Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ads.w####.cn:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) t####.dmp.y####.net:80
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(HTTP/1.1) mo####.b####.com:80
- TCP(HTTP/1.1) s.y####.net:80
- TCP(HTTP/1.1) app.w####.cn:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) acco####.go####.com:443
- TCP(TLS/1.0) myacc####.go####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) mobads-####.b####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- TCP(TLS/1.0) a####.go####.com:443
- TCP(TLS/1.0) p####.go####.com:443
- TCP(TLS/1.0) s####.g.doublec####.net:443
- a####.go####.com
- acco####.go####.com
- acco####.you####.com
- ads.w####.cn
- adser####.go####.com
- aexcep####.b####.qq.com
- and####.b####.qq.com
- app.w####.cn
- f####.gst####.com
- mo####.b####.com
- mobads-####.b####.com
- myacc####.go####.com
- oc.u####.com
- p####.go####.com
- s####.g.doublec####.net
- s.y####.net
- ssl.google-####.com
- ssl.gst####.com
- t####.dmp.y####.net
- www.go####.com
- www.go####.nl
- www.gst####.com
- ads.w####.cn/action/pop_ad/ad?app_id=####&udid=####&imsi=####&net=####&b...
- app.w####.cn/action/connect/active?app_id=####&udid=####&imsi=####&net=#...
- mo####.b####.com/ads/ads.appcache
- mo####.b####.com/ads/css/min/main.css
- mo####.b####.com/ads/index.htm
- mo####.b####.com/ads/js/ads.trunk.js
- mo####.b####.com/ads/js/c.js
- mo####.b####.com/ads/pa/8/__pasys_remote_banner.php?bdr=####&os=####&v=#...
- mo####.b####.com/ads/pa/8/__xadsdk__remote__8.8006.jar
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1540342703361=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1540342703367=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1540342733958=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1540342764575=####
- s.y####.net/stat/aos/v3/init?s=####
- s.y####.net/stat/aos/v3/pkc?s=####
- s.y####.net/stat/aos/v3/pku?s=####
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- app.w####.cn/action/user_info
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- t####.dmp.y####.net/v1/android/packages?rt=####&sign=####
- /data/data/####/1cda5531b200a626d86786ea7a195d60
- /data/data/####/1cda5531b200a626d86786ea7a195d60-journal
- /data/data/####/5d70dd5d4ee0c199caee27c5fac86262
- /data/data/####/5d70dd5d4ee0c199caee27c5fac86262-journal
- /data/data/####/AppSettings.xml
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/CE94557724F842149D690D0E8CBB1CBD.xml
- /data/data/####/CacheTime.dat
- /data/data/####/P15pKIjsm64m
- /data/data/####/P15pKIjsm64m-journal
- /data/data/####/ShowAdFlag.xml
- /data/data/####/T1oX0rhhuXWt
- /data/data/####/T1oX0rhhuXWt-journal
- /data/data/####/XKwVoK0huy3R
- /data/data/####/XKwVoK0huy3R-journal
- /data/data/####/__x_adsdk_agent_header__.xml
- /data/data/####/__xadsdk__remote__final__4bc389a8-5e95-4577-acd...b0.jar
- /data/data/####/__xadsdk__remote__final__builtin__.jar
- /data/data/####/__xadsdk_downloaded__version__.xml
- /data/data/####/bugly_db_legu-journal
- /data/data/####/com.baidu.mobads.loader.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f3fe07d59d8b2d5471dd3513538ce09c-journal
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/index
- /data/data/####/jqIqJYOT3JpT
- /data/data/####/jqIqJYOT3JpT-journal
- /data/data/####/libshella-2.8.2.so
- /data/data/####/local_crash_lock
- /data/data/####/mix.dex
- /data/data/####/native_record_lock
- /data/data/####/onlineconfig_agent_online_setting_com.rainbow.TTK.xml
- /data/data/####/security_info
- /data/data/####/wIU6pTyUBYWX
- /data/data/####/wIU6pTyUBYWX-journal
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/data/####/wsUL1uCdKvjD
- /data/data/####/wsUL1uCdKvjD-journal
- /data/media/####/.nomedia
- /data/media/####/AppPackage.dat
- /data/media/####/CacheTime.dat
- /data/media/####/UnPackage.dat
- /data/media/####/android
- /data/media/####/i42d45df023jnkdd93la483f9xGFKXI
- /data/media/####/s92TjjdfoP2n3o9dfji2l9s1olkjf0p
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libshella-2.8.2.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- libshella-2.8.2
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES
- RSA-ECB-PKCS1Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES
- RSA-ECB-PKCS1Padding