Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) im####.w####.cn.####.com:80
- TCP(HTTP/1.1) app.w####.cn:80
- TCP(HTTP/1.1) api.to####.today:80
- TCP(HTTP/1.1) bmob-cd####.b0.upa####.com:80
- TCP(TLS/1.0) api.b####.cn:443
- ads.w####.cn
- aexcep####.b####.qq.com
- and####.b####.qq.com
- api.b####.cn
- api.to####.today
- app.w####.cn
- bmob-cd####.b0.upa####.com
- bmob-cd####.b0.upa####.com
- im####.w####.cn
- wap.xixi####.com
- app.w####.cn/action/connect/active?app_id=####&udid=####&imsi=####&net=#...
- app.w####.cn/action/miniad/ad?app_id=####&udid=####&imsi=####&net=####&b...
- bmob-cd####.b0.upa####.com/2016/10/26/addb4295408b3ae880baa6871a16464f.dex
- bmob-cd####.b0.upa####.com/2017/10/30/589fab3e40e8d9cb8031ab3e6539fb75.jpg
- im####.w####.cn.####.com/appfile/adsfile/11bff27be6c574cfb5bc785f38f92df...
- im####.w####.cn.####.com/appfile/adsfile/e5849d37b08d7e884257cc9bea6cc84...
- im####.w####.cn.####.com/appfile/stuff/38759fe7d053704da06e30b83b616b30/...
- im####.w####.cn.####.com/appfile/stuff/432db4f00a1cfc1518026b4ec46d326e/...
- im####.w####.cn.####.com/appfile/stuff/45f86318583b6457b9a42cfe8c91f6fe/...
- im####.w####.cn.####.com/appfile/stuff/4f107bda894d5f390100c536bd5a50f6/...
- im####.w####.cn.####.com/appfile/stuff/522256c61ef859d9c48553101cf7ff89/...
- im####.w####.cn.####.com/appfile/stuff/53e61868223a5866beb8c9070818572b/...
- im####.w####.cn.####.com/appfile/stuff/9ba31bb7edd0cbe16b2bc6f39b7797e9/...
- im####.w####.cn.####.com/appfile/stuff/a5c07a14c10dc674037a9141d6f70ff3/...
- im####.w####.cn.####.com/appfile/stuff/b2d619fa19e36718e2c10a22e03a4a6b/...
- im####.w####.cn.####.com/appfile/stuff/bc7fcd97089361c283090e3e2d56ec9a/...
- im####.w####.cn.####.com/appfile/stuff/bcd87c74f4f1842ede5ca31d0430dd8b/...
- im####.w####.cn.####.com/appfile/stuff/f231d225054d380f241edf7f7272192c/...
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- api.to####.today/v1/statistics
- app.w####.cn/action/user_info
- /data/data/####/816765344.dex
- /data/data/####/816765344.zf
- /data/data/####/AppSettings.xml
- /data/data/####/BmobDy.xml
- /data/data/####/CacheTime.dat
- /data/data/####/ShowAdFlag.xml
- /data/data/####/apprate_prefs.xml
- /data/data/####/bugly_db_legu-journal
- /data/data/####/cache
- /data/data/####/com.cyhl.yll25_preferences.xml
- /data/data/####/ij.dex
- /data/data/####/libnfix.so
- /data/data/####/libshella-2.10.1.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/mix.dex
- /data/data/####/native_record_lock
- /data/data/####/security_info
- /data/data/####/z.dex
- /data/data/####/z.so
- /data/media/####/-1526659919.zf
- /data/media/####/07d96cffac1cd3efc30a716a70e5a26c
- /data/media/####/11bff27be6c574cfb5bc785f38f92dfc
- /data/media/####/1551273701042.db
- /data/media/####/647b7d170f3f9f12c98ce981999e8804
- /data/media/####/6ba40c1f730d4bbbabecfb73acacd457
- /data/media/####/74cbb9d5b799b930bd8f86e896721e51
- /data/media/####/938e790af8936191d01351bc9eec7fd0
- /data/media/####/977e97767fd09498be4b7bcb61b45b9f
- /data/media/####/AppPackage.dat
- /data/media/####/CacheTime.dat
- /data/media/####/UnPackage.dat
- /data/media/####/af70494529f6d7e620742a78f7f3ddfc
- /data/media/####/android
- /data/media/####/ba6fa22ef03d2d8794c82e8f349d19f2
- /data/media/####/d3a7fa5a12abd6dd85ef85655e219e5b
- /data/media/####/e145581a87a717b1f4c8da86a402715f
- /data/media/####/e5849d37b08d7e884257cc9bea6cc848
- /data/media/####/ec34ad2a9cc514480b1278f0fee283bf
- /data/media/####/ec985a17475a503a60627b1a0cac5b4b
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-2.10.1.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- bmob
- libnfix
- libshella-2.10.1
- libufix
- nfix
- ovpncli
- ufix
- z
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding