Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) m####.oss-cn-####.aliy####.com:80
- TCP(HTTP/1.1) scs.opensp####.cn:80
- TCP(HTTP/1.1) h####.opensp####.cn:80
- TCP(HTTP/1.1) a####.b####.qq.com:8011
- TCP(HTTP/1.1) a####.b####.qq.com:8012
- TCP(HTTP/1.1) rp-na####.ron####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(HTTP/1.1) api.m####.com:80
- TCP(TLS/1.0) s####.cn.ron####.com:443
- TCP(TLS/1.0) 2####.58.211.110:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) hk.wagbr####.non####.####.com:443
- UDP 66.70.1####.47:44458
- UDP 66.70.1####.47:44457
- UDP 66.70.1####.47:44452
- UDP 66.70.1####.47:44456
- UDP 66.70.1####.47:44455
- UDP 66.70.1####.47:44454
- UDP 66.70.1####.47:44453
- UDP 1####.168.115.1:137
- UDP 66.70.1####.47:44448
- UDP 66.70.1####.47:44464
- UDP 66.70.1####.47:44451
- UDP 66.70.1####.47:44449
- UDP 66.70.1####.47:44450
- UDP 66.70.1####.47:44462
- UDP 66.70.1####.47:44463
- UDP 66.70.1####.47:44444
- UDP 66.70.1####.47:44460
- UDP 66.70.1####.47:44445
- UDP 66.70.1####.47:44461
- UDP 66.70.1####.47:44446
- UDP 66.70.1####.47:44447
- UDP 66.70.1####.47:44459
- TCP 1####.92.13.109:8617
- a####.b####.qq.com
- aexcep####.b####.qq.com
- amap####.cn-hang####.oss####.####.com
- and####.b####.qq.com
- api.m####.com
- d####.opensp####.cn
- h####.opensp####.cn
- m####.oss-cn-####.aliy####.com
- mt####.go####.com
- nav.cn.ron####.com
- res####.a####.com
- s####.cn.ron####.com
- scs.opensp####.cn
- y####.al####.com
- h####.opensp####.cn/launchconfig?t=####&p=Lm1mY####
- m####.oss-cn-####.aliy####.com/images/console/20180723/15323367664524d50...
- m####.oss-cn-####.aliy####.com/images/console/20180723/15323368415753c51...
- m####.oss-cn-####.aliy####.com/images/console/20180723/1532336916132955b...
- m####.oss-cn-####.aliy####.com/images/console/20180723/15323371708403aed...
- m####.oss-cn-####.aliy####.com/images/console/20180723/1532337567326ec80...
- m####.oss-cn-####.aliy####.com/images/console/20180723/15323377167499884...
- m####.oss-cn-####.aliy####.com/images/console/20180726/1532596447537d47c...
- m####.oss-cn-####.aliy####.com/images/console/20180726/1532597768437b62e...
- m####.oss-cn-####.aliy####.com/images/console/20180727/1532664250902a83e...
- m####.oss-cn-####.aliy####.com/images/console/20180728/1532765716990e956...
- m####.oss-cn-####.aliy####.com/images/console/20180802/153320044753585db...
- m####.oss-cn-####.aliy####.com/images/console/20180802/1533201119053b2e3...
- m####.oss-cn-####.aliy####.com/images/console/20180803/15332671746313af3...
- m####.oss-cn-####.aliy####.com/images/console/20180809/1533801125706a899...
- m####.oss-cn-####.aliy####.com/images/console/20180809/1533801865592297c...
- m####.oss-cn-####.aliy####.com/images/console/20180811/1533981079081291f...
- m####.oss-cn-####.aliy####.com/images/console/20180815/15343222787914002...
- m####.oss-cn-####.aliy####.com/images/console/20181120/1542705788002c310...
- m####.oss-cn-####.aliy####.com/images/console/20181204/15439255024180ced...
- m####.oss-cn-####.aliy####.com/images/console/20181204/15439255359921282...
- m####.oss-cn-####.aliy####.com/images/console/20181204/154392555758633bf...
- m####.oss-cn-####.aliy####.com/images/console/20181204/15439255839235e8e...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504593666169c59...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459377897bda2...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504593871876039...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459396642ef75...
- m####.oss-cn-####.aliy####.com/images/console/20190218/155045941648143e8...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504594282659c83...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459437995adee...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504594478929d38...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504594635129b2e...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459472919eec4...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504594832117acd...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504594929765853...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504595040067fce...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504595203573cc3...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459537640188e...
- m####.oss-cn-####.aliy####.com/images/console/20190218/15504595486495cb6...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459557254bdb7...
- m####.oss-cn-####.aliy####.com/images/console/20190218/1550459565792b5d9...
- m####.oss-cn-####.aliy####.com/images/console/20190227/15512359955551ce1...
- m####.oss-cn-####.aliy####.com/images/console/20190307/1551943662845eb3e...
- m####.oss-cn-####.aliy####.com/images/console/20190320/15530697394771683...
- sh.wagbr####.aliyun####.com/sdkcoor/android/x86/libJni_wgs2gcj.so
- a####.b####.qq.com:8011/rqd/async
- a####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- and####.b####.qq.com/rqd/async?aid=####
- api.m####.com/api/get_active_state_v2.3?
- api.m####.com/api/get_article_list?
- api.m####.com/api/get_flash_ad?
- api.m####.com/api/get_index_data_newNew?
- api.m####.com/api/get_recommend_merchant?
- api.m####.com/api/get_top_user_skill?
- api.m####.com/api/get_unread_message_count?
- api.m####.com/api/skill_type_list_new?
- api.m####.com/api/version?
- rp-na####.ron####.com/navipush.json
- scs.opensp####.cn/index.php/clientrequest/clientcollect/isCollect
- scs.opensp####.cn/scs?cmd=####&logver=####&size=####
- /data/data/####/052e537efda5ca9a88ceb801818322198238ceb0f6b24b9....0.tmp
- /data/data/####/05582161ddda61f7437b38fcf831160e6c9f1a0cee09357....0.tmp
- /data/data/####/0a231bd8575dcf72.txt
- /data/data/####/0cd67b069ccd4a49548ab33728d8374411263e7686cf4b3....0.tmp
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/126438d649062237a045a90fe66158ee5ab979cfd37a5e5....0.tmp
- /data/data/####/14f007ce6ccc256663ae691da94a95af56e558df67ad722....0.tmp
- /data/data/####/17b67e8c09f9aedc855ba111bd52d31c4f7c4d60b89a033....0.tmp
- /data/data/####/1d2b904cbeadfb72ed9546111a231c85.0
- /data/data/####/1d68468e5cd2d15e79bc009e12b69263546fa2649b1f8a9....0.tmp
- /data/data/####/236f6c08812b61dcf3dd8984ea63fcaafb8687d751af21b....0.tmp
- /data/data/####/2694380610ecea76f9972bfed18190739658796c8c00fab....0.tmp
- /data/data/####/27bc341183073bf36ed49a4080f2befca346060abf8983b....0.tmp
- /data/data/####/2cebf3f228e9b8b14dc9c838103b855ff7f4b011f2f6a37....0.tmp
- /data/data/####/3858401311366.0
- /data/data/####/3ad663dba4558e09e61d27934d297d29ceedae9214e0b65....0.tmp
- /data/data/####/3fc91ad9d9de28b52048a713f9b154090a98a39b19f361e....0.tmp
- /data/data/####/447ac1384a1ccbad24c60a6bc875f4b049f5490e548fb1d....0.tmp
- /data/data/####/57fb79f4891d4ea6cc067d2b07ecedd39724a07b461c4f5....0.tmp
- /data/data/####/591ac43496175cbf68ffb3f1c449e46a8f90dd60bcf60ed....0.tmp
- /data/data/####/5aa48b582072e3cf55a2e037622ab5577e8e963e004262c....0.tmp
- /data/data/####/5b12da7cffa2e25f97d9884783d6b7ffae358d025eab856....0.tmp
- /data/data/####/722c8504e69a1ba9af5d9c359b057640a56b66a4e48f7c5....0.tmp
- /data/data/####/7e883b462f8e8bdd45970de08d6043df440c1a66f89a13b....0.tmp
- /data/data/####/8c608e81aae507d15658e0a31b45967377b2c87665bc268....0.tmp
- /data/data/####/8d0310a34d77f9f3a6f97c2f543d60d526251685c25587e....0.tmp
- /data/data/####/8e2ce20e037312e6164b6ebae28f30420e88ef4a8bbe72d....0.tmp
- /data/data/####/8e73494ca4127672ea12bc28f7298aac5952fe519e64c2c....0.tmp
- /data/data/####/94c4527f1d69b82e9ef2c380c8cb3ff3b709c57e73374a2....0.tmp
- /data/data/####/97eb8627085270cab56fe2214886514e582a69e38bdaca6....0.tmp
- /data/data/####/9b7aa2f1301eeeb3a051f0a01a7769b311337e078c93d08....0.tmp
- /data/data/####/Alvin2.xml
- /data/data/####/BUGLY_COMMON_VALUES.xml
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/ContextData.xml
- /data/data/####/MFBB.xml
- /data/data/####/Q0VSVC5SU0EK.txt8ee
- /data/data/####/RongPush.xml
- /data/data/####/SGMANAGER_DATA2.tmp
- /data/data/####/SG_INNER_DATA
- /data/data/####/Statistics.xml
- /data/data/####/WindVane_wv_main_configcommonwv-data
- /data/data/####/WindVane_wv_main_configdomainwv-data
- /data/data/####/ae0009aa55a6bde386184da914b2b287d13b2707447a8c1....0.tmp
- /data/data/####/ae2235793bc841bdcdfbf7c8a1997d5c7e24dffe2daffff....0.tmp
- /data/data/####/ae588174f5339905c71cb8b5c3255c118509a48b20d96dc....0.tmp
- /data/data/####/b0770ec41027cbe149adefecc43890e6dcf474bf4dc07b1....0.tmp
- /data/data/####/b642d25e6c1a2aff0d7f1d92aacaea3d756d3f50c11949f....0.tmp
- /data/data/####/b78d92f8898ce9ed5b25b84b8cdbfd22cfe5a027f96c68c....0.tmp
- /data/data/####/b8a05a551b85a45eec910f1d901c0ed62370108f114fd5f....0.tmp
- /data/data/####/bugly_db_-journal
- /data/data/####/bugly_db_legu-journal
- /data/data/####/c054167ab743b486e06e1c7464a6a4b4ffbc1b31c09d3e5....0.tmp
- /data/data/####/cefdd8fd451a4467643eabba4ea58b6fc98f0d8cc5a0cbc....0.tmp
- /data/data/####/com.fxkj.mfbb.BETA_VALUES.xml
- /data/data/####/com.fxkj.mfbb_preferences.xml
- /data/data/####/com.iflytek.id.xml
- /data/data/####/com.iflytek.msc.xml
- /data/data/####/crashrecord.xml
- /data/data/####/d3338b6ffafac29489d64e7e51a759708bae9368b835f76....0.tmp
- /data/data/####/dd874aec45a9a756ba458f08899a2e096ebdf4c63f9914b....0.tmp
- /data/data/####/e21f5f687a083b7711584d61aa98f3f64f7a397f5fe22e7....0.tmp
- /data/data/####/e7fd1f2c98a63d7a92bca149d9cbba7110d42ad10becb5d....0.tmp
- /data/data/####/e9ec81fa254d5a6657a9429a514943388b2c250f80344c2....0.tmp
- /data/data/####/eed182f3a25616e5bf4027ce04a6f647081927c69ac0efd....0.tmp
- /data/data/####/f0b5ed53b017fdf6eb79bfbdc1ffac258b8efb02f46c52e....0.tmp
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/ifly_launch_lib.xml
- /data/data/####/ifly_launch_lib.xml.bak (deleted)
- /data/data/####/iflytek_state_com.fxkj.mfbb.xml
- /data/data/####/imei.xml
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/libnfix.so
- /data/data/####/libsgmainso-5.4.38.so.tmp.2286
- /data/data/####/libsgsecuritybodyso-5.4.28.so.tmp.2286
- /data/data/####/libshella-2.8.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/lock.lock
- /data/data/####/loctemp.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/mix.dex
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/pref.xml
- /data/data/####/security_info
- /data/data/####/sgFile.lock
- /data/data/####/sp.lock
- /data/data/####/webview.db-journal
- /data/data/####/wv_web_info.dat
- /data/media/####/1553610709255.db
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/RongLog_2_8_16.log
- /data/media/####/alsn20170807.db
- /data/media/####/alsn20170807.db-journal
- /data/media/####/dd7893586a493dc3
- /data/media/####/hid.dat
- /data/media/####/iflyworkdir_test
- /system/bin/sh -c getprop
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-2.8.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.build.version.release
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- RongIMLib
- libnfix
- libshella-2.8
- libufix
- msc
- nfix
- sgmainso-5.4
- sgsecuritybodyso-5.4
- tpnsSecurity
- ufix
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding