Technical information
- Android.DownLoader.363.origin
- Android.RemoteCode.41.origin
- Android.Xiny.20
- Android.Xiny.20
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) yun.tuis####.com:80
- TCP(HTTP/1.1) acti####.guav####.cn:80
- TCP(HTTP/1.1) cdn.danj####.com:80
- TCP(HTTP/1.1) 1####.75.90.129:80
- TCP(HTTP/1.1) v####.6####.com:80
- TCP(HTTP/1.1) acti####.danj####.com.####.com:80
- TCP(HTTP/1.1) en####.tui####.com:80
- TCP(HTTP/1.1) 1####.171.140.78:80
- TCP(HTTP/1.1) p2.ai####.com:80
- TCP(HTTP/1.1) img.danj####.com:80
- TCP(HTTP/1.1) m.cnt####.com:80
- TCP(HTTP/1.1) fp-st####.b0.a####.com:80
- TCP(HTTP/1.1) z####.heyc####.net:80
- TCP(HTTP/1.1) www.ye####.org:80
- TCP(HTTP/1.1) embe####.d####.com.cn:80
- TCP(HTTP/1.1) do.soi####.com:80
- TCP(HTTP/1.1) yun.d####.com.cn:80
- TCP(HTTP/1.1) z.no####.net:80
- TCP(HTTP/1.1) m.nj####.com:80
- TCP(HTTP/1.1) ip.ch####.com:80
- TCP(HTTP/1.1) yun.guav####.cn.####.com:80
- TCP(HTTP/1.1) sdk.91a####.com:80
- TCP(HTTP/1.1) m1.laogeda####.com:80
- TCP(HTTP/1.1) cd.kw####.com:80
- TCP(HTTP/1.1) w####.5####.com:80
- UDP(NTP) 2.and####.p####.####.org:123
- TCP(TLS/1.0) hotfix####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) res.ad####.cn:443
- TCP(TLS/1.0) st####.adhu####.com:443
- TCP(TLS/1.0) act.ad####.cn:443
- TCP(TLS/1.0) z.c####.com:443
- TCP(TLS/1.0) fp.ton####.net:443
- TCP(TLS/1.0) gm.mm####.com:443
- TCP(TLS/1.0) dis####.in####.com:443
- TCP(TLS/1.0) a####.b####.com:443
- TCP(TLS/1.0) s####.tc.qq.com:443
- TCP(TLS/1.0) acti####.danj####.com.####.com:443
- TCP(TLS/1.0) c.c####.com:443
- TCP(TLS/1.0) fp.fraudme####.cn:443
- TCP(TLS/1.0) aliyuns####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) aliyuno####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) ei.c####.com:443
- 2.and####.p####.####.org
- a####.b####.com
- act.ad####.cn
- acti####.danj####.com
- acti####.guav####.cn
- aliyuno####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- c####.mm####.com
- c.c####.com
- cd.kw####.com
- cdn.danj####.com
- dis####.in####.com
- do.soi####.com
- ei.c####.com
- embe####.d####.com.cn
- en####.tui####.com
- fp.fraudme####.cn
- fp.ton####.net
- hotfix####.oss-cn-####.aliy####.com
- i####.adhu####.com
- i####.adhu####.com
- i####.adhu####.com
- i####.adhu####.com
- i####.adhu####.com
- img.danj####.com
- ip.ch####.com
- m.cnt####.com
- m.cuda####.com
- m.nj####.com
- m1.laogeda####.com
- mt####.go####.com
- p2.ai####.com
- r####.wx.qq.com
- res.ad####.cn
- s19.c####.com
- s22.c####.com
- s23.c####.com
- sdk.91a####.com
- st####.adhu####.com
- st####.fraudme####.cn
- v####.6####.com
- w####.5####.com
- w####.5####.com
- www.ye####.org
- yun.d####.com
- yun.d####.com.cn
- yun.guav####.cn
- yun.tuis####.com
- z####.heyc####.net
- z.no####.net
- z1.c####.com
- z5.c####.com
- z8.c####.com
- acti####.danj####.com.####.com/activity/rotate?key=####
- acti####.danj####.com.####.com/dist/base/css/redbox.css
- acti####.danj####.com.####.com/dist/rotate/css/actBase.css
- acti####.danj####.com.####.com/dist/rotate/css/alertskin.css
- acti####.danj####.com.####.com/dist/rotate/css/common.css
- acti####.danj####.com.####.com/dist/rotate/css/index.css
- acti####.danj####.com.####.com/dist/rotate/css/prizelist.css
- acti####.guav####.cn/activity/getAllSkin?timestamp=####&couponSkinId=###...
- acti####.guav####.cn/activity/getReturnPage?slotId=####&id=####&login=##...
- acti####.guav####.cn/activity/index?id=####&slotId=####&login=####&appKe...
- acti####.guav####.cn/activity/showLog?dpm=####&couponSource=####&orderId...
- acti####.guav####.cn/statistics/activityPagePerf?group_type=####&platfor...
- cdn.danj####.com/img/bg/nh4xzvuva10.jpg
- cdn.danj####.com/img/bg/tmbyrkg11i.png
- do.soi####.com/201809/wli.jar
- embe####.d####.com.cn/exposure/standard?dpm=####&consumer_id=####&domain...
- embe####.d####.com.cn/exposure/standard?dpm=####&couponSource=####&order...
- en####.tui####.com/index/activity?appKey=####&adslotId=####
- fp-st####.b0.a####.com/v2/fm.js?ver=####&t=####
- img.danj####.com/img/desc/rq40oqbii6.jpg
- img.danj####.com/img/gifts/4uu27nmhdi.png
- img.danj####.com/img/gifts/6ss5q2o65t.png
- img.danj####.com/img/gifts/7c44te47fr.png
- img.danj####.com/img/gifts/dpk2i9q1fy.png
- img.danj####.com/img/gifts/nelxdl9h2h.png
- img.danj####.com/img/gifts/rkbvinsiby.png
- ip.ch####.com/getip.aspx
- m.cnt####.com/caizhuangmiji/19/2850.html
- m.cnt####.com/iDdo4VRE1HKF.php?o=####&i=####&s=####&ad=####
- m.nj####.com/diannaoyingjian/10/3302.html
- m.nj####.com/rHdwMKVbDiXj19.php?o=####&i=####&s=####&ad=####
- m1.laogeda####.com/ads/admaster24.php?o=####
- m1.laogeda####.com/ads/admaster240.php?o=####
- m1.laogeda####.com/templets/tui/js/jquery-1.8.3.min.js
- p2.ai####.com/activity/index?key=####
- sdk.91a####.com/static/20180829152952mod.enc
- yun.d####.com.cn/h5-tuia/couponPrize/lucky.png?nnn=####
- yun.guav####.cn.####.com/babi/img/gvp2pg748e.jpg
- yun.guav####.cn.####.com/h5-mami/activity/turnCircle/5.0/actBase_2018090...
- yun.guav####.cn.####.com/h5-mami/activity/wallet/2.0/index_201712040000....
- yun.guav####.cn.####.com/h5-mami/activity/wallet/2.0/index_201809211910....
- yun.guav####.cn.####.com/h5-mami/common/actBase_201809262012.css
- yun.guav####.cn.####.com/h5-mami/common/actBase_201809301526.js
- yun.guav####.cn.####.com/h5-mami/common/common_201802011416.css
- yun.guav####.cn.####.com/h5-mami/common/common_201809301526.js
- yun.guav####.cn.####.com/h5-mami/h5-discern-simulator-1.0.19.min.js?t=####
- yun.guav####.cn.####.com/h5-mami/pluginBase/common_201809271607.js
- yun.guav####.cn.####.com/mami-media/img/b78a557xsf.png?x-oss-process=####
- yun.guav####.cn.####.com/tuia/skyeye/skyeye.js?t=####
- yun.tuis####.com/h5-mami/activity/components/incentive/coin.png?x-oss-pr...
- yun.tuis####.com/h5-mami/activity/components/incentive/coinBtn.png?x-oss...
- yun.tuis####.com/h5-mami/activity/components/incentive/coinGet.png?x-oss...
- yun.tuis####.com/h5-mami/activity/components/incentive/gift.png?x-oss-pr...
- yun.tuis####.com/h5-mami/activity/components/incentive/light1.png
- yun.tuis####.com/h5-mami/activity/components/incentive/light2.png
- yun.tuis####.com/h5-mami/activity/turnCircle/image/point.png
- yun.tuis####.com/h5-mami/activity/turnCircle/image/rule.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00094.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00095.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00096.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00097.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00098.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00099.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00100.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00101.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00102.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00103.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00104.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00105.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00106.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00107.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00108.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00109.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00110.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00111.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00112.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00113.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00114.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00115.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00116.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/1630mask_00117.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/caidai.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coin.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon2_00094.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon2_00095.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon2_00096.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon2_00097.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/coupon2_00098.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/quan.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00057.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00058.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00059.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00060.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00061.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00062.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00063.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00064.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00065.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00066.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00067.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00068.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00069.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00070.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00071.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00072.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00073.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00074.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00075.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00076.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00077.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00078.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00079.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00080.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00081.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00082.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00083.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00084.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00085.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00086.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/sahua_00087.png
- yun.tuis####.com/h5-mami/activity/turnCircle/v8/imgs/saoguang.png
- yun.tuis####.com/h5-mami/activity/wallet/2.0/a.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/b.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/bg.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/but.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/carddefault.png?x-oss-proce...
- yun.tuis####.com/h5-mami/activity/wallet/2.0/guideimg.png?x-oss-process=...
- yun.tuis####.com/h5-mami/activity/wallet/2.0/money.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/record.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/2.0/rule.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/gold.png?x-oss-process=####
- yun.tuis####.com/h5-mami/activity/wallet/hand.png?x-oss-process=####
- yun.tuis####.com/h5-mami/thanksPrize/index_201801031425.css
- yun.tuis####.com/h5-mami/thanksPrize/index_201803121444.js
- yun.tuis####.com/h5/activity/turntable_circle/images/prize-detail-btn.png
- yun.tuis####.com/mami-media/img/lx5ysx9baj.png
- yun.tuis####.com/mami-media/img/x11j1n2t7d.png?x-oss-process=####
- acti####.guav####.cn/activity/ajaxOptions
- acti####.guav####.cn/activity/doJoin
- acti####.guav####.cn/activity/result
- acti####.guav####.cn/pluginTools/responsiveIndex
- acti####.guav####.cn/pluginTools/timingIndex
- acti####.guav####.cn/statistics/activityPagePerf?type=####&skinName=####...
- acti####.guav####.cn/token/getToken
- cd.kw####.com/c
- sdk.91a####.com/api/DeviceReport.ashx
- v####.6####.com/0/ca477c3b25914a5f821296be846eca73.html
- v####.6####.com/18/a41844eff5ff4a0a96c9603142acfcf6.html
- v####.6####.com/20/8c10c5184b36491eb6ed32bdbafb1eb4.html
- v####.6####.com/api/CheckModule.ashx
- v####.6####.com/api/GetLockAppOpenTask.ashx
- v####.6####.com/api/GetModuleConfig.ashx
- v####.6####.com/api/GetPkNameList.ashx
- v####.6####.com/api/ReportAppLog.ashx
- w####.5####.com/0/76179c31f5d04e21bcf7fee1debf1df1.html
- www.ye####.org/i?requestId=####&g=####
- z####.heyc####.net/getlist
- z####.heyc####.net/xlogin
- z.no####.net/m/a/f
- z.no####.net/m/a/t
- /data/data/####/JSON.xml
- /data/data/####/Ql6z55l62.jar
- /data/data/####/USER_INFO.xml
- /data/data/####/W_Key.xml
- /data/data/####/WebViewSettings.xml
- /data/data/####/bNJihi.jar
- /data/data/####/base.js
- /data/data/####/cjd8QSL.jar
- /data/data/####/com.yllmb.clearfruit_preferences.xml
- /data/data/####/com_yllmb_clearfruit.txt
- /data/data/####/common.js
- /data/data/####/countClickIP.xml
- /data/data/####/cpro.baidu.com.js
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/downloadswc
- /data/data/####/downloadswc-journal
- /data/data/####/dpi
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/f_000011
- /data/data/####/f_000012
- /data/data/####/f_000013
- /data/data/####/f_000014
- /data/data/####/f_000015
- /data/data/####/f_000016
- /data/data/####/f_000017
- /data/data/####/f_000018
- /data/data/####/f_000019
- /data/data/####/f_00001a
- /data/data/####/f_00001b
- /data/data/####/f_00001c
- /data/data/####/f_00001d
- /data/data/####/f_00001e
- /data/data/####/f_00001f
- /data/data/####/f_000020
- /data/data/####/hid.db
- /data/data/####/index
- /data/data/####/j5Qohq88x.jar
- /data/data/####/m.baidu.com.js
- /data/data/####/m.chinebuy.com.js
- /data/data/####/max_pref.xml
- /data/data/####/mod.dec
- /data/data/####/mod.dex
- /data/data/####/mod.enc
- /data/data/####/phan.xml
- /data/data/####/some_game_info.xml
- /data/data/####/st.xml
- /data/data/####/start.js
- /data/data/####/tIrc0LhA.jar
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.nid
- /data/media/####/5.1wli.jar.u
- /data/media/####/com_yllmb_clearfruit.txt
- /data/media/####/id.tmp
- /data/media/####/restime.dat
- /system/bin/sh
- cat /sys/class/android_usb/android0/idProduct
- cat /sys/class/android_usb/android0/idVendor
- getprop
- ls -l /dev
- ls -l /dev/block
- ls -l /dev/block/vold
- ls -l /dev/com.android.settings.daemon
- ls -l /dev/cpuctl
- ls -l /dev/cpuctl/apps
- ls -l /dev/cpuctl/apps/bg_non_interactive
- ls -l /dev/graphics
- ls -l /dev/input
- ls -l /dev/log
- ls -l /dev/pts
- ls -l /dev/snd
- ls -l /dev/socket
- ps
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding