Technical information
- Adware.Gexin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ser####.dc####.net.cn:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) qin####.com.www.####.com:80
- TCP(HTTP/1.1) www.36####.cn:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(SSL/3.0) ser####.dc####.net.cn:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) ser####.dc####.net.cn:443
- TCP(TLS/1.0) app.nx####.cn:443
- TCP(TLS/1.0) loc.map.b####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5226
- api.map.b####.com
- app.nx####.cn
- c####.g####.ig####.com
- c-h####.g####.com
- loc.map.b####.com
- pub-####.qin####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- ser####.dc####.net.cn
- st####.dc####.net.cn
- www.36####.cn
- qin####.com.www.####.com/tdata_EDT356
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- www.36####.cn/attached/image/20181018/20181018160314_807.png
- www.36####.cn/attached/image/20181114/20181114163626_95.png
- www.36####.cn/attached/image/20181207/20181207175702_876.png
- www.36####.cn/attached/image/20181207/20181207175748_678.png
- www.36####.cn/attached/image/20181207/20181207175817_365.png
- www.36####.cn/attached/image/20181207/20181207180002_819.png
- www.36####.cn/attached/image/20181215/20181215151906_503.png
- www.36####.cn/attached/image/20181218/20181218104323_894.png
- www.36####.cn/attached/image/20181220/20181220104434_320.png
- www.36####.cn/attached/image/20190111/20190111145329_269.png
- www.36####.cn/attached/image/20190115/20190115171417_765.png
- www.36####.cn/attached/image/20190115/20190115171502_728.png
- www.36####.cn/attached/image/20190115/20190115171544_431.png
- www.36####.cn/attached/image/20190115/20190115171618_642.png
- www.36####.cn/attached/image/20190115/20190115171651_654.png
- www.36####.cn/attached/image/20190115/20190115171827_286.png
- www.36####.cn/attached/image/20190115/20190115171937_473.png
- www.36####.cn/attached/image/20190115/20190115172036_87.png
- www.36####.cn/attached/image/20190115/20190115172155_126.png
- www.36####.cn/attached/image/20190218/20190218134130_654.png
- www.36####.cn/attached/image/20190218/20190218134907_724.png
- www.36####.cn/attached/image/20190226/20190226112032_850.png
- www.36####.cn/attached/image/20190402/20190402082236_641_300.png
- www.36####.cn/attached/image/20190402/20190402082922_477_300.png
- www.36####.cn/attached/image/20190402/20190402091915_226_300.png
- c-h####.g####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- ser####.dc####.net.cn/device/location
- www.36####.cn/account!getOperationCenter.action
- www.36####.cn/account!sendAcquire.action
- www.36####.cn/account!sendAllBuriedPoint.action
- www.36####.cn/account!sendElementClick.action
- www.36####.cn/advertisement!selectListByPositionId.action
- www.36####.cn/appUser!checkedTongZhi.action
- www.36####.cn/appVersions!getNewest.action
- www.36####.cn/cjfwz!selectList.action
- www.36####.cn/goodShoot!selectLisString.action
- www.36####.cn/liveportFront!weatherForecast1.action
- www.36####.cn/product!getMallNewIndexList.action
- www.36####.cn/product!selectPushProductList.action
- www.36####.cn/product!toSelectListProduct.action
- www.36####.cn/szmyMobileNewsActionFront!getNewsJson.action
- www.36####.cn/theme!getThemeList.action
- /data/data/####/.imei.txt
- /data/data/####/.jg.ic
- /data/data/####/H540F13F9.xml
- /data/data/####/H540F13F9_storages.xml
- /data/data/####/MultiDex.lock
- /data/data/####/_adio.dcloud.feature.ad.a.a.xml
- /data/data/####/authStatus_io.dcloud.H540F13F9.xml
- /data/data/####/authStatus_io.dcloud.H540F13F9;remote.xml
- /data/data/####/clientid_igexin.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_2 (deleted)
- /data/data/####/data_3
- /data/data/####/data_3 (deleted)
- /data/data/####/dc_ad_type_key.xml
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/f_000011
- /data/data/####/f_000012
- /data/data/####/f_000013
- /data/data/####/f_000014
- /data/data/####/f_000015
- /data/data/####/f_000016
- /data/data/####/f_000017
- /data/data/####/f_000018
- /data/data/####/f_000019
- /data/data/####/f_00001a
- /data/data/####/f_00001b
- /data/data/####/f_00001c
- /data/data/####/f_00001d
- /data/data/####/f_00001e
- /data/data/####/f_00001f
- /data/data/####/f_000020
- /data/data/####/f_000021
- /data/data/####/f_000022
- /data/data/####/f_000023
- /data/data/####/f_000024
- /data/data/####/f_000025
- /data/data/####/f_000026
- /data/data/####/f_000027
- /data/data/####/f_000028
- /data/data/####/firll.dat
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gx_sp.xml
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/html5Geo.xml
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libcuid.so
- /data/data/####/libjiagu1266563747.so
- /data/data/####/multidex.version.xml
- /data/data/####/pdr.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/start_statistics_data.xml
- /data/data/####/stream_permission.xml
- /data/data/####/test_app
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.imei.txt
- /data/media/####/20190403.log
- /data/media/####/AdEnable.dat
- /data/media/####/ApplicationCache.db-journal
- /data/media/####/app.css
- /data/media/####/app.db
- /data/media/####/bg.png
- /data/media/####/biao.png
- /data/media/####/bingo.png
- /data/media/####/city.data-3.js
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/constant.js
- /data/media/####/coupon.css
- /data/media/####/coupon.png
- /data/media/####/coupon_cur.png
- /data/media/####/cropper.css
- /data/media/####/cropper.js
- /data/media/####/dataReport.css
- /data/media/####/dataReport.html
- /data/media/####/eje3cnc
- /data/media/####/error.html
- /data/media/####/error.png
- /data/media/####/fontawesome-webfont.ttf
- /data/media/####/fwszt.css
- /data/media/####/https_app.nxb360.cn_0.localstorage-journal
- /data/media/####/iconfont.css
- /data/media/####/iconfont.ttf
- /data/media/####/icons-extra.css
- /data/media/####/io.dcloud.H540F13F9.bin
- /data/media/####/io.dcloud.H540F13F9.db
- /data/media/####/jian.png
- /data/media/####/jquery.js
- /data/media/####/jquery.min.js
- /data/media/####/manifest.json
- /data/media/####/mui-icons-extra.ttf
- /data/media/####/mui.js
- /data/media/####/mui.min.css
- /data/media/####/mui.min.js
- /data/media/####/mui.picker.css
- /data/media/####/mui.picker.min.css
- /data/media/####/mui.picker.min.js
- /data/media/####/mui.poppicker.css
- /data/media/####/mui.poppicker.js
- /data/media/####/mui.ttf
- /data/media/####/pay.png
- /data/media/####/portrait.png
- /data/media/####/pyq.png
- /data/media/####/recharge.png
- /data/media/####/refueling_card.png
- /data/media/####/rem.js
- /data/media/####/seller.png
- /data/media/####/share.png
- /data/media/####/sjtbbtn.jpg
- /data/media/####/slimg.jpg
- /data/media/####/splash640x1136.png
- /data/media/####/test.log
- /data/media/####/total.css
- /data/media/####/upbg.png
- /data/media/####/upload_headPortrait.html
- /data/media/####/upload_identity.html
- /data/media/####/upload_landImage.html
- /data/media/####/weixin.png
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- /data/media/####/zhuan.png
- <Package Folder>/files/gdaemon_20161017 0 <Package>/io.dcloud.feature.apsGt.GTNormalPushService 24465 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- mount
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/io.dcloud.feature.apsGt.GTNormalPushService 24465 300 0
- BaiduMapSDK_base_v5_2_1
- getuiext2
- libjiagu1266563747
- locSDK7b
- AES-CBC-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding