Technical information
- Adware.Greatwall.1
- Android.DownLoader.683.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) oth.eve.mdt.####.com:8080
- TCP(HTTP/1.1) app.onetwo####.top.####.com:80
- TCP(HTTP/1.1) app-t####.b0.upa####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) mo####.b####.com:80
- TCP(HTTP/1.1) oth.str.mdt.####.com:8080
- TCP(HTTP/1.1) a####.3gu.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) cdn.game####.org:80
- TCP(HTTP/1.1) 1####.76.224.67:80
- TCP(TLS/1.0) 1####.217.17.110:443
- TCP(TLS/1.0) k####.onetwo####.top:443
- a####.3gu.com
- a####.u####.com
- app-t####.b0.upa####.com
- app.onetwo####.top
- cdn.game####.org
- imgc####.qq.com
- k####.onetwo####.top
- mi.g####.qq.com
- mo####.b####.com
- mt####.go####.com
- oth.eve.mdt.####.com
- oth.str.mdt.####.com
- s####.e.qq.com
- app-t####.b0.upa####.com/avatar/00F422ACC5E5D318E82AA4073BA714C1.jpg
- app-t####.b0.upa####.com/avatar/0B7CF677CE259AA0B8431B2EE495F024.jpg
- app-t####.b0.upa####.com/avatar/1140801C863F6713EEB3F0326C1CA54E.jpg
- app-t####.b0.upa####.com/avatar/21D1DE51FB5916ACD186A00AAEFC4792.jpg
- app-t####.b0.upa####.com/avatar/296C388F47B65AA877026A6141573F6C.jpg
- app-t####.b0.upa####.com/avatar/37C3B2DD3F750E070476D5B5B5E93158.jpg
- app-t####.b0.upa####.com/avatar/415F5524CC8E3BE2A5EC52165CB037BC.jpg
- app-t####.b0.upa####.com/avatar/664F69A3094CB45C5D1BF87C075E0A7F.jpg
- app-t####.b0.upa####.com/avatar/76D2AE0CD99DAE0BB2AFA2F27CF9FF86.jpg
- app-t####.b0.upa####.com/avatar/775A39C540E3F43B4F2C21A8D47D63D5.jpg
- app-t####.b0.upa####.com/avatar/7C192B4F9C6BEC27B8508D8A62FDB1BA.jpg
- app-t####.b0.upa####.com/avatar/A9D79EF7410D960D2CBAF876106A7085.jpg
- app-t####.b0.upa####.com/avatar/C64676828B042BF3CFEEA9A08F5E90B0.jpg
- app-t####.b0.upa####.com/avatar/C9E402D888E288C9B375280BE9146987.jpg
- app-t####.b0.upa####.com/avatar/CB00BE666C1383DB6806831CD75D0F1A.jpg
- app-t####.b0.upa####.com/avatar/CB37119D0E467EBFF26422F1810EA432.jpg
- app-t####.b0.upa####.com/avatar/DF2002DFF64C034683AC9DF60CD9A434.jpg
- app-t####.b0.upa####.com/avatar/ED33BEF4F909DD4A94524B2BD3339077.jpg
- app-t####.b0.upa####.com/avatar/EEEF301954EA11B913251B54864E5534.jpg
- app-t####.b0.upa####.com/avatar/FF3E1EF281F0EB464D575D1E14F2BA03.jpg
- app-t####.b0.upa####.com/avatar/omMP0wLHZsNGSUrnUdH8GR_FrjQ0.jpg
- app-t####.b0.upa####.com/avatar/omMP0wOBK156vjCFg2BE03cpwen4.jpg
- app-t####.b0.upa####.com/avatar/omMP0wOMk-pmqe9r8TZm-YshptUo.jpg
- app-t####.b0.upa####.com/avatar/orvcqs-334eKS9OjdVOjAJXfvmfY.jpg
- app-t####.b0.upa####.com/avatar/orvcqs9viYykgbKpa7AWpGmknoc8.jpg
- app-t####.b0.upa####.com/avatar/orvcqswzbhZppJY6lBkR39Dz9mhw.jpg
- app-t####.b0.upa####.com/resource/images/1cc23d8f37bd5523baa1e8e64ec98b1...
- app-t####.b0.upa####.com/resource/images/6384bd49049963f5cf7fc6ab9bb4c1d...
- app-t####.b0.upa####.com/resource/images/712e7e646bfaa33158c5a9eb89551f2...
- app-t####.b0.upa####.com/resource/img/01ceb11e9b5b7b0ec5419a896ec90226.png
- app-t####.b0.upa####.com/resource/img/13a5a88fadbeb5b498df30ceef33efee.png
- app-t####.b0.upa####.com/resource/img/1cc23d8f37bd5523baa1e8e64ec98b11.png
- app-t####.b0.upa####.com/resource/img/3de9f8699494c0e1643292f75240847c.png
- app-t####.b0.upa####.com/resource/img/85e9905993ee55b3308f3bd245960664.png
- app-t####.b0.upa####.com/resource/img/8a50050187f95190c3a13462fb965c17.png
- app-t####.b0.upa####.com/resource/img/a7cb7739f90ecaeebbef942f436d3bb3.png
- app.onetwo####.top.####.com/swenjian/ac
- cdn.game####.org/strategy/UnknownDev
- cdn.game####.org/strategy/base
- cdn.game####.org/strategy/dev_root
- cdn.game####.org/strategy/dev_root2
- cdn.game####.org/strategy/larger4.3
- cdn.game####.org/strategy/loss_4.3
- cdn.game####.org/strategy/sul18
- cdn.game####.org/strategy/symlink-adbd
- mi.g####.qq.com/gdt_mview.fcg?datatype=####&posid=####&count=####&r=####...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- mo####.b####.com/cpro/ui/mads.php?code2=####
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- a####.3gu.com/index.php/mcBox/getComment
- a####.3gu.com/index.php/mcBox/save
- a####.u####.com/app_logs
- oth.eve.mdt.####.com:8080/analytics/upload?rid=####&sid=####
- oth.str.mdt.####.com:8080/analytics/upload
- oth.str.mdt.####.com:8080/analytics/upload?sid=####
- s####.e.qq.com/activate
- s####.e.qq.com/launch
- s####.e.qq.com/msg
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/04d35186-eb0b-41c9-8c8a-594f5b1fa54a.jar
- /data/data/####/16b5b717-1607-4f53-94d3-b313a5003f3b
- /data/data/####/1740c449fc10be62df60ba0f18696c9f
- /data/data/####/25e2eb41-2c32-41a7-b54b-bc3506a28d87
- /data/data/####/32edd79a240b5f1e461d069caab1ec3e
- /data/data/####/357e8fd6-9c45-4d5d-8016-eb12be66091c
- /data/data/####/4c99aa6c-0f6f-480a-85b2-a261c45d9405
- /data/data/####/8b6f263391259b7a8e5f58ee71852ca8
- /data/data/####/Alvin2.xml
- /data/data/####/AppStore.xml
- /data/data/####/Beacon_sig_1.lock
- /data/data/####/ContextData.xml
- /data/data/####/DENGTA_META.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/Matrix
- /data/data/####/MeService.jar
- /data/data/####/MeService.xml
- /data/data/####/RmgActivity.xml
- /data/data/####/SUBOXLOG_
- /data/data/####/UmengLocalNotificationStore.db-journal
- /data/data/####/ac817b0b-d58d-4372-a81d-c9254c3d186f
- /data/data/####/b0141e478b25af7c40a8cca8de6c4708
- /data/data/####/b029dea3-bfed-4d79-9eac-4670a810560e
- /data/data/####/b18a021d11a3004d25017230b681476b
- /data/data/####/b8e3137c-8ead-45d1-a4d0-493d32be2075
- /data/data/####/beacon_db-journal
- /data/data/####/c61913b615fb6224701377a119081f36
- /data/data/####/d06170b9-bd3d-4217-b288-a599983b8260
- /data/data/####/ddexe
- /data/data/####/debuggerd
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/device.db
- /data/data/####/e9eb87c8-888d-4da1-aa2f-ee46671e49e2
- /data/data/####/ebn.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/fileWork
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/install-recovery.sh
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_cached_com.shjdfghs.shfdgh298
- /data/data/####/phoneuid.xml
- /data/data/####/pidof
- /data/data/####/pqwn.db-journal
- /data/data/####/root3
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/su
- /data/data/####/supolicy
- /data/data/####/toolbox
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/update_lc
- /data/data/####/wsroot.sh
- /data/media/####/-1039049881
- /data/media/####/-1192085799
- /data/media/####/-1194330627
- /data/media/####/-1307229337
- /data/media/####/-1328514550
- /data/media/####/-1458502728
- /data/media/####/-152361918
- /data/media/####/-1631334423
- /data/media/####/-2016174934
- /data/media/####/-2117404106
- /data/media/####/-2122278203
- /data/media/####/-405544383
- /data/media/####/-411805877
- /data/media/####/-41241711
- /data/media/####/-495676947
- /data/media/####/-628812790
- /data/media/####/-728709131
- /data/media/####/-814354724
- /data/media/####/-882388936
- /data/media/####/-91333961
- /data/media/####/1108175941
- /data/media/####/1234937381
- /data/media/####/1385507924
- /data/media/####/1505655508
- /data/media/####/1698773691
- /data/media/####/1819928312
- /data/media/####/211488266
- /data/media/####/264577877
- /data/media/####/341919891
- /data/media/####/476607963
- /data/media/####/509843563
- /data/media/####/623074637
- /data/media/####/643154637
- /data/media/####/656367657
- /data/media/####/717418274
- /data/media/####/854800871
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/meta.dat
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/sh -c getprop ro.build.fingerprint
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- chmod 777 Matrix ddexe debuggerd device.db fileWork install-recovery.sh pidof root3 su supolicy toolbox wsroot.sh
- chmod 777 Matrix ddexe debuggerd fileWork install-recovery.sh pidof su supolicy toolbox wsroot.sh
- getprop ro.build.fingerprint
- sh
- libjiagu
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding