Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) c.g####.qq.com:80
- TCP(HTTP/1.1) v.g####.qq.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) 3####.tc.qq.com:80
- TCP(HTTP/1.1) ca####.gdt.qq.com:80
- TCP(HTTP/1.1) s####.tc.qq.com:80
- TCP(TLS/1.0) api.1####.com:443
- a####.u####.com
- and####.b####.qq.com
- api.1####.com
- c.g####.qq.com
- ca####.gdt.qq.com
- dd.m####.com
- imgc####.qq.com
- mi.g####.qq.com
- pp.m####.com
- qzones####.g####.cn
- s####.e.qq.com
- v.g####.qq.com
- 3####.tc.qq.com/16891/31941D22E4C2101D74DF20EB8413C78E.apk?fsname=####&_...
- 3####.tc.qq.com/dd.myapp.com/16891/31941D22E4C2101D74DF20EB8413C78E.apk?...
- c.g####.qq.com/gdt_mclick.fcg?viewid=####&jtype=####&i=####&os=####&asi=...
- c.g####.qq.com/gdt_trace_a.fcg?actionid=####&targettype=####&tagetid=###...
- ca####.gdt.qq.com/canvas/1?viewid=####&ckn=####
- mi.g####.qq.com/gdt_mview.fcg?posw=####&spsa=####&posh=####&count=####&r...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android02/images/tsa_ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- s####.tc.qq.com/ma_icon/0/icon_42297806_1550650957/256
- v.g####.qq.com/gdt_stats.fcg?viewid=####&i=####&os=####&xp=####&gap=####
- a####.u####.com/app_logs
- and####.b####.qq.com/rqd/async?aid=####
- s####.e.qq.com/activate
- s####.e.qq.com/click
- s####.e.qq.com/msg
- /data/data/####/.imprint
- /data/data/####/1004
- /data/data/####/2272.yaqcookie
- /data/data/####/5ead7c1916e321af3ee0d7d6aa595238.temp
- /data/data/####/7efb13ed21d3afb223793df9e60014d8.temp
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/MultiDex.lock
- /data/data/####/Service.xml
- /data/data/####/[[afollestad_heme-engine_dark_theme]].xml
- /data/data/####/[[afollestad_heme-engine_dark_theme_notoolbar]].xml
- /data/data/####/[[afollestad_heme-engine_light_theme]].xml
- /data/data/####/[[afollestad_heme-engine_light_theme_notoolbar]].xml
- /data/data/####/andpatch.xml
- /data/data/####/andpatch_extra.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.jifen.qukan-1.apk.classes-1820536364.zip
- /data/data/####/com.jifen.qukan-1.apk.classes-688626758.zip
- /data/data/####/com.jifen.qukan-1.apk.classes-727531703.zip
- /data/data/####/com.jifen.qukan.xml
- /data/data/####/crashrecord.xml
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/dexMethod.88615060.dat
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/libyaqbasic.88615060.so
- /data/data/####/libyaqpro.88615060.so
- /data/data/####/multidex.version.xml
- /data/data/####/musicdb.db-journal
- /data/data/####/native_record_lock
- /data/data/####/qk_app.xml
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/update_lc
- /data/data/####/yaqsdkcookie
- /data/media/####/.2e1b3b35856a9a8b9e7626ee3afd5a3c.cuid
- /data/media/####/.301d574ef42563b03638c8eae19225cb.cuid
- /data/media/####/.3125d5afa5dd91e0244c1d395dff4271.cuid
- /data/media/####/.47dcbd834e669233d7eb8a51456ed217.cuid
- /data/media/####/.6c017cebec8103c6a12acdf6e530cd40.cuid
- /data/media/####/.7f1742e0d9ab7b82443cb870d357e085.cuid
- /data/media/####/.801ab24683a4a8c433c6eb40c48bcd9d.cuid
- /data/media/####/.80662e1f485e79d07ef4973f6b1b9f88.cuid
- /data/media/####/.8f51db48bf0ea9f72de7a231ed8af2f0.cuid
- /data/media/####/.9bf72350632fdc8eedb8dc474f164954.cuid
- /data/media/####/.a274f4d4670213a9045ce258c6c56b80.cuid
- /data/media/####/.b11ddc7e1671c0bd22dc89dd757508d4.cuid
- /data/media/####/.c3418983f96107fb595049c67426dc08.cuid
- /data/media/####/.e84e30b9390cdb64db6db2c9ab87846d.cuid
- /data/media/####/.nomedia
- /data/media/####/5b9c4ded37cffef03b86b69aeac17e07
- /data/media/####/com.jifen.qukan.apk_0
- /data/media/####/cusc
- /data/media/####/cusys
- /data/media/####/systemccu
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- cat /sys/class/net/wlan0/address
- getprop
- RSSupportIO
- blasV8
- librsjni
- libyaqbasic.88615060
- libyaqpro.88615060
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding