Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) www.ds####.com:15780
- TCP(HTTP/1.1) and####.b####.qq.com:80
- UDP(NTP) 1.cn.p####.####.org:123
- UDP(NTP) 0.a####.p####.####.org:123
- TCP(TLS/1.0) app.x####.com:443
- TCP(TLS/1.0) jic.talking####.com:443
- TCP(TLS/1.0) api####.zhu####.com:443
- TCP(TLS/1.0) s####.j####.cn:443
- UDP s.j####.cn:19000
- TCP 1####.202.138.20:7006
- 0.a####.p####.####.org
- 1.cn.p####.####.org
- and####.b####.qq.com
- api####.zhu####.com
- app.x####.com
- i####.cn
- jic.talking####.com
- mt####.go####.com
- s####.j####.cn
- s.j####.cn
- up####.sdk.jig####.cn
- www.ds####.com
- www.ds####.com:15780/back/api.php?app_id=####
- and####.b####.qq.com/rqd/async
- /data/data/####/.jg.ic
- /data/data/####/JPushSA_Config.xml
- /data/data/####/TDCloudSettingsConfig69932DB5790CF526F3348A72074E86C8.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/appPackageNames_v2
- /data/data/####/bugly_db_-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.ewkmjewewae.mark.xml
- /data/data/####/com.ewkmjewewae.mark_preferences.xml
- /data/data/####/core_info
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_local_notification.db-wal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/libjiagu1968271640.so
- /data/data/####/local_crash_lock
- /data/data/####/native_record_lock
- /data/data/####/security_info
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/tdlock.txt
- /data/data/####/umeng_general_config.xml
- /data/data/####/wakeup_cache.json
- /data/data/####/webview.db-journal
- /data/data/####/zhuge
- /data/data/####/zhuge-journal
- /data/media/####/.push_deviceid
- /data/media/####/.tcookieid
- /system/bin/sh -c getprop androVM.vbox_dpi
- /system/bin/sh -c getprop gsm.sim.state
- /system/bin/sh -c getprop gsm.sim.state2
- /system/bin/sh -c getprop qemu.sf.fake_camera
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.debuggable
- /system/bin/sh -c getprop ro.genymotion.version
- /system/bin/sh -c getprop ro.secure
- /system/bin/sh -c type su
- getprop androVM.vbox_dpi
- getprop gsm.sim.state
- getprop gsm.sim.state2
- getprop qemu.sf.fake_camera
- getprop ro.debuggable
- getprop ro.secure
- Bugly
- jcore119
- libjiagu1968271640
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-ECB-NoPadding
- AES-GCM-NoPadding