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/ba6ddffa05bcf5056d31413188e19cfbfdc37e3c4c50dc....0.tmp
- /data/media/####/c0638411d1baa3442f7c58d4e0dfc7649171bb34db2645....0.tmp
- /data/media/####/de9d6f8a5a23aabdb233d62258c20d15398171187eb453....0.tmp
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/tbslog.txt
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- getprop ro.product.cpu.abi
- ls /
- ls /data/anr/
- ls /sys/class/thermal
- libBaiduMapSDK_base_v4_5_2
- libBugtags
- libjiagu
- libm2o_jni
- libweibosdkcore
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- RC4
- RSA-ECB-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- desede-CBC-PKCS5Padding