Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a.v####.cn:80
- TCP(HTTP/1.1) i.t####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) api.zantou####.com:80
- TCP(HTTP/1.1) cloud####.fengkon####.com:80
- TCP(HTTP/1.1) f####.fengkon####.com:80
- TCP(HTTP/1.1) gdv.a.s####.com:80
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) openins####.io:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) co####.in####.cn:443
- TCP(TLS/1.0) c####.x####.com:443
- a.v####.cn
- and####.b####.qq.com
- api.zantou####.com
- av1.x####.com
- c####.x####.com
- cloud####.fengkon####.com
- co####.in####.cn
- f####.fengkon####.com
- i.t####.com
- log.u####.com
- openins####.io
- plb####.u####.com
- pv.s####.com
- u####.u####.com
- api.zantou####.com/dot-app-api/api/blacklist
- api.zantou####.com/dot-app-api/api/user/blacklist?params=####&aos=Oa7####
- api.zantou####.com/dot-app-api/api/user/blacklist?params=####&aos=VT4####
- api.zantou####.com/dot-app-api/api/user/blacklist?params=####&aos=Wnj####
- api.zantou####.com/dot-app-api/api/user/blacklist?params=####&aos=n6O####
- api.zantou####.com/dot-app-api/api/user/blacklist?params=####&aos=rRs####
- gdv.a.s####.com/cityjson?ie=####
- i.t####.com/a/313d4143fbeec817153f8cf96ec959239
- a.v####.cn/do.js
- a.v####.cn/sdk_err
- and####.b####.qq.com/rqd/async?aid=####
- cloud####.fengkon####.com/v2/device/conf
- f####.fengkon####.com/v2/device/profile
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1004
- /data/data/####/1542307133520_2484
- /data/data/####/1542307133819_2484
- /data/data/####/1542307134050_2484
- /data/data/####/1542307135275_2484
- /data/data/####/1542307135551_2484
- /data/data/####/1542307136093_2484
- /data/data/####/1542307136635_2484
- /data/data/####/1542307140803_2484
- /data/data/####/1542307151409_2764
- /data/data/####/1542307152247_2764
- /data/data/####/1542307152452_2764
- /data/data/####/1542307154574_2764
- /data/data/####/1542307156280_2764
- /data/data/####/1542307157610_2764
- /data/data/####/1542307165624_3002
- /data/data/####/1542307166392_3002
- /data/data/####/1542307166769_3002
- /data/data/####/1542307169452_3002
- /data/data/####/1542307169710_3002
- /data/data/####/1542307170633_3002
- /data/data/####/1542307174340_3002
- /data/data/####/1542307184412_3278
- /data/data/####/1542307185264_3278
- /data/data/####/1542307185932_3278
- /data/data/####/1542307187597_3278
- /data/data/####/Alvin2.xml
- /data/data/####/Archimedes_p1
- /data/data/####/Archimedes_p2
- /data/data/####/Archimedes_p3
- /data/data/####/Archimedes_p4
- /data/data/####/Archimedes_p5
- /data/data/####/ContextData.xml
- /data/data/####/CookiePersistence.xml
- /data/data/####/FM_config.xml
- /data/data/####/MultiDex.lock
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_cloudcontrol1.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/cloudms.conf.xml
- /data/data/####/com.diandi.app_preferences.xml
- /data/data/####/com.im.keyValueStore.aes_key_store.xml
- /data/data/####/com.im.keyValueStore.config_store.xml
- /data/data/####/com.im.keyValueStore.sdk_version_store.xml
- /data/data/####/com.im_7.1.1.db
- /data/data/####/com.im_7.1.1.db-journal
- /data/data/####/com.shumei.xml
- /data/data/####/crashrecord.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQyMzA3MTI5Njgx;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQyMzA3MTMyOTEy;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQyMzA3MTUwODE5;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQyMzA3MTY0ODcz;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTQyMzA3MTgzNjg3;
- /data/data/####/diandi.db
- /data/data/####/diandi.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/i==1.2.0&&1.8.2_1542307129688_envelope.log
- /data/data/####/i==1.2.0&&1.8.2_1542307150843_envelope.log
- /data/data/####/i==1.2.0&&1.8.2_1542307164945_envelope.log
- /data/data/####/i==1.2.0&&1.8.2_1542307183720_envelope.log
- /data/data/####/info.xml
- /data/data/####/iv
- /data/data/####/libjiagu195634731.so
- /data/data/####/local_crash_lock
- /data/data/####/multidex.version.xml
- /data/data/####/new_sp.xml
- /data/data/####/salt
- /data/data/####/security_info
- /data/data/####/share.db-journal
- /data/data/####/tdid.xml
- /data/data/####/tracker.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/webview.db-journal
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.tcookieid
- /data/media/####/.thumbcache_idx0
- /data/media/####/.umm.dat
- /data/media/####/0211ba9daea1603d1c7b477245d82a5a.0.tmp
- /data/media/####/0211ba9daea1603d1c7b477245d82a5a.1.tmp
- /data/media/####/1f1a6992fd36ef9982a7fcd51b4871b4.0.tmp
- /data/media/####/1f1a6992fd36ef9982a7fcd51b4871b4.1.tmp
- /data/media/####/40c58650393ddb70cf93dc54cfa94f12.0.tmp
- /data/media/####/40c58650393ddb70cf93dc54cfa94f12.1.tmp
- /data/media/####/8a5d6e45127c523a489cd5b3a8201f5f.0.tmp
- /data/media/####/8a5d6e45127c523a489cd5b3a8201f5f.1.tmp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/f9b9f91f6d61fe8c631ac6c06f890186.0.tmp
- /data/media/####/f9b9f91f6d61fe8c631ac6c06f890186.1.tmp
- /data/media/####/ff4e11efff4acb4a9bd02164abaafff8.0.tmp
- /data/media/####/ff4e11efff4acb4a9bd02164abaafff8.1.tmp
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/p113gp
- /data/media/####/shumei.txt
- /data/media/####/sysid.dat
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- app_process /system/bin com.android.commands.pm.Pm list package -3
- cat /proc/self/cgroup
- getprop
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- logcat -d -v threadtime
- ls /sys/class/thermal
- pm list package -3
- ps
- Bugly
- libjiagu195634731
- smsdk
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- RSA-ECB-nopadding
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- DES-ECB-NoPadding