Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) norma-e####.m####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(HTTP/1.1) amdc####.m.ta####.com:80
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) k####.eas####.com:443
- TCP(TLS/1.0) dualsta####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) app-mea####.com:443
- TCP(TLS/1.0) safebro####.google####.com:443
- TCP(TLS/1.0) 2####.107.1.97:443
- TCP(TLS/1.0) 1####.217.218.95:443
- TCP(TLS/1.0) 1####.177.119.95:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) 74.1####.143.102:443
- TCP(TLS/1.0) e.crashly####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) sett####.crashly####.com:443
- TCP(TLS/1.0) xdz.h####.net.cn:443
- TCP(TLS/1.2) safebro####.google####.com:443
- TCP(TLS/1.2) 1####.177.127.94:443
- TCP(TLS/1.2) 1####.217.218.95:443
- TCP(TLS/1.2) 74.1####.143.102:443
- TCP zb-cent####.m.ta####.com:80
- TCP zb-cent####.m.ta####.com:443
- a####.man.aliy####.com
- amdc####.m.ta####.com
- app-mea####.com
- e.crashly####.com
- instant####.google####.com
- k####.eas####.com
- l####.tbs.qq.com
- m####.go####.com
- md####.google####.com
- norma-e####.m####.com
- oss-cn-####.aliy####.com
- p####.google####.com
- plb####.u####.com
- safebro####.google####.com
- sett####.crashly####.com
- u####.u####.com
- umen####.m.ta####.com
- umengj####.m.ta####.com
- xdz.h####.net.cn
- norma-e####.m####.com/android/exchange/getpublickey.do
- amdc####.m.ta####.com/amdc/mobileDispatch?appkey=####&deviceId=####&plat...
- l####.tbs.qq.com/ajax?c=####&k=####
- norma-e####.m####.com/push/android/external/add.do
- sh.wagbr####.aliyun####.com/man/api?ak=####&s=####
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jgck
- /data/data/####/2237001736f543efa8bf2f5c0d4c32ea
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281EBeginSession.cls_temp
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281EBeginSession.json
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionApp.cls_temp
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionApp.json
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionDevice.cls_temp
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionDevice.json
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionOS.cls_temp
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionOS.json
- /data/data/####/5E8B6D5900CB-0001-0D66-2B82336D281ESessionUser.cls_temp
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6BeginSession.cls_temp
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6BeginSession.json
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionApp.cls_temp
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionApp.json
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionDevice.cls_temp
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionDevice.json
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionOS.cls_temp
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionOS.json
- /data/data/####/5E8B6D5D007D-0001-0D9A-8C32DECBD6B6SessionUser.cls_temp
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6BeginSession.cls_temp
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6BeginSession.json
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionApp.cls_temp
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionApp.json
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionDevice.cls_temp
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionDevice.json
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionOS.cls_temp
- /data/data/####/5E8B6D67002C-0001-0EEC-8C32DECBD6B6SessionOS.json
- /data/data/####/ACCS_BINDumeng;5dad65da4ca3571f63000253.xml
- /data/data/####/ACCS_SDK.xml
- /data/data/####/ACCS_SDK.xml.bak
- /data/data/####/ACCS_SDK_CHANNEL.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml.bak
- /data/data/####/AGOO_BIND.xml
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/SP_AROUTER_CACHE.xml
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/a7d10517f0224412a8cde30c0b1cf0da
- /data/data/####/accs.db-journal
- /data/data/####/agoo.pid
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.oat
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.prefs.xml.bak
- /data/data/####/com.crashlytics.sdk.android.crashlytics-core;co...fs.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/com.google.InstanceId.properties
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.x.y.1.xml
- /data/data/####/com.x.y.2.xml
- /data/data/####/core_info
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTg2MTk1Nzk3NjY1;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTg2MTk1ODAzMDk3;
- /data/data/####/device_id.xml.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/google_app_measurement_local.db
- /data/data/####/google_app_measurement_local.db-journal
- /data/data/####/httpclient-req-2050802066.cache
- /data/data/####/httpdns_config_cache.xml
- /data/data/####/httpdns_config_cache.xml.bak
- /data/data/####/i==1.2.0&&3.0.2_1586195797619_envelope.log
- /data/data/####/info.xml
- /data/data/####/initialization_marker
- /data/data/####/io.fabric.sdk.android;fabric;io.fabric.sdk.andr...ng.xml
- /data/data/####/kefuinfo.xml
- /data/data/####/libjiagu.so
- /data/data/####/message_accs_db
- /data/data/####/message_accs_db-journal
- /data/data/####/mz_push_preference.xml
- /data/data/####/proc_auxv
- /data/data/####/sa_31e8cce4-d371-412c-a47a-08691fe6bcf2_1586195805995.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_config.xml.bak (deleted)
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_config.xml.bak
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/watch_process.xml
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/dex2oat --instruction-set=x86 --dex-file=<Package Folder>/.jiagu/classes.dex --dex-file=<Package Folder>/.jiagu/classes.dex:classes2.dex --dex-file=<Package Folder>/.jiagu/classes.dex:classes3.dex --dex-file=<Package Folder>/.jiagu/classes.dex:classes4.dex --dex-file=<Package Folder>/.jiagu/classes.dex:classes5.dex --oat-file=<Package Folder>/.jiagu/classes.oat --inline-depth-limit=0 --compiler-filter=speed
- getprop ro.product.cpu.abi
- ls /
- ls /sys/class/thermal
- AES-CBC-PKCS5Padding
- RSA-ECB-NoPadding
- RSA-ECB-PKCS1Padding