Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) gd.a.s####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(TLS/1.0) ap####.uc.cn:443
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) i####.del####.i####.com:443
- TCP(TLS/1.0) bgp.netarch####.l.####.net:443
- TCP(TLS/1.0) gd.a.s####.com:443
- TCP(TLS/1.0) and####.google####.com:443
- TCP(TLS/1.0) gd-s####.j####.cn:443
- TCP(TLS/1.0) c0.ifen####.com.####.com:443
- TCP(TLS/1.0) gs.a.s####.com:443
- TCP(TLS/1.0) 74.1####.133.95:443
- TCP(TLS/1.0) 1####.251.5.100:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) 1####.250.13.138:443
- TCP(TLS/1.0) sf3-fe####.pglstat####.com:443
- TCP(TLS/1.0) t####.j####.cn:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) ce3e####.j####.cn:443
- TCP(TLS/1.0) bj####.j####.cn:443
- TCP(TLS/1.2) 74.1####.133.95:443
- TCP(TLS/1.2) 1####.251.5.100:443
- TCP(TLS/1.2) connect####.gst####.com:443
- TCP(TLS/1.2) 1####.250.13.138:443
- TCP 1####.3.227.189:7002
- UDP easytom####.com:19000
- TCP gd.a.s####.com:443
- a####.exc.mob.com
- a.t####.s####.com
- ali-s####.j####.cn
- and####.b####.qq.com
- and####.google####.com
- android####.go####.com
- ap####.uc.cn
- api.pass####.s####.com
- bj####.j####.cn
- c0.ifen####.com
- ce3e####.j####.cn
- connect####.gst####.com
- dig.b####.net
- dm.tou####.com
- easytom####.com
- gd-s####.j####.cn
- i####.del####.i####.com
- is.sn####.com
- mo####.b####.com
- muta####.vipfen####.com
- p####.google####.com
- pass####.plu####.s####.com
- pla####.googleu####.com
- s.j####.cn
- sf3-fe####.pglstat####.com
- sf3-ttc####.ps####.com
- sis.j####.io
- ss.s####.com
- t####.j####.cn
- to####.ctobsn####.com
- x1.go.s####.com
- bgp.netarch####.l.####.net:443/q?host=####&aid=####
- c0.ifen####.com.####.com:443/cl/ff/app.json
- gs.a.s####.com:443/sdkconfig.xml
- sf3-fe####.pglstat####.com:443/get_domains/v4/?abi=####&aid=####&device_...
- sf3-fe####.pglstat####.com:443/obj/ad-pattern/renderer/19602b/index.js
- sf3-fe####.pglstat####.com:443/obj/ad-pattern/renderer/package.json
- sf3-fe####.pglstat####.com:443/service/2/app_alert_check/?aid=####&devic...
- a####.exc.mob.com/errconf
- a####.exc.mob.com/errlog
- and####.b####.qq.com/rqd/async?aid=####
- ap####.uc.cn:443/collect?chk=####&vno=####&uuid=####&app=####&enc=####
- gd.a.s####.com/config/exceptionfilter
- gd.a.s####.com/config/getBootConfig
- gd.a.s####.com/config/getSkinConfig
- gd.a.s####.com/config/hotwords/get
- gd.a.s####.com/log/report
- gd.a.s####.com/new-push/report
- gd.a.s####.com/receive/reyun
- gd.a.s####.com:443/sa
- gd.a.s####.com:443/sapi/g
- gd.a.s####.com:443/sapi/login/getinfo
- gd.a.s####.com:443/sv
- gs.a.s####.com:443/
- i####.del####.i####.com:443/LogReceiver/ffsavelog
- i####.del####.i####.com:443/r?sdkver=####
- sf3-fe####.pglstat####.com:443/api/ad/union/sdk/get_ads/
- sf3-fe####.pglstat####.com:443/api/ad/union/sdk/settings/
- sf3-fe####.pglstat####.com:443/api/ad/union/sdk/stats/batch/
- sf3-fe####.pglstat####.com:443/api/ad/union/sdk/upload/app_info/
- sf3-fe####.pglstat####.com:443/service/2/app_log/?device_platform=####&v...
- sf3-fe####.pglstat####.com:443/service/2/device_register_only/?aid=####&...
- sf3-fe####.pglstat####.com:443/service/2/log_settings/?device_platform=#...
- /data/data/####/-1415860144-1332186144
- /data/data/####/.artc_lock
- /data/data/####/.at_lock
- /data/data/####/.cl
- /data/data/####/.dic_lock
- /data/data/####/.duid
- /data/data/####/.globalLock
- /data/data/####/.im_lock
- /data/data/####/.jg.ic
- /data/data/####/.lesd_lock
- /data/data/####/.lock
- /data/data/####/.pg_lock
- /data/data/####/.pgs_lock
- /data/data/####/.vpl_lock
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/324e4925-41da-477a-b6ff-45809abe1d8e
- /data/data/####/72230100-ba06-4477-b08a-059466e1e7a2
- /data/data/####/7732ad2f-3825-45c9-b469-838f8cbd9e93
- /data/data/####/84ed6dc3-9d43-4c74-9631-84464ac054cd
- /data/data/####/8ebcc71c-917f-41eb-91eb-874b1176c794
- /data/data/####/909370d7-5830-4482-b9ab-c1070bb1b9f6
- /data/data/####/A3AEECD8.dex
- /data/data/####/A3AEECD8.dex.flock (deleted)
- /data/data/####/IpInfos.xml
- /data/data/####/Push_Page_Config.xml
- /data/data/####/SWENOFNI0UHOS0MOC.anrtmp
- /data/data/####/SWENOFNI0UHOS0MOC.bati
- /data/data/####/SWENOFNI0UHOS0MOC.end
- /data/data/####/SWENOFNI0UHOS0MOC.hdr
- /data/data/####/SWENOFNI0UHOS0MOC.meminfo
- /data/data/####/SWENOFNI0UHOS0MOC.pid
- /data/data/####/SWENOFNI0UHOS0MOC.ps
- /data/data/####/SWENOFNI0UHOS0MOC.st
- /data/data/####/SWENOFNI0UHOS0MOC.start
- /data/data/####/SWENOFNI0UHOS0MOC.status
- /data/data/####/SWENOFNI0UHOS0MOC.sts
- /data/data/####/SWENOFNI0UHOS0MOC.time
- /data/data/####/SWENOFNI0UHOS0MOC.uptime
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/afd9835a-f4d4-44b8-b1d7-a26b7ab489b6
- /data/data/####/article-db-journal
- /data/data/####/bal.catch
- /data/data/####/ban.catch
- /data/data/####/bd_embed_tea_agent.db-journal
- /data/data/####/bugly_db_-journal
- /data/data/####/bwc.catch
- /data/data/####/bytedance_downloader.db-journal
- /data/data/####/cdt.wa (deleted)
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.dex;classes6.dex
- /data/data/####/cn.jiguang.common.xml
- /data/data/####/cn.jiguang.common.xml.bak
- /data/data/####/cn.jiguang.prefs.xml
- /data/data/####/cn.jiguang.sdk.address.xml
- /data/data/####/cn.jiguang.sdk.report.xml
- /data/data/####/cn.jiguang.sdk.share.profile.xml
- /data/data/####/cn.jiguang.sdk.user.profile.xml
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.config.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.admaster.sdk.other.xml
- /data/data/####/com.admaster.sdk.sdkconfig.xml
- /data/data/####/com.sohu.infonews.BETA_VALUES.xml
- /data/data/####/com.sohu.infonews.xml
- /data/data/####/com.sohu.infonews_preferences.xml
- /data/data/####/com.util.sputil.xml
- /data/data/####/common-db-journal
- /data/data/####/cr.wa (deleted)
- /data/data/####/crashrecord.xml
- /data/data/####/d758efb5cbef7744475381a74ce23933.xml
- /data/data/####/dt.wa (deleted)
- /data/data/####/embed_applog_stats.xml
- /data/data/####/embed_last_sp_session.xml
- /data/data/####/infonews.exception.filter.xml
- /data/data/####/infonews.skin.xml
- /data/data/####/infonews_2.db-journal (deleted)
- /data/data/####/infonews_basic.xml
- /data/data/####/libjiagu.so
- /data/data/####/local_crash_lock
- /data/data/####/meta-data.xml
- /data/data/####/metrics_guid
- /data/data/####/mipush_country_code
- /data/data/####/mipush_country_code.lock
- /data/data/####/mipush_region
- /data/data/####/mipush_region.lock
- /data/data/####/mob_commons_1
- /data/data/####/mob_sdk_exception_1
- /data/data/####/mzSdkProfilePrefs.xml
- /data/data/####/mzmonitor
- /data/data/####/mzmonitor-journal
- /data/data/####/native_record_lock
- /data/data/####/npth.xml
- /data/data/####/npth_log.db-journal
- /data/data/####/proc_auxv
- /data/data/####/push_stat_cache.json
- /data/data/####/pv.wa
- /data/data/####/rl.catch
- /data/data/####/sdevfile.xml
- /data/data/####/security_info
- /data/data/####/shBuryData.xml
- /data/data/####/sh_analysis.db-journal
- /data/data/####/sh_analysis_date.xml
- /data/data/####/snssdk_openudid.xml
- /data/data/####/sohutrackingplugin.db
- /data/data/####/sohutrackingplugin.db-journal
- /data/data/####/sp_push_time.xml
- /data/data/####/sp_reward_video_adslot.xml
- /data/data/####/tmpd8.db-journal
- /data/data/####/tt_dns_settings.xml
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/tt_sdk_settings.xml.bak
- /data/data/####/tt_sp_app_list.xml
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopensdk.db-journal
- /data/data/####/unique
- /data/data/####/update.xml
- /data/data/####/ver
- /data/misc/####/primary.prof
- /data/user_de/####/move_to_de_records.xml
- cat /sys/class/net/wlan0/address
- chmod 777 /data/user/0/<Package>/cache/Download
- getprop
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.letv.release.version
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.build.display.id
- getprop ro.vivo.os.version
- ps
- sh -c type su
- libA3AEECD8
- libBugly
- libGNaviMapex
- libcrashsdk
- libjiagu
- libnms
- libtobEmbedEncrypt
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-OAEPWithSHA256AndMGF1Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-GCM-NoPadding