Technical information
- Adware.MyFolder.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) beacon####.aliy####.com:80
- TCP(HTTP/1.1) api.s####.mob.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) zhongre####.cc:80
- TCP(HTTP/1.1) www.jianz####.com:80
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(HTTP/1.1) i####.sms.mob.com:80
- TCP(HTTP/1.1) c####.jianz####.com:80
- TCP(TLS/1.0) loc.map.b####.com:443
- TCP(TLS/1.0) statson####.pu####.b####.com:443
- TCP(TLS/1.0) api.w####.com:443
- TCP(TLS/1.0) ada####.m.ta####.com:443
- TCP(TLS/1.0) 2####.107.1.97:443
- TCP(TLS/1.0) sh.wagbr####.ta####.com:443
- TCP(TLS/1.0) api.tui####.b####.com:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) l####.tbs.qq.com:443
- TCP(TLS/1.0) www.jianz####.com:443
- TCP(TLS/1.0) h####.b####.com:443
- TCP sa.tui####.b####.com:5287
- a####.exc.mob.com
- a####.man.aliy####.com
- a####.tui####.b####.com
- ada####.ut.ta####.com
- adas####.ut.ta####.com
- and####.b####.qq.com
- api.map.b####.com
- api.s####.mob.com
- api.tui####.b####.com
- api.w####.com
- beacon####.aliy####.com
- c####.jianz####.com
- h####.b####.com
- i####.sms.mob.com
- l####.tbs.qq.com
- loc.map.b####.com
- sa.tui####.b####.com
- sa1.tui####.b####.com
- statson####.pu####.b####.com
- www.b####.com
- www.jianz####.com
- zhongre####.cc
- c####.jianz####.com/C/headimg/201810/thumb_480ba64a-fa87-4df2-b0b4-9810a...
- c####.jianz####.com/C/headimg/201812/thumb_9a1f815a-94d5-42e9-85de-bc8e6...
- c####.jianz####.com/C/headimg/201812/thumb_cd3a6ef8-aace-4e08-a415-a7317...
- c####.jianz####.com/C/headimg/201901/b8aea17e-d24d-49f3-82b1-96499c3d9f6...
- c####.jianz####.com/C/headimg/201901/thumb_a6e0d276-982a-4005-9f74-00afd...
- c####.jianz####.com/C/headimg/201902/thumb_81e03ea3-2cfa-482d-a36b-cf534...
- c####.jianz####.com/C/headimg/201902/thumb_8e1604e5-777e-4ef3-a67e-d87a6...
- c####.jianz####.com/C/headimg/201902/thumb_ac082235-6457-49b3-8ebc-55c6f...
- c####.jianz####.com/C/headimg/201902/thumb_e802d242-b2f1-4e92-a3e4-407ae...
- c####.jianz####.com/C/img/icons/no_picture.png
- c####.jianz####.com/c/img/faxian_banner.png
- a####.exc.mob.com/errconf
- and####.b####.qq.com/rqd/async?aid=####
- api.s####.mob.com/conf5
- api.s####.mob.com/conn
- api.s####.mob.com/snsconf
- beacon####.aliy####.com/beacon/fetch/config/byappkey
- i####.sms.mob.com/v3/sdk/init
- sh.wagbr####.aliyun####.com/man/api?ak=####&s=####
- www.jianz####.com/api/user/SMSFreeOrPay
- zhongre####.cc/api/Other/GetNews
- zhongre####.cc/api/earnuser/EarnRecommend
- zhongre####.cc/api/user/AppAndUserInfo
- zhongre####.cc/api/user/MobileAdprojectVersion
- zhongre####.cc/api/user/UpdateAppAndUser
- /data/data/####/.duid
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/.mrecord
- /data/data/####/.mrecord (deleted)
- /data/data/####/.mrlock
- /data/data/####/.statistics
- /data/data/####/.vpl_lock
- /data/data/####/01e32adf312d422101766e3ba39d3f828a5f3fd8432f141....0.tmp
- /data/data/####/1004
- /data/data/####/218dc52172bb0187c63c7b6827154d77ab687eaf7c9e5b0....0.tmp
- /data/data/####/338c0c8b7987f9ba9774282ce1fe8c12055f4192f71c21e....0.tmp
- /data/data/####/34bee9d131719a524cb0771975512fb013a0636cf5d9bfe....0.tmp
- /data/data/####/3bcafc499220c5faaea3e0897be2a32ec07fc065dabc0fe....0.tmp
- /data/data/####/3cf56853d6173001b0f78cfda2f05fa371100ae3d614f17....0.tmp
- /data/data/####/5016b583a87a24fd2a9ceacc64feb2f63bf3115161b2dc4....0.tmp
- /data/data/####/Alvin2.xml
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/ChatDB-journal
- /data/data/####/ContextData.xml
- /data/data/####/EarnUser
- /data/data/####/EarnUser-journal
- /data/data/####/FindoutDB
- /data/data/####/FindoutDB-journal
- /data/data/####/HistoryJobList-journal
- /data/data/####/MultiDex.lock
- /data/data/####/QALConfigStore.dat
- /data/data/####/ReadCount-journal
- /data/data/####/SMSSDK_2
- /data/data/####/TLS_DEVICE_INFO.xml
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/TuijianDB-journal
- /data/data/####/UTCommon.xml
- /data/data/####/WLOGIN_DEVICE_INFO.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1551062016500
- /data/data/####/ads.xml
- /data/data/####/ap.Lock
- /data/data/####/authStatus_com.jianzhiku.zhongrenbang;remote.xml
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/be58e38cf448f33fdbc12ff4225133f3ea22e3140e1b7bf....0.tmp
- /data/data/####/bugly_db_-journal
- /data/data/####/com.baidu.pushservice.BIND_CACHE.xml
- /data/data/####/com.jianzhiku.zhongrenbang.push_sync.xml
- /data/data/####/com.jianzhiku.zhongrenbang.self_push_sync.xml
- /data/data/####/com.jianzhiku.zhongrenbang_preferences.xml
- /data/data/####/com_alibaba_aliyun_crash_defend_sdk_info
- /data/data/####/core_info
- /data/data/####/crashrecord.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/db0998ff801d47f981fa1a4e1211a9d3c64222c92a4b12f....0.tmp
- /data/data/####/debug.conf
- /data/data/####/domain_1
- /data/data/####/download_upload
- /data/data/####/e0e5bf77e1ff55eec6ca5f3ac9860acbc5f2de5631646db....0.tmp
- /data/data/####/ee5d80d33631f753e683b4cc00e08e4647b878dc8f992ea....0.tmp
- /data/data/####/firll.dat
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/httpdns_config_cache.xml
- /data/data/####/httpdns_config_enable.xml
- /data/data/####/index
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu-1456411929.so
- /data/data/####/local_crash_lock
- /data/data/####/mob_commons_1
- /data/data/####/mob_sdk_exception_1
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/pst.xml
- /data/data/####/pushclient.xml
- /data/data/####/pushinfo.db
- /data/data/####/pushinfo.db-journal
- /data/data/####/pushstat_5.6.0.db
- /data/data/####/pushstat_5.6.0.db-journal
- /data/data/####/qalimid_v2
- /data/data/####/report_v5.msgstore-journal
- /data/data/####/security_info
- /data/data/####/share_sdk_1
- /data/data/####/sharesdk.db-journal
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbs_pv_config
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tls_device.dat
- /data/data/####/ut.db
- /data/data/####/ut.db-journal
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/weibo_sdk_aid1
- /data/data/####/wlogin_device.dat
- /data/media/####/.artc_lock
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.di
- /data/media/####/.dic_lock
- /data/media/####/.duid
- /data/media/####/.globalLock
- /data/media/####/.im_lock
- /data/media/####/.lesd_lock
- /data/media/####/.mn_-1464060969
- /data/media/####/.nomedia
- /data/media/####/.pkg_lock
- /data/media/####/.pkgs_lock
- /data/media/####/.rc_lock
- /data/media/####/.slw
- /data/media/####/.ss_lock
- /data/media/####/.timestamp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/app.19.02.25.02.log
- /data/media/####/sdk.19.02.25.02.log
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- cat /sys/class/net/wlan0/address
- getprop
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.product.cpu.abi
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- netstat -ant
- Bugly
- _imcore_group_ext_gyp
- _imcore_jni_gyp
- _imcore_msg_ext_gyp
- _imcore_sns_ext_gyp
- _imcore_ugc_ext_gyp
- bdpush_V2_7
- crash_analysis
- gnustl_shared
- libjiagu-1456411929
- libwtcrypto
- locSDK7b
- qalcodecwrapper
- qalmsfboot
- ut_c_api
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- DESede-ECB-PKCS5Padding
- RSA-ECB-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-NoPadding
- AES-GCM-NoPadding