Technical information
- Android.FakeApp.19.origin
- UDP(DNS) <Google DNS>
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) 64.2####.161.94:80
- TCP(TLS/1.0) dm.tou####.com.####.com:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) rr2---s####.g####.com:443
- TCP(TLS/1.0) u####.u####.com:443
- TCP(TLS/1.0) app-mea####.com:443
- TCP(TLS/1.0) na.gl####.t.co:443
- TCP(TLS/1.0) to####.ctobsn####.com.####.net:443
- TCP(TLS/1.0) api.twi####.com:443
- TCP(TLS/1.0) app.youx####.com:443
- TCP(TLS/1.0) sf3-fe####.pglstat####.com.####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) pbs.t####.com:443
- TCP(TLS/1.0) ap####.uc.cn:443
- TCP(TLS/1.0) 1####.177.14.102:443
- TCP(TLS/1.0) 64.2####.161.94:443
- TCP(TLS/1.0) firebas####.crashly####.com:443
- TCP(TLS/1.0) rr18---####.g####.com:443
- TCP(TLS/1.2) 64.2####.161.105:443
- TCP(TLS/1.2) p####.google####.com:443
- TCP(TLS/1.2) 1####.177.14.102:443
- TCP(TLS/1.2) 64.2####.161.94:443
- TCP(TLS/1.2) 74.1####.205.139:443
- TCP sf3-fe####.pglstat####.com.####.com:443
- TCP api.byteg####.ak####.net:443
- UDP p####.google####.com:443
- TCP pang####.sn####.com.####.com:443
- ap####.uc.cn
- api.twi####.com
- api16-a####.pa####.io
- app-mea####.com
- app.youx####.com
- app.youx####.com
- dm.tou####.com
- firebas####.crashly####.com
- firebas####.google####.com
- m####.go####.com
- md####.google####.com
- na.ab####.t.co
- na.gl####.t.co
- p####.google####.com
- pang####.sn####.com
- pbs.t####.com
- rr18---####.g####.com
- rr2---s####.g####.com
- rr9---s####.g####.com
- sf3-fe####.pglstat####.com
- sf3-ttc####.ps####.com
- to####.ctobsn####.com
- u####.u####.com
- www.go####.com
- app.youx####.com:443/api/AppSetUp?flag=####
- firebas####.crashly####.com:443/spi/v2/platforms/android/gmp/1:496250520...
- ap####.uc.cn:443/collect?chk=####&vno=####&uuid=####&app=####&enc=####
- p####.google####.com:443/v1/projects/api-project-49625052041/installations
- to####.ctobsn####.com.####.net:443/service/2/device_register_only/?aid=#...
- to####.ctobsn####.com.####.net:443/service/2/log_settings/?device_platfo...
- /data/data/####/-1135038580-754662270
- /data/data/####/-12035709311551995734
- /data/data/####/-1561220934-1692560221
- /data/data/####/.bak
- /data/data/####/.cl
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/0-61.db-journal
- /data/data/####/0-analytics.db-journal
- /data/data/####/0-lru_key_value.db-journal
- /data/data/####/0-scribe.db-journal
- /data/data/####/0.xml
- /data/data/####/658F634601EF00010D7B9A81C76E631Fkeys.meta
- /data/data/####/658F634601EF00010D7B9A81C76E631Fuser.meta
- /data/data/####/658F634C036500010E679A81C76E631Fkeys.meta
- /data/data/####/658F634C036500010E679A81C76E631Fuser.meta
- /data/data/####/AD_manager_config.xml
- /data/data/####/FirebaseAppHeartBeat.xml
- /data/data/####/FirebaseAppHeartBeat.xml.bak
- /data/data/####/PersistedInstallation.W0RFRkFVTFRd+MTo0OTYyNTA1...I.json
- /data/data/####/PersistedInstallation492632072tmp
- /data/data/####/PersistedInstallation831601236tmp
- /data/data/####/UHSGNOR0DROCERNIYGNEF0MOC.st
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/androidx.work.workdb-journal (deleted)
- /data/data/####/app.json
- /data/data/####/bd_embed_tea_agent.db-journal
- /data/data/####/cdt.wa
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.dex;classes6.dex
- /data/data/####/classes.dex;classes7.dex
- /data/data/####/classes.dex;classes8.dex
- /data/data/####/classes.dex;classes9.dex
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/com.fengyinrecord.rongshu_preferences.xml
- /data/data/####/com.google.android.datatransport.events-journal
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml.bak
- /data/data/####/com.google.firebase.crashlytics.xml
- /data/data/####/cr.wa
- /data/data/####/crashlytics-userlog-658F634601EF00010D7B9A81C76E631F.temp
- /data/data/####/crashlytics-userlog-658F634C036500010E679A81C76...mp.tmp
- /data/data/####/data_usage_observer.xml
- /data/data/####/device.json
- /data/data/####/downloader.db-journal
- /data/data/####/dso_deps
- /data/data/####/dso_lock
- /data/data/####/dso_manifest
- /data/data/####/dso_state
- /data/data/####/dt.wa
- /data/data/####/embed_applog_stats.xml
- /data/data/####/embed_header_custom.xml
- /data/data/####/embed_last_sp_session.xml
- /data/data/####/evernote_jobs.db-journal
- /data/data/####/evernote_jobs.xml
- /data/data/####/evernote_jobs.xml.bak
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/generatefid.lock
- /data/data/####/google_app_measurement_local.db
- /data/data/####/google_app_measurement_local.db-journal
- /data/data/####/i==1.2.0&&1.33_1703895898524_dW5pZnlfbG9ncw==;.log
- /data/data/####/info.xml
- /data/data/####/initialization_marker
- /data/data/####/language.xml
- /data/data/####/libMicrosoft.CognitiveServices.Speech.core.so
- /data/data/####/libMicrosoft.CognitiveServices.Speech.extension...dec.so
- /data/data/####/libMicrosoft.CognitiveServices.Speech.extension.codec.so
- /data/data/####/libMicrosoft.CognitiveServices.Speech.extension.kws.so
- /data/data/####/libMicrosoft.CognitiveServices.Speech.java.bindings.so
- /data/data/####/libbrotli-jni.so
- /data/data/####/libbrotli.so
- /data/data/####/libbuffer_pg.so
- /data/data/####/libcrashlytics-common.so
- /data/data/####/libcrashlytics-handler.so
- /data/data/####/libcrashlytics-trampoline.so
- /data/data/####/libcrashlytics.so
- /data/data/####/libfile_lock_pg.so
- /data/data/####/libgifimage.so
- /data/data/####/libimagepipeline.so
- /data/data/####/libjiagu.so
- /data/data/####/libjingle_peerconnection_so.so
- /data/data/####/libnative-filters.so
- /data/data/####/libnative-imagetranscoder.so
- /data/data/####/libnms.so
- /data/data/####/libopenclinformation.so
- /data/data/####/libstatic-webp.so
- /data/data/####/libtobEmbedEncrypt.so
- /data/data/####/libtwittermedia.so
- /data/data/####/libzstd-jni-1.4.9-3.so
- /data/data/####/metrics_guid
- /data/data/####/npth.xml
- /data/data/####/npth_log.db-journal
- /data/data/####/os.json
- /data/data/####/persistent_jobs.db-journal
- /data/data/####/proc_auxv
- /data/data/####/r.xml
- /data/data/####/report
- /data/data/####/serialized_local_feature_switches_manifest_8.92...nifest
- /data/data/####/session.json
- /data/data/####/snssdk_openudid.xml
- /data/data/####/sp_global_info.xml
- /data/data/####/sp_multi_ttadnet_config.xml
- /data/data/####/sp_push_time.xml
- /data/data/####/sphelper_ttopenadsdk.xml
- /data/data/####/ss_app_config.xml
- /data/data/####/t==9.3.0&&1.33_1703895897139_dW5pZnlfbG9ncw==;.log
- /data/data/####/traffic_dns_map.xml
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/tt_sdk_settings.xml.bak
- /data/data/####/tt_sp_app_env.xml
- /data/data/####/tt_sp_app_list.xml
- /data/data/####/ttnet_tnc_config.xml
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopenadsdk.xml.bak
- /data/data/####/ttopensdk.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/um_session_id.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_zcfg_flag
- /data/data/####/umeng_zero_cache.db
- /data/data/####/umeng_zero_cache.db-journal
- /data/data/####/unique
- /data/data/####/user
- /data/data/####/ver
- /data/data/####/year_class.xml
- /data/data/####/z==1.2.0&&1.33_1703895882094_emNmZw==;.log
- /data/media/####/069a7bb8cb34867fb8e6fbfd3a50d6d3.tmp
- /data/media/####/240c0470983a38ed1d56fa70297dca15
- /data/media/####/29e172a04b388c45f45e05bd22cf6346.tmp
- /data/media/####/41313975c2c8bedf0fb7c3c5d4ad14f6.0.tmp
- /data/media/####/clientudid.dat
- /data/media/####/journal
- /data/media/####/journal.bkp (deleted)
- /data/media/####/journal.tmp
- /data/media/####/temp_pkg_info.json
- /data/misc/####/primary.prof
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- getprop ro.build.version.emui
- getprop ro.letv.release.version
- getprop ro.vivo.os.build.display.id
- ls -l /system/bin/su
- ls /
- ls /sys/class/thermal
- sh -c type su
- libconscrypt_gmscore_jni
- libcrashlytics
- libjiagu
- libnms
- libtobEmbedEncrypt
- libtwittermedia
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding