Technical information
- Android.DownLoader.1007.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) m.woyaoge####.com:80
- TCP(HTTP/1.1) orn####.wwe####.com:17001
- TCP(HTTP/1.1) www.1####.com:80
- TCP(TLS/1.0) rr5---s####.g####.com:443
- TCP(TLS/1.0) al####.u####.com:443
- TCP(TLS/1.0) ap####.uc.cn:443
- TCP(TLS/1.0) m.woyaoge####.com:443
- TCP(TLS/1.0) www.google####.com:443
- TCP(TLS/1.2) 1####.251.36.46:443
- TCP(TLS/1.2) www.google####.com:443
- UDP rr3---s####.g####.com:443
- UDP rr5---s####.g####.com:443
- UDP rr1---s####.g####.com:443
- UDP www.google####.com:443
- and####.google####.com
- ap####.uc.cn
- i####.woyaoge####.com
- m####.go####.com
- m.woyaoge####.com
- orn####.wwe####.com
- rr1---s####.g####.com
- rr3---s####.g####.com
- rr5---s####.g####.com
- u####.u####.com
- www.1####.com
- www.google####.com
- m.woyaoge####.com/2022/03/29/dcb0ccc7bfd34a4b8b5a2c47f7f340f1!400x400.jpeg
- m.woyaoge####.com/2022/04/01/c6650e5971cb4438a6703dadec7b09f3!400x400.jpeg
- m.woyaoge####.com/2022/04/03/f091f6bf47ee4d13970d8eb9899811ac!400x400.jpeg
- m.woyaoge####.com/2022/04/16/bf205e86ac374ad5bfbe502414caf105!400x400.png
- m.woyaoge####.com/2022/05/03/02bd1971d1c245bf99912c2a392bd8e0!400x400.jpeg
- m.woyaoge####.com/2022/05/03/3ebf4d8b650a4f73a5f8e86ff1be73dc!400x400.jpeg
- m.woyaoge####.com/2022/05/03/531fba1bd64e4002906948ce03e2d15e!400x400.jpeg
- m.woyaoge####.com/2022/05/03/8ffea433708c459dac022ff27e7fa83d!400x400.jpeg
- m.woyaoge####.com:443/touxiang/
- m.woyaoge####.com:443/touxiang/hot/
- m.woyaoge####.com:443/touxiang/new/
- www.1####.com/touxiangshenqi/index.php
- al####.u####.com:443/unify_logs
- al####.u####.com:443/zcfg
- ap####.uc.cn:443/collect?chk=####&vno=####&uuid=####&app=####&enc=####
- orn####.wwe####.com:17001/cbcvu9/
- /data/data/####/.cl
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jg.store.report_cf
- /data/data/####/03b7b7a4fb6a4e454846025ad586ceb86794679fb258dbd....0.tmp
- /data/data/####/1280a99be3c519fae40911b8bd720c18692c5c2e48e6a06....0.tmp
- /data/data/####/20e1a81dcd65410574ece6a33dc725f9ee56466df83b3bd....0.tmp
- /data/data/####/38b5cbe103d9e7f5053872f9349484cb1f394177f258b04....0.tmp
- /data/data/####/3b2959f43f1c64c5bef0ccbd0ba220ffa47468853dc152d....0.tmp
- /data/data/####/3f8c99c381716594c0bf38aff4284ebf3507c2d785a8908...fab0.0
- /data/data/####/43386eeab91a3b6d7fb7533845fed5cce329c386d7d29c6....0.tmp
- /data/data/####/593f4870dd43305dd415fae59f701b4f9e3a1df9d19795c....0.tmp
- /data/data/####/65a224ffc2ad9c05df98245c6e47f915aacb747a3fc65e8....0.tmp
- /data/data/####/65c198979da9cba8c05e7e1c95b49658dbaee29a3617c66....0.tmp
- /data/data/####/84874d81f4c383022af2acead9b0c1ab8f8bf53aa8f24b2....0.tmp
- /data/data/####/914346022e14f276c4aa8d896ad34aa5262b9ff922dec22....0.tmp
- /data/data/####/9342e7de74a6882bb5adcd1526df5640ce598fce7f7d0bf...d065.0
- /data/data/####/9aaf71f75c0983254c80b74c050f71aba658b70aaa2242e....0.tmp
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/CrBHWtO.dex
- /data/data/####/CrBHWtO.dex.flock (deleted)
- /data/data/####/CrBHWtO.jar
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/WWW0GNAIXUOT0MOC.ss
- /data/data/####/WWW0GNAIXUOT0MOC.st
- /data/data/####/_p.xml
- /data/data/####/_sh.xml
- /data/data/####/a39c6cb483af1e1c46e1030a1cdbc8a6ec2559b70e5203e....0.tmp
- /data/data/####/ad399e2cebdab683d6592e40f7b24c21f05b9988d2dc88a....0.tmp
- /data/data/####/b41e5944257d7fa955fa47e7c0d8fa6e94ff4e07e1fb76d....0.tmp
- /data/data/####/cade9b0e03fbde014f09e5204c83149e11376ccfa72eb6f....0.tmp
- /data/data/####/cc84f01d24f9870bc073f02d35f453d540e45c7542ba4c0...acdf.0
- /data/data/####/cdt.wa
- /data/data/####/ck732093061jinshan.xml
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.oat
- /data/data/####/cr.wa
- /data/data/####/da49213e2b88e714e9343c4e039c94abff9def79b88b0dc....0.tmp
- /data/data/####/dcd09350b8f1128f70c2d4d5e6011843510f09ba73cf936....0.tmp
- /data/data/####/dt.wa
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f1998419da4a3666003845265295527e185b3661c1716f8....0.tmp
- /data/data/####/f20abe70771e08a9a1be266d37495ec0d34e687b94583ab...fcad.0
- /data/data/####/f98be5967f997cc435779a769f4cadc7cf4d4933944b900....0.tmp
- /data/data/####/i==1.2.0&&1.0.0_1651797394401_dW5pZnlfbG9ncw==;.log
- /data/data/####/info.xml
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/okgo_server.db
- /data/data/####/okgo_server.db-journal
- /data/data/####/proc_auxv
- /data/data/####/pv.wa
- /data/data/####/t==9.2.7&&1.0.0_1651797394283_dW5pZnlfbG9ncw==;.log
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/um_session_id.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_sp_zdata.xml
- /data/data/####/umeng_zcfg_flag
- /data/data/####/umeng_zero_cache.db
- /data/data/####/umeng_zero_cache.db-journal
- /data/data/####/unique
- /data/data/####/ver
- /data/data/####/xm.xml
- /data/data/####/xm.xml.bak
- /data/data/####/z==1.2.0&&1.0.0_1651797393362_emNmZw==;.log
- /data/data/####/壹壹QQ1067065545.xml
- /data/data/####/壹壹QQ1067065545.xml.bak
- /data/media/####/.vkwd
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/_pn
- /data/media/####/_shn
- /data/media/####/databases.db
- /data/media/####/databases.db-journal
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- cat /sys/class/net/wlan0/address
- getprop ro.yunos.build.version
- ls -l /system/bin/su
- ls /
- ls /sys/class/thermal
- sh -c type su
- libWebDataEncrypt
- libcrashsdk
- libjiagu
- libumeng-spy
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- RSA-None-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- RSA-None-PKCS1Padding