Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) a####.yog####.com:80
- TCP(HTTP/1.1) fp-s####.fengkon####.com:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) 1####.217.17.110:443
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) analy####.ray####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- TCP(TLS/1.0) fk-old-####.ray####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- a####.yog####.com
- adser####.go####.com
- analy####.ray####.com
- and####.b####.qq.com
- fp-s####.fengkon####.com
- g####.face####.com
- log.u####.com
- plb####.u####.com
- set####.ray####.com
- ssl.gst####.com
- u####.u####.com
- www.go####.com
- www.go####.nl
- www.gst####.com
- a####.yog####.com/api/common/versionUpdate
- a####.yog####.com/api/heart/basis
- and####.b####.qq.com/rqd/async?aid=####
- fp-s####.fengkon####.com/v3/cloudconf
- fp-s####.fengkon####.com/v3/profile/android
- /data/anr/traces.txt
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1004
- /data/data/####/MultiDex.lock
- /data/data/####/SP_YOGO.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/cloudms.conf.xml
- /data/data/####/com.facebook.internal.preferences.APP_GATEKEEPERS.xml
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/com.facebook.sdk.attributionTracking.xml
- /data/data/####/com.google.InstanceId.properties
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.shumei.xml
- /data/data/####/crashrecord.xml
- /data/data/####/cv.xml
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0NzQ1NDk2;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0NzY1MjAz;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0NzYxNTUz;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0Nzc5OTk2;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0NzczMTAy;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0NzgyMzk4;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTU1NDc0Nzk4NTk4;
- /data/data/####/dW1weF9zaGFyZV8xNTU1NDc0NzQ4Mjgy;
- /data/data/####/dW1weF9zaGFyZV8xNTU1NDc0NzQ4MzMy;
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/i==1.2.0&&2.0.7_1555474745597_envelope.log
- /data/data/####/i==1.2.0&&2.0.7_1555474761558_envelope.log
- /data/data/####/info.xml
- /data/data/####/installationNum
- /data/data/####/libjiagu-176894975.so
- /data/data/####/localVideo.db-journal
- /data/data/####/local_crash_lock
- /data/data/####/mintegral.msdk.db-journal
- /data/data/####/mintegral.xml
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/security_info
- /data/data/####/seq.xml
- /data/data/####/share.db-journal
- /data/data/####/share_date.xml
- /data/data/####/tracker.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.nomedia
- /data/media/####/.thumbcache_idx0
- /data/media/####/.umm.dat
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/shumei.txt
- /data/media/####/sysid.dat
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop
- cat /proc/self/cgroup
- getprop
- ls /sys/class/thermal
- ps
- which su
- Bugly
- NvStreamingSdkCore
- libjiagu-176894975
- native-lib
- smsdk
- AES-CBC-PKCS5PADDING
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- DES-ECB-NoPadding