Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) w####.jd.com:80
- TCP(HTTP/1.1) beacon####.aliy####.com:80
- TCP(HTTP/1.1) s####.tc.qq.com:80
- TCP(HTTP/1.1) ur####.jd.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) v.g####.qq.com:80
- TCP(HTTP/1.1) m####.m.jd.com:80
- TCP(HTTP/1.1) z####.jd.com:80
- TCP(HTTP/1.1) m.j####.com:80
- TCP(HTTP/1.1) ad####.jd.com:80
- TCP(HTTP/1.1) reso####.msg.xi####.net:80
- TCP(HTTP/1.1) c.g####.qq.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) oth.up####.mdt.####.com:8080
- TCP(TLS/1.0) p####.m.jd.com:443
- TCP(TLS/1.0) g####.jd.com:443
- TCP(TLS/1.0) www.opendre####.cn:443
- TCP(TLS/1.0) b####.m.jd.com:443
- TCP(TLS/1.0) ada####.m.ta####.com:443
- TCP(TLS/1.0) ur####.jd.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) i####.j####.com:443
- TCP(TLS/1.0) a####.m.jd.com:443
- TCP(TLS/1.0) w####.jd.com:443
- TCP(TLS/1.0) sh.wagbr####.ta####.com:443
- TCP(TLS/1.0) www.j####.com:443
- TCP(TLS/1.0) h####.b####.com:443
- TCP 47.74.1####.158:5222
- TCP 4####.62.94.2:443
- 7x####.c####.z0.####.com
- a####.exc.mob.com
- a####.m.jd.com
- ad####.jd.com
- ada####.ut.ta####.com
- adas####.ut.ta####.com
- beacon####.aliy####.com
- black####.m.jd.com
- c.g####.qq.com
- g####.jd.com
- g####.jd.com
- h####.b####.com
- h5.360bu####.com
- h5s####.m.jd.com
- i####.360bu####.com
- i####.360bu####.com
- imgc####.qq.com
- m####.m.jd.com
- m.360bu####.com
- mi.g####.qq.com
- oth.up####.mdt.####.com
- p####.m.jd.com
- p####.ugd####.com
- qzones####.g####.cn
- regi####.xm####.xi####.com
- reso####.msg.xi####.net
- s####.e.qq.com
- st.360bu####.com
- sto####.360bu####.com
- ur####.jd.com
- v.g####.qq.com
- w####.jd.com
- wq.360bu####.com
- www.opendre####.cn
- z####.jd.com
- ad####.jd.com/fcgi-bin/rpttraceinfo?__jda=122270672.15419663705411153215...
- c.g####.qq.com/gdt_mclick.fcg?viewid=####&jtype=####&i=####&os=####&asi=...
- m####.m.jd.com/cookie/addCookie.action?cookiePrame=####&callbackName=####
- m.j####.com/m/js/2014/module/plugIn/downloadAppPlugIn_imk2.js
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android02/images/tsa_ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- reso####.msg.xi####.net/gslb/?ver=4.0&type=wap&conpt=dvidpodv >>4>>4>>4...
- s####.tc.qq.com/gdt/0/transformer_5889707348184777199_1541945611_80.jpg/...
- t####.c####.q####.####.com/day5.jpg
- v.g####.qq.com/gdt_stats.fcg?viewid=####&i=####&os=####&xp=####&gap=####
- w####.jd.com/unify.min.js
- z####.jd.com/ad/appjump.shtml?turl=https://pro.m.jd.com/mall/active/mob5...
- a####.exc.mob.com/errconf
- beacon####.aliy####.com/beacon/fetch/config/byappkey
- m####.m.jd.com/config/closeUa.action?_format_=####
- m####.m.jd.com/config/display.action?_format_=json&turl=https://pro.m.jd...
- oth.up####.mdt.####.com:8080/beacon/vercheck
- s####.e.qq.com/activate
- s####.e.qq.com/click
- s####.e.qq.com/msg
- ur####.jd.com/log/m?std=####
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/0305a1bb848bfb50c3b5030a42c25fba9d591e38bf6a059....0.tmp
- /data/data/####/5ead7c1916e321af3ee0d7d6aa595238.temp
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/UTCommon.xml
- /data/data/####/XMPushServiceConfig.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1541966362644
- /data/data/####/a76e23a640e48d1cfa8e0d1bdd5d1f24.temp
- /data/data/####/account_config.xml
- /data/data/####/ap.Lock
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/beacontsa_cover.xml
- /data/data/####/beacontsa_cover_check.lock
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.onlybeyond.QRcode;pushservice
- /data/data/####/com.onlybeyond.QRcode_preferences.xml
- /data/data/####/com_alibaba_aliyun_crash_defend_sdk_info
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/geofencing.db
- /data/data/####/geofencing.db-journal
- /data/data/####/index
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu1571948940.so
- /data/data/####/mipush.xml
- /data/data/####/mipush_account.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/mipush_region
- /data/data/####/mipush_region.lock
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/qrCode.db-journal
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/tiny_data.data
- /data/data/####/tiny_data.lock
- /data/data/####/umeng_general_config.xml
- /data/data/####/update_lc
- /data/data/####/ut.db
- /data/data/####/ut.db-journal
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.dic_lock
- /data/media/####/.nomedia
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.rcTag
- /data/media/####/.rc_lock
- /data/media/####/.timestamp
- /data/media/####/Alvin2.xml
- /data/media/####/ApplicationCache.db-journal
- /data/media/####/CachedGeoposition.db
- /data/media/####/CachedGeoposition.db-journal
- /data/media/####/ContextData.xml
- /data/media/####/Databases.db-journal
- /data/media/####/https_pro.m.jd.com_0.localstorage-journal
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- sh
- crash_analysis
- libjiagu1571948940
- neh
- ut_c_api
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding