Technical information
- Android.DownLoader.363.origin
- Android.RemoteCode.41.origin
- Android.Xiny.20
- Android.Xiny.246.origin
- Android.Xiny.20
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) yun.tuis####.com:80
- TCP(HTTP/1.1) acti####.guav####.cn:80
- TCP(HTTP/1.1) v####.6####.com:80
- TCP(HTTP/1.1) en####.tui####.com:80
- TCP(HTTP/1.1) www.in####.cn:80
- TCP(HTTP/1.1) log.cuda####.com:10080
- TCP(HTTP/1.1) fp-st####.b0.a####.com:80
- TCP(HTTP/1.1) ob.nic####.cn:80
- TCP(HTTP/1.1) do.soi####.com:80
- TCP(HTTP/1.1) m.h####.com:80
- TCP(HTTP/1.1) z####.heyc####.net:80
- TCP(HTTP/1.1) m.cuda####.com:80
- TCP(HTTP/1.1) www.ye####.org:80
- TCP(HTTP/1.1) embe####.d####.com.cn:80
- TCP(HTTP/1.1) yun.d####.com.cn:80
- TCP(HTTP/1.1) z.no####.net:80
- TCP(HTTP/1.1) ip.ch####.com:80
- TCP(HTTP/1.1) c####.im.qq.com:80
- TCP(HTTP/1.1) yun.guav####.cn.####.com:80
- TCP(HTTP/1.1) m.ryfa####.com:80
- TCP(HTTP/1.1) at.al####.com:80
- TCP(HTTP/1.1) sdk.91a####.com:80
- TCP(HTTP/1.1) b####.www.ye####.org:80
- TCP(HTTP/1.1) m1.laogeda####.com:80
- TCP(HTTP/1.1) w####.5####.com:80
- TCP(TLS/1.0) hotfix####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) ad####.tand####.com:443
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) st####.adhu####.com:443
- TCP(TLS/1.0) api.nic####.cn:443
- TCP(TLS/1.0) bu####.bianxia####.com:443
- TCP(TLS/1.0) z.c####.com:443
- TCP(TLS/1.0) 2b.tand####.com:443
- TCP(TLS/1.0) fp.ton####.net:443
- TCP(TLS/1.0) re####.al####.com:443
- TCP(TLS/1.0) bxm-g####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) dis####.in####.com:443
- TCP(TLS/1.0) s####.tc.qq.com:443
- TCP(TLS/1.0) adsc####.tand####.com:443
- TCP(TLS/1.0) gm.mm####.com:443
- TCP(TLS/1.0) buy.bianxia####.com:443
- TCP(TLS/1.0) c.c####.com:443
- TCP(TLS/1.0) fp.fraudme####.cn:443
- TCP(TLS/1.0) aliyuns####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) aliyuno####.oss-cn-####.aliy####.com:443
- TCP(TLS/1.0) hm.b####.com:443
- 2b.tand####.com
- acti####.guav####.cn
- ad####.tand####.com
- adsc####.tand####.com
- aliyuno####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- aliyuns####.oss-cn-####.aliy####.com
- api.nic####.cn
- at.al####.com
- b####.www.ye####.org
- bu####.bianxia####.com
- buy.bianxia####.com
- bxm-g####.oss-cn-####.aliy####.com
- c####.im.qq.com
- c####.mm####.com
- c.c####.com
- dis####.in####.com
- do.soi####.com
- embe####.d####.com.cn
- en####.tui####.com
- fp.fraudme####.cn
- fp.ton####.net
- hm.b####.com
- hotfix####.oss-cn-####.aliy####.com
- im####.nic####.cn
- ip.ch####.com
- log.cuda####.com
- m.cuda####.com
- m.h####.com
- m.ryfa####.com
- m1.laogeda####.com
- ob.nic####.cn
- r####.wx.qq.com
- re####.al####.com
- s19.c####.com
- s22.c####.com
- sdk.91a####.com
- st####.adhu####.com
- st####.fraudme####.cn
- v####.6####.com
- w####.5####.com
- w####.5####.com
- www.in####.cn
- www.ye####.org
- yun.d####.com.cn
- yun.guav####.cn
- yun.tuis####.com
- z####.heyc####.net
- z.no####.net
- z1.c####.com
- z8.c####.com
- acti####.guav####.cn/activity/getAllSkin?timestamp=####&couponSkinId=###...
- acti####.guav####.cn/activity/getReturnPage?slotId=####&id=####&login=##...
- acti####.guav####.cn/activity/index?id=####&slotId=####&login=####&appKe...
- acti####.guav####.cn/statistics/activityPagePerf?group_type=####&platfor...
- at.al####.com/t/font_wsni5ytblm78pvi.ttf
- do.soi####.com/201809/wwh.jar
- embe####.d####.com.cn/exposure/standard?dpm=####&consumer_id=####&domain...
- en####.tui####.com/index/activity?appKey=####&adslotId=####
- fp-st####.b0.a####.com/v2/fm.js?ver=####&t=####
- ip.ch####.com/getip.aspx
- log.cuda####.com:10080/dot/s.gif?t=0.10926121170632541&p=ads&locaurl=htt...
- log.cuda####.com:10080/dot/s.gif?t=0.14251674944534898&p=ads&locaurl=htt...
- log.cuda####.com:10080/dot/s.gif?t=0.2734506537672132&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.3101761608850211&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.31907972088083625&p=ads&locaurl=htt...
- log.cuda####.com:10080/dot/s.gif?t=0.48948544170707464&p=ads&locaurl=htt...
- log.cuda####.com:10080/dot/s.gif?t=0.5037429346702993&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.5162064421456307&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.5267547159455717&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.7221560198813677&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.9401836970355362&p=ads&locaurl=http...
- log.cuda####.com:10080/dot/s.gif?t=0.9404697283171117&p=ads&locaurl=http...
- m.cuda####.com/?appKey=####&appType=####&appEntrance=####&business=####
- m.cuda####.com/dist/bxm_base/js/polyfill.min.js
- m.cuda####.com/dist/bxm_base/js/zepto.js
- m.cuda####.com/dist/welfareAT02/public/lib/common/common.js
- m.cuda####.com/dist/welfareAT02/public/lib/common/extend.css
- m.cuda####.com/dist/welfareAT02/public/lib/conf/actConf.js
- m.cuda####.com/dist/welfareAT02/public/lib/statis/Statis_IA.js
- m.cuda####.com/distt/walletModel/bundle20180918.css?3f74490####
- m.cuda####.com/distt/walletModel/index.html?business=####&appkey=####&ui...
- m.cuda####.com/distt/walletModel/js/main20180918.js?3f74490####
- m.cuda####.com/distt/walletModel/null
- m.h####.com/gjKOrLoAhg02.php?o=####&i=####&s=####&ad=####
- m.h####.com/junqingdongtai/05/5780.html
- m.ryfa####.com/g5eJNyCvyJkT.php?o=####&i=####&s=####&ad=####
- m.ryfa####.com/liuxingfaxing/21/3586.html
- m1.laogeda####.com/ads/admaster24.php?o=####
- m1.laogeda####.com/ads/admaster240.php?o=####
- m1.laogeda####.com/templets/tui/js/jquery-1.8.3.min.js
- ob.nic####.cn/huodong/Production/20180809/pkg/Common.js
- ob.nic####.cn/huodong/Production/20180809/pkg/Vendor.js
- ob.nic####.cn/huodong/Production/20180809/projects/page/TurntableLottery...
- sdk.91a####.com/static/20180829152952mod.enc
- yun.d####.com.cn/h5-tuia/couponPrize/lucky.png?nnn=####
- yun.guav####.cn.####.com/h5-mami/activity/kickTree/1.0/index_20171027180...
- yun.guav####.cn.####.com/h5-mami/activity/kickTree/1.0/index_20180725150...
- yun.guav####.cn.####.com/h5-mami/activity/turnCircle/5.0/actBase_2018090...
- yun.guav####.cn.####.com/h5-mami/common/actBase_201810091908.css
- yun.guav####.cn.####.com/h5-mami/common/actBase_201810121520.js
- yun.guav####.cn.####.com/h5-mami/common/common_201802011416.css
- yun.guav####.cn.####.com/h5-mami/common/common_201809301526.js
- yun.guav####.cn.####.com/h5-mami/couponPrize/lucky.png?x-oss-process=####
- yun.guav####.cn.####.com/h5-mami/h5-discern-simulator-1.0.19.min.js?t=####
- yun.guav####.cn.####.com/h5-mami/pluginBase/common_201810111207.js
- yun.guav####.cn.####.com/h5/activity/turntable_circle/images/rule.png?x-...
- yun.guav####.cn.####.com/mami-media/img/2iswa7t27e.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/6zuc808nx1.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/7lhawslliq.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/87xk26ih6z.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/b2otga57j0.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/frvz7z5qpe.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/igt53kmrpo.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/j203qh52cq.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/jp0w7tf1ma.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/k3cubgobye.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/lipfe9iu8s.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/rzl6ez7cjn.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/tbwta21n3z.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/tvt97x72rn.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/u81z2es7t7.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/ugst8y5qo1.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/vdlkcl5t2z.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/x97i1h2y03.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/xwdw6gaw4m.png?x-oss-process=####
- yun.guav####.cn.####.com/mami-media/img/zb8d10cdoi.png?x-oss-process=####
- yun.guav####.cn.####.com/tuia/skyeye/skyeye.js?t=####
- yun.tuis####.com/h5-mami/activity/components/incentive/coin.png?x-oss-pr...
- yun.tuis####.com/h5-mami/activity/components/incentive/coinBtn.png?x-oss...
- yun.tuis####.com/h5-mami/activity/components/incentive/coinGet.png?x-oss...
- yun.tuis####.com/h5-mami/activity/components/incentive/gift.png?x-oss-pr...
- yun.tuis####.com/h5-mami/activity/components/incentive/light1.png
- yun.tuis####.com/h5-mami/activity/components/incentive/light2.png
- yun.tuis####.com/h5-mami/activity/hand.png
- yun.tuis####.com/h5-mami/couponPrize/1.22/bg-back.png
- yun.tuis####.com/h5-mami/couponPrize/1.22/redpacks.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/bg-back-blue.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/bodybg-blue.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/bodybg.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/btn1.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/coupon.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/coupon1.png
- yun.tuis####.com/h5-mami/couponPrize/1.27/index_201807182002.css
- yun.tuis####.com/h5-mami/couponPrize/1.27/index_201807182002.js
- yun.tuis####.com/h5-mami/couponPrize/3.8/halo2.png
- yun.tuis####.com/h5-mami/couponPrize/close.png
- yun.tuis####.com/h5-mami/thanksPrize/index_201801031425.css
- yun.tuis####.com/h5-mami/thanksPrize/index_201803121444.js
- yun.tuis####.com/h5/activity/kickTree/images/hole.png
- yun.tuis####.com/h5/showCouponPrize/4.0.0/assets/light.png
- yun.tuis####.com/upload/r1CRf1476708099539.png
- acti####.guav####.cn/activity/ajaxOptions
- acti####.guav####.cn/pluginTools/responsiveIndex
- acti####.guav####.cn/pluginTools/timingIndex
- acti####.guav####.cn/statistics/activityPagePerf?type=####&skinName=####...
- b####.www.ye####.org/i?requestId=####&g=####
- c####.im.qq.com/cgi-bin/cgi_svrtime
- ob.nic####.cn/niceapi/getactivity
- ob.nic####.cn/niceapi/getactivitybuoy
- ob.nic####.cn/niceapi/orderdatainfo
- sdk.91a####.com/api/DeviceReport.ashx
- v####.6####.com/0/ca477c3b25914a5f821296be846eca73.html
- v####.6####.com/18/a41844eff5ff4a0a96c9603142acfcf6.html
- v####.6####.com/20/8c10c5184b36491eb6ed32bdbafb1eb4.html
- v####.6####.com/api/CheckModule.ashx
- v####.6####.com/api/GetLockAppOpenTask.ashx
- v####.6####.com/api/GetModuleConfig.ashx
- v####.6####.com/api/GetPkNameList.ashx
- v####.6####.com/api/ReportAppLog.ashx
- w####.5####.com/0/76179c31f5d04e21bcf7fee1debf1df1.html
- www.in####.cn/n
- www.ye####.org/i?requestId=####&g=####
- z####.heyc####.net/getlist
- z####.heyc####.net/xlogin
- z.no####.net/m/a/t
- /data/data/####/.jg.ic
- /data/data/####/60KL8Leydv.jar
- /data/data/####/E6TJGgRs.jar
- /data/data/####/Fj4PE6lgH.jar
- /data/data/####/JSON.xml
- /data/data/####/LmuH1ik6af.jar
- /data/data/####/W_Key.xml
- /data/data/####/WebViewSettings.xml
- /data/data/####/alarms.db-journal
- /data/data/####/base.js
- /data/data/####/com.crescentmoongames.redline_rushmod_preferences.xml
- /data/data/####/common.js
- /data/data/####/countClickIP.xml
- /data/data/####/cpro.baidu.com.js
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/downloadswc
- /data/data/####/downloadswc-journal
- /data/data/####/dpi
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/f_000011
- /data/data/####/f_000012
- /data/data/####/f_000013
- /data/data/####/f_000014
- /data/data/####/f_000015
- /data/data/####/f_000016
- /data/data/####/f_000017
- /data/data/####/f_000018
- /data/data/####/f_000019
- /data/data/####/f_00001a
- /data/data/####/f_00001b
- /data/data/####/f_00001c
- /data/data/####/f_00001d
- /data/data/####/f_00001e
- /data/data/####/f_00001f
- /data/data/####/hid.db
- /data/data/####/index
- /data/data/####/kjmJVDzf.jar
- /data/data/####/libjiagu.so
- /data/data/####/m.baidu.com.js
- /data/data/####/m.chinebuy.com.js
- /data/data/####/max_pref.xml
- /data/data/####/mod.dec
- /data/data/####/mod.dex
- /data/data/####/mod.enc
- /data/data/####/phan.xml
- /data/data/####/st.xml
- /data/data/####/start.js
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/z.xml
- /data/media/####/.nid
- /data/media/####/5.0wwh.jar
- /data/media/####/id.tmp
- /data/media/####/restime.dat
- /system/bin/sh
- cat /sys/class/android_usb/android0/idProduct
- cat /sys/class/android_usb/android0/idVendor
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- ls -l /dev
- ls -l /dev/block
- ls -l /dev/block/vold
- ls -l /dev/com.android.settings.daemon
- ls -l /dev/cpuctl
- ls -l /dev/cpuctl/apps
- ls -l /dev/cpuctl/apps/bg_non_interactive
- ls -l /dev/graphics
- ls -l /dev/input
- ls -l /dev/log
- ls -l /dev/pts
- ls -l /dev/snd
- ls -l /dev/socket
- ps
- libjiagu
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- DES