Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8011
- TCP(HTTP/1.1) img.pcon####.com.####.cn:80
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(HTTP/1.1) rp-na####.ron####.com:80
- TCP(HTTP/1.1) www.pc####.com.####.cn:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) loc.map.b####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(TLS/1.0) dev.api.c####.####.net:443
- TCP(TLS/1.0) i####.pch####.com.cn:443
- TCP(TLS/1.0) m.im####.com:443
- TCP(TLS/1.0) s####.map.b####.com:443
- TCP(TLS/1.0) img.pcon####.com.####.cn:443
- TCP(TLS/1.0) c####.im####.com:443
- TCP(TLS/1.0) mr####.pc####.com.cn:443
- TCP(TLS/1.0) api.w####.com:443
- TCP(TLS/1.0) app-ro####.leanc####.cn:443
- TCP(TLS/1.0) s####.cn.ron####.com:443
- TCP 1####.92.80.26:8606
- a####.b####.qq.com
- aexcep####.b####.qq.com
- and####.b####.qq.com
- api.w####.com
- app-ro####.leanc####.cn
- c####.im####.com
- i####.pc####.com.cn
- i####.pc####.com.cn
- i####.pc####.com.cn
- i####.pc####.com.cn
- i####.pch####.com.cn
- i####.pcon####.com.cn
- i####.pcon####.com.cn
- ir####.pc####.com.cn
- ir####.pc####.com.cn
- ir####.pc####.com.cn
- ir####.pch####.com.cn
- ir####.pcon####.com.cn
- j7qi####.api.l####.net
- j7qi####.s####.l####.net
- loc.map.b####.com
- m.im####.com
- mr####.pc####.com.cn
- mr####.pcon####.com.cn
- nav.cn.ron####.com
- s####.cn.ron####.com
- s####.map.b####.com
- sdk.o####.p####.####.com
- w####.pc####.com.cn
- img.pcon####.com.####.cn/images/upload/upc/tx/auto5/1805/03/c35/85542513...
- www.pc####.com.####.cn/app/bjbdV14/gz20151215/images/icons.png
- aexcep####.b####.qq.com:8011/rqd/async
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- loc.map.b####.com/offline_loc
- loc.map.b####.com/sdk.php
- rp-na####.ron####.com/navipush.json
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/506b07bfbe357eebe845844067a288efb3ddf228a0b63f2....0.tmp
- /data/data/####/5f484cbdd3030258c3df98342464fa1e9c9bbce6029dcf1....0.tmp
- /data/data/####/9c2c3ac554498b047315505bb1c179fb9f085709da05af3....0.tmp
- /data/data/####/AV_CLOUD_API_VERSION_KEY_ZONE.xml
- /data/data/####/AppConfig.xml
- /data/data/####/CMRequire.dat
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/DVDirectory.cfg
- /data/data/####/DVHotcity.cfg
- /data/data/####/DVVersion.cfg
- /data/data/####/HttpLogDB.db-journal
- /data/data/####/PUSH_STATUS.xml
- /data/data/####/ResPack.rs
- /data/data/####/RongPush.xml
- /data/data/####/Statistics.xml
- /data/data/####/VerDatset.dat
- /data/data/####/app_first_in.xml
- /data/data/####/autoclub.db-journal
- /data/data/####/b0c2b6b9712b34194eb0e861223e2bf3a24e023eb8e7545....0.tmp
- /data/data/####/brand.config
- /data/data/####/bugly_db_legu-journal
- /data/data/####/cartypelist.config
- /data/data/####/cdn.db-journal
- /data/data/####/channel
- /data/data/####/city.config
- /data/data/####/city.db
- /data/data/####/city_first_in.xml
- /data/data/####/com.avos.avoscloud.RequestStatisticsUtil.data.xml
- /data/data/####/com.avos.avoscloud.approuter.J7QIc3sDkFIvAy23Qs...sz.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f6520532d3cfa076ad62c7b517e00ecc66ad751ef29b30a....0.tmp
- /data/data/####/f669aa3c40bfc7ac7d55536e9d1f5fa41f5d797aadedad5....0.tmp
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/firll.dat
- /data/data/####/framwork.xml
- /data/data/####/getui_sp.xml
- /data/data/####/httpdns.xml
- /data/data/####/imei.dat
- /data/data/####/index
- /data/data/####/init_c1.pid
- /data/data/####/init_er.pid
- /data/data/####/journal.tmp
- /data/data/####/keywords.config
- /data/data/####/launcherPreference.xml
- /data/data/####/libnfix.so
- /data/data/####/libshella-3.0.0.0.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/mapstyle.sty
- /data/data/####/mix.dex
- /data/data/####/mofang_data_analysis.db-journal
- /data/data/####/mofang_data_analysis.xml
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/oem
- /data/data/####/ofl.config
- /data/data/####/ofl_location.db
- /data/data/####/ofl_location.db-journal
- /data/data/####/ofl_statistics.db
- /data/data/####/ofl_statistics.db-journal
- /data/data/####/satellitestyle.sty
- /data/data/####/security_info
- /data/data/####/time.xml
- /data/data/####/trafficstyle.sty
- /data/data/####/ver.dat
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.cuid
- /data/media/####/03548de06aaeb0d39e8b1e41641eaea3.0.tmp
- /data/media/####/03548de06aaeb0d39e8b1e41641eaea3.1.tmp
- /data/media/####/0412dd782a2018538eb7b420c0800910.0.tmp
- /data/media/####/0412dd782a2018538eb7b420c0800910.1.tmp
- /data/media/####/0818b7c4ee1c09e0a72d135f388aaf5e.0.tmp
- /data/media/####/0818b7c4ee1c09e0a72d135f388aaf5e.1.tmp
- /data/media/####/0b77809763c2b06e75b6d9e939b91689.0.tmp
- /data/media/####/0b77809763c2b06e75b6d9e939b91689.1.tmp
- /data/media/####/0da3ce6065da9f9a2fdfe717f81924ec.0.tmp
- /data/media/####/0da3ce6065da9f9a2fdfe717f81924ec.1.tmp
- /data/media/####/119f17710434dfe03e55b691a52077c1.0.tmp
- /data/media/####/119f17710434dfe03e55b691a52077c1.1.tmp
- /data/media/####/1bd69a17bd63fd87b9f94cace9c08cc9.0.tmp
- /data/media/####/1bd69a17bd63fd87b9f94cace9c08cc9.1.tmp
- /data/media/####/20a28abf52c1d81cbdbff1c0d64a2333.0.tmp
- /data/media/####/20a28abf52c1d81cbdbff1c0d64a2333.1.tmp
- /data/media/####/29d5d5b96c55f5a047a2d37f86963b2e.0.tmp
- /data/media/####/29d5d5b96c55f5a047a2d37f86963b2e.1.tmp
- /data/media/####/34fe46b1523166e9e3a5611ac40427d7.0.tmp
- /data/media/####/34fe46b1523166e9e3a5611ac40427d7.1.tmp
- /data/media/####/3a11500b4e9fed7d7f6835de4f236a09.0.tmp
- /data/media/####/3a11500b4e9fed7d7f6835de4f236a09.1.tmp
- /data/media/####/454332255962e56cfde1f178650920f5.0.tmp
- /data/media/####/454332255962e56cfde1f178650920f5.1.tmp
- /data/media/####/5028463d24136b0c397425f831e5a2c7.0.tmp
- /data/media/####/5028463d24136b0c397425f831e5a2c7.1.tmp
- /data/media/####/523587fb0d69b4c5f2c219696f2f32b5.0.tmp
- /data/media/####/523587fb0d69b4c5f2c219696f2f32b5.1.tmp
- /data/media/####/575a3210c6e4336efc6a10773a27ff8e.0.tmp
- /data/media/####/575a3210c6e4336efc6a10773a27ff8e.1.tmp
- /data/media/####/59d3b86cc88f75e1c3ed12e281f789f1.0.tmp
- /data/media/####/59d3b86cc88f75e1c3ed12e281f789f1.1.tmp
- /data/media/####/63ae9f6435491f444e76e88f3f963cb7.0.tmp
- /data/media/####/63ae9f6435491f444e76e88f3f963cb7.1.tmp
- /data/media/####/709f8be2a6d4a81409af14584bf22a6b.0.tmp
- /data/media/####/709f8be2a6d4a81409af14584bf22a6b.1.tmp
- /data/media/####/71725844b039b4d15182015dacbb9d6d.0.tmp
- /data/media/####/71725844b039b4d15182015dacbb9d6d.1.tmp
- /data/media/####/7d976b16d016c38fdd7fcae15c2ffb34.0.tmp
- /data/media/####/7d976b16d016c38fdd7fcae15c2ffb34.1.tmp
- /data/media/####/805bcc988a9b824d63a4b2ec0d1c6fec.0.tmp
- /data/media/####/805bcc988a9b824d63a4b2ec0d1c6fec.1.tmp
- /data/media/####/82df25342dd4d41534ce1d3a7128695a.0.tmp
- /data/media/####/82df25342dd4d41534ce1d3a7128695a.1.tmp
- /data/media/####/869e663fdbf1be8b7a62717b989251d9.0.tmp
- /data/media/####/869e663fdbf1be8b7a62717b989251d9.1.tmp
- /data/media/####/DMTempdat.dat
- /data/media/####/DMTempdat.idx
- /data/media/####/DTBakTempdat.dat
- /data/media/####/DTBakTempdat.idx
- /data/media/####/DTLabTempdat.dat
- /data/media/####/DTLabTempdat.idx
- /data/media/####/DTTempdat.dat
- /data/media/####/DTTempdat.idx
- /data/media/####/ITTempdat.dat
- /data/media/####/ITTempdat.idx
- /data/media/####/RongLog_2_8_20.log
- /data/media/####/ae1b537ea2f75d5ec5093621ed43c921.0.tmp
- /data/media/####/ae1b537ea2f75d5ec5093621ed43c921.1.tmp
- /data/media/####/b2ca8d2bc9563c38a30297558b0f0df8.0.tmp
- /data/media/####/b2ca8d2bc9563c38a30297558b0f0df8.1.tmp
- /data/media/####/b62adbf1f5217c74ad90780da5afd524.0.tmp
- /data/media/####/b62adbf1f5217c74ad90780da5afd524.1.tmp
- /data/media/####/c9044493fe73895e9fc7a69c94be722d.0.tmp
- /data/media/####/c9044493fe73895e9fc7a69c94be722d.1.tmp
- /data/media/####/conlts.dat
- /data/media/####/d58f94d45b2b981af6030439abe049f0.0.tmp
- /data/media/####/d58f94d45b2b981af6030439abe049f0.1.tmp
- /data/media/####/ef194c0222de96043580c673373e95c9.0.tmp
- /data/media/####/ef194c0222de96043580c673373e95c9.1.tmp
- /data/media/####/f3bcf9b8487d7d166d0610f97e17f7f2.0.tmp
- /data/media/####/f3bcf9b8487d7d166d0610f97e17f7f2.1.tmp
- /data/media/####/f603dd99d3f41a637f5a03830849cd72.0.tmp
- /data/media/####/f603dd99d3f41a637f5a03830849cd72.1.tmp
- /data/media/####/f9cef10a9c48f374bf787bbc6ed700c1.0.tmp
- /data/media/####/f9cef10a9c48f374bf787bbc6ed700c1.1.tmp
- /data/media/####/fdd378eaaf91a988a862dccfcf0469d8.0.tmp
- /data/media/####/fdd378eaaf91a988a862dccfcf0469d8.1.tmp
- /data/media/####/journal.tmp
- /data/media/####/ller.dat
- /data/media/####/ls.db
- /data/media/####/ls.db-journal
- /data/media/####/test.0
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-3.0.0.0.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- BaiduMapSDK_v2_3_1
- Bugly
- RongIMLib
- getuiext2
- libnfix
- libshella-3.0.0.0
- libufix
- locSDK6a
- nfix
- ufix
- weibosdkcore
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-GCM-NoPadding