Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) cl####.tiantia####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) 1####.217.17.78:443
- TCP c####.g####.ig####.com:5225
- TCP sdk.o####.t####.####.com:5224
- 7j####.c####.z0.####.com
- av1.x####.com
- c####.g####.ig####.com
- c-h####.g####.com
- cl####.tiantia####.com
- i.t####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- t####.c####.q####.####.com/config/hz-hzv3.conf
- t####.c####.q####.####.com/tdata_YYn966
- t####.c####.q####.####.com/tdata_eOt091
- c-h####.g####.com/api.php?format=####&t=####
- cl####.tiantia####.com/user/bindGeTui.do
- cl####.tiantia####.com/user/rg.do
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/anr/traces.txt
- /data/data/####/.jg.ic
- /data/data/####/1547205614497_2297
- /data/data/####/1547205614840_2297
- /data/data/####/1547205614888_2297
- /data/data/####/1547205616060_2297
- /data/data/####/1547205616661_2297
- /data/data/####/1547205617038_2297
- /data/data/####/1547205618590_2297
- /data/data/####/1547205618606_2297
- /data/data/####/1547205618676_2361
- /data/data/####/1547205618700_2361
- /data/data/####/1547205618725_2361
- /data/data/####/1547205619338_2361
- /data/data/####/1547205620361_2403
- /data/data/####/1547205620863_2403
- /data/data/####/1547205621494_2403
- /data/data/####/1547205636543_2297
- /data/data/####/1547205636918_2297
- /data/data/####/1547205636958_2297
- /data/data/####/1547205637639_2578
- /data/data/####/1547205637871_2578
- /data/data/####/1547205638718_2646
- /data/data/####/1547205638977_2646
- /data/data/####/1547205641742_2723
- /data/data/####/1547205641906_2723
- /data/data/####/1547205642600_2771
- /data/data/####/1547205642756_2771
- /data/data/####/1547205645887_2821
- /data/data/####/1547205646035_2821
- /data/data/####/1547205649841_2878
- /data/data/####/1547205649883_2878
- /data/data/####/1547205650713_2924
- /data/data/####/1547205651033_2924
- /data/data/####/1547205651569_2970
- /data/data/####/1547205651713_2970
- /data/data/####/1547205656566_3027
- /data/data/####/1547205656731_3027
- /data/data/####/1547205658148_3073
- /data/data/####/1547205658302_3073
- /data/data/####/1547205659529_3121
- /data/data/####/1547205670391_3179
- /data/data/####/1547205670615_3179
- /data/data/####/1547205671345_3226
- /data/data/####/1547205671607_3226
- /data/data/####/1547205672170_3271
- /data/data/####/1547205672322_3271
- /data/data/####/1547205677176_3364
- /data/data/####/1547205677953_3364
- /data/data/####/1547205680584_2403
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/cache.xml
- /data/data/####/com.reader.tiantianaikan_preferences.xml
- /data/data/####/default_config.xml
- /data/data/####/first_config.xml
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gx_sp.xml
- /data/data/####/hotfix.jar
- /data/data/####/hotfix.zip
- /data/data/####/hreader_db-journal
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libjiagu-1629429516.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/run.pid
- /data/data/####/tdata_YYn966
- /data/data/####/tdata_YYn966.jar
- /data/data/####/tdata_eOt091
- /data/data/####/tdata_eOt091.jar
- /data/data/####/tdid.xml
- /data/data/####/webview.db-journal
- /data/media/####/.hpay_device_id
- /data/media/####/.nomedia
- /data/media/####/.tcookieid
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.reader.tiantianaikan.bin
- /data/media/####/com.reader.tiantianaikan.db
- /data/media/####/cuid
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/tdata_YYn966
- /data/media/####/tdata_eOt091
- /data/media/####/test.log
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.bj.soft.hreader.push.QReaderPushService 25410 300 0
- cat /proc/cpuinfo
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- getprop
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/com.bj.soft.hreader.push.QReaderPushService 25410 300 0
- getuiext2
- libjiagu-1629429516
- DES-CBC-PKCS5Padding
- DESede-ECB-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- DES-CBC-PKCS5Padding
- DESede-ECB-PKCS5Padding