Technical information
- Adware.Waps.5.origin
- UDP(DNS) 2####.5.5.5:53
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) et2-na6####.wagbr####.ali####.####.com:80
- TCP(HTTP/1.1) sup####.qq.com:80
- TCP(HTTP/1.1) l####.c####.q####.####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) up####.wj.qq.####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) c####.s####.gw.####.net:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) pub.idq####.com.####.com:80
- TCP(HTTP/1.1) openmo####.qq.com:80
- TCP(HTTP/1.1) appsup####.qq.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) c.isds####.qq.com:80
- TCP(HTTP/1.1) vm.g####.cn.####.net:80
- TCP(HTTP/1.1) t####.qq.com:80
- TCP(HTTP/1.1) cgi.con####.qq.com:80
- TCP(TLS/1.0) x####.tc.qq.com:443
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) t####.qq.com:443
- TCP(TLS/1.0) ssl.ptlo####.qq.com:443
- TCP(TLS/1.0) pin####.qq.com:443
- TCP(TLS/1.0) ty.cap####.qq.com:443
- TCP(TLS/1.0) vm.g####.cn.####.net:443
- TCP(TLS/1.0) qt.g####.cn:443
- TCP(TLS/1.0) xui.ptlo####.qq.com:443
- TCP(TLS/1.0) sup####.qq.com:443
- TCP(TLS/1.0) ui.ptlo####.qq.com:443
- TCP(TLS/1.0) ssl.cap####.qq.com:443
- TCP(TLS/1.0) d####.g####.cn:443
- TCP(TLS/1.0) up####.wj.qq.####.com:443
- TCP(TLS/1.0) huatuos####.we####.com:443
- TCP(TLS/1.0) p####.tc.qq.com:443
- TCP c####.g####.ig####.com:5226
- TCP sdk.o####.t####.####.com:5224
- 27####.txt.y####.com
- 30####.txt.y####.com
- 7j####.c####.z0.####.com
- a####.u####.com
- appsup####.qq.com
- c####.g####.ig####.com
- c####.s####.gw.####.net
- c.isds####.qq.com
- cap####.g####.com
- cgi.con####.qq.com
- d####.g####.cn
- huatuos####.we####.com
- imgc####.qq.com
- j####.aq.qq.com
- log.u####.com
- openmo####.qq.com
- pi####.qq.com
- pin####.qq.com
- pub.idq####.com
- q####.qq.com
- qt.g####.cn
- qzones####.g####.cn
- sdk.o####.i####.####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.st####.y####.com
- ssl.cap####.qq.com
- ssl.ptlo####.qq.com
- sup####.qq.com
- t####.qq.com
- ty.cap####.qq.com
- ui.ptlo####.qq.com
- vm.g####.cn
- www.m####.cn
- www.ten####.com
- xui.ptlo####.qq.com
- appsup####.qq.com/cgi-bin/appstage/mstats_report?report_type=####&platfo...
- c####.s####.gw.####.net/stat/v3/udt?pdt=####
- c.isds####.qq.com/code.cgi?domain=####&cgi=####&type=####&code=####&time...
- cgi.con####.qq.com/qqconnectopen/openapi/policy_conf?sdkv=####&appid=###...
- et2-na6####.wagbr####.ali####.####.com/bar/get/54b90647fd98c54b3e00065c/...
- l####.c####.q####.####.com/core/aos-spot/1501/libabcdefgh.so
- l####.c####.q####.####.com/core/aos-spot/1511/35/3c662190.jar
- openmo####.qq.com/oauth2.0/m_authorize?status_userip=####&scope=####&red...
- p####.tc.qq.com/c/=/open/mobile/login/js/login_browser_jump.js
- p####.tc.qq.com/open/mobile/login/qzsjump.html?status_userip=####&scope=...
- p####.tc.qq.com/open_proj/qqconnect/h5login/css/jump2.css?t=####
- p####.tc.qq.com/open_proj/qqconnect/h5login/css/sprite/jump2.png?max_age...
- pub.idq####.com.####.com/qconn/widget/mobile/login/images/loading.gif?ma...
- sup####.qq.com/write.shtml?fid=####&ADPUBNO=####
- t####.c####.q####.####.com/tdata_Cyl001
- t####.c####.q####.####.com/tdata_KtX382
- t####.qq.com/stats?sId=####
- up####.wj.qq.####.com/css_e/global.css
- up####.wj.qq.####.com/css_e/index20181111.css
- up####.wj.qq.####.com/js/bowser.min.js
- up####.wj.qq.####.com/js/jquery-1.11.3.min.js
- up####.wj.qq.####.com/js/jquery.dotdotdot.min.js
- up####.wj.qq.####.com/js/redirect.js?2018062####
- up####.wj.qq.####.com/js_e/index20181111.js
- up####.wj.qq.####.com/js_e/jquery.flexslider-min.js
- up####.wj.qq.####.com/mobile/css_e/global.css
- up####.wj.qq.####.com/mobile/css_e/index20181111.css
- up####.wj.qq.####.com/mobile/js/lib/bowser.min.js
- up####.wj.qq.####.com/mobile/js/lib/jquery-1.11.3.min.js
- up####.wj.qq.####.com/mobile/js/redirect.js
- up####.wj.qq.####.com/mobile/js_e/d3.v3.min.js
- up####.wj.qq.####.com/mobile/js_e/planetaryjs.js
- up####.wj.qq.####.com/mobile/js_e/topojson.v1.min.js
- up####.wj.qq.####.com/mobile/zh-cn/index.html
- up####.wj.qq.####.com/zh-cn/index.html
- up####.wj.qq.####.com/zh-cn/index.shtml
- vm.g####.cn.####.net/tencentvideo/txp/js/txplayer.js
- a####.u####.com/app_logs
- appsup####.qq.com/cgi-bin/appstage/mstats_batch_report
- et2-na6####.wagbr####.ali####.####.com/share/keysecret/54b90647fd98c54b3...
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/.imprint
- /data/data/####/com.tencent.open.config.json.1104245808
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dynamicSp.xml
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/f_000011
- /data/data/####/f_000012
- /data/data/####/f_000013
- /data/data/####/f_000014
- /data/data/####/f_000015
- /data/data/####/f_000016
- /data/data/####/f_000017
- /data/data/####/f_000018
- /data/data/####/f_000019
- /data/data/####/f_00001a
- /data/data/####/f_00001b
- /data/data/####/f_00001c
- /data/data/####/f_00001d
- /data/data/####/f_00001e
- /data/data/####/f_00001f
- /data/data/####/f_000020
- /data/data/####/f_000021
- /data/data/####/f_000022
- /data/data/####/f_000023
- /data/data/####/f_000024
- /data/data/####/f_000025
- /data/data/####/f_000026
- /data/data/####/f_000027
- /data/data/####/f_000028
- /data/data/####/gdaemon_20151105
- /data/data/####/gx_sp.xml
- /data/data/####/https_www.tencent.com_0.localstorage-journal
- /data/data/####/https_xui.ptlogin2.qq.com_0.localstorage-journal
- /data/data/####/increment.db-journal
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/jiagu.lock
- /data/data/####/journal.tmp
- /data/data/####/libabcdefg.so
- /data/data/####/libjiagu.so
- /data/data/####/libwbsafeedit.so
- /data/data/####/prefs.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/sdk.jar
- /data/data/####/sdk_report.db
- /data/data/####/sdk_report.db-journal
- /data/data/####/secure_lib.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_social_method.xml
- /data/data/####/umeng_socialize.xml
- /data/data/####/umeng_socialize_key.xml
- /data/data/####/umeng_socialize_qq.xml
- /data/data/####/umeng_socialize_secret.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/app.db
- /data/media/####/cc.ninty.chat.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/tdata_Cyl001
- /data/media/####/tdata_Cyl001.jar
- /data/media/####/tdata_Cyl001.tmp
- /data/media/####/tdata_KtX382
- /data/media/####/tdata_KtX382.jar
- <Package Folder>/files/gdaemon_20151105 0 <Package>/com.igexin.sdk.PushService 24268 300 0
- chmod 700 <Package Folder>/files/gdaemon_20151105
- sh <Package Folder>/files/gdaemon_20151105 0 <Package>/com.igexin.sdk.PushService 24268 300 0
- libjiagu
- libwbsafeedit
- AES-CBC-NoPadding
- AES-CBC-NoPadding