Техническая информация
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) qin####.com.www.####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) et2-na6####.wagbr####.ali####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) pi####.qq.com:80
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) andro####.yanqing####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5225
- 7j####.c####.z0.####.com
- andro####.yanqing####.com
- c####.g####.ig####.com
- c-h####.g####.com
- log.u####.com
- pi####.qq.com
- plb####.u####.com
- pub-####.qin####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- u####.u####.com
- et2-na6####.wagbr####.ali####.####.com/bar/get/5746d6a667e58e1914000b14/...
- qin####.com.www.####.com/tdata_EDT369
- t####.c####.q####.####.com/tdata_JNg986
- t####.c####.q####.####.com/tdata_MkX219
- t####.c####.q####.####.com/tdata_iRz660
- t####.c####.q####.####.com/tdata_zzW503
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- c-h####.g####.com/api.php?format=####&t=####
- pi####.qq.com/mstat/report/?index=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####&d=####&k=####
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/ReadSetting.xml
- /data/data/####/com.yanqingkong.m.mid.world.ro.xml
- /data/data/####/com.yanqingkong.m_preferences.xml
- /data/data/####/core_info
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTE4Njk5;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTEyNDQx;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTI0NzM5;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTI5OTk3;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTM1Nzcw;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTQ4MTEz;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTQyMjMw;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTU0NDk3;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTY1NTYw;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTYwNDE5;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTc3NTk0;
- /data/data/####/dW1weF9pbnRlcm5hbF8xNTUyNTkwNTcxNTgy;
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/fistInstall.xml
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/gx_sp.xml
- /data/data/####/hong.db-journal
- /data/data/####/hsfirstopen.xml
- /data/data/####/i==1.2.0&&3.5.0_1552590512506_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590518791_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590524758_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590535957_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590542278_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590548209_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590554760_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590560606_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590565611_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590571631_envelope.log
- /data/data/####/i==1.2.0&&3.5.0_1552590577742_envelope.log
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libjiagu1631306394.so
- /data/data/####/multidex.version.xml
- /data/data/####/pri_tencent_analysis.db_com.yanqingkong.m-journal
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushk.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/run.pid
- /data/data/####/sex_flag_name.xml
- /data/data/####/tdata_JNg986
- /data/data/####/tdata_JNg986.jar
- /data/data/####/tdata_MkX219
- /data/data/####/tdata_MkX219.jar
- /data/data/####/tdata_iRz660
- /data/data/####/tdata_iRz660.jar
- /data/data/####/tdata_zzW503
- /data/data/####/tdata_zzW503.jar
- /data/data/####/tencent_analysis.db_com.yanqingkong.m-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.nomedia
- /data/media/####/.umm.dat
- /data/media/####/1090005.sht
- /data/media/####/1090006.sht
- /data/media/####/1134735.sht
- /data/media/####/1134736.sht
- /data/media/####/1329917.sht
- /data/media/####/1329918.sht
- /data/media/####/1334074.sht
- /data/media/####/1335659.sht
- /data/media/####/1412108.sht
- /data/media/####/1412109.sht
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.yanqingkong.m.bin
- /data/media/####/com.yanqingkong.m.db
- /data/media/####/crash-2019-03-14-19-08-33-1552590513359.log
- /data/media/####/crash-2019-03-14-19-08-38-1552590518526.log
- /data/media/####/crash-2019-03-14-19-08-44-1552590524623.log
- /data/media/####/crash-2019-03-14-19-08-50-1552590530012.log
- /data/media/####/crash-2019-03-14-19-08-55-1552590535745.log
- /data/media/####/crash-2019-03-14-19-09-02-1552590542073.log
- /data/media/####/crash-2019-03-14-19-09-08-1552590548078.log
- /data/media/####/crash-2019-03-14-19-09-14-1552590554417.log
- /data/media/####/crash-2019-03-14-19-09-20-1552590560337.log
- /data/media/####/crash-2019-03-14-19-09-25-1552590565662.log
- /data/media/####/crash-2019-03-14-19-09-31-1552590571591.log
- /data/media/####/crash-2019-03-14-19-09-37-1552590577540.log
- /data/media/####/gkt-journal
- /data/media/####/gktper
- /data/media/####/store_category_grilzh_TW
- /data/media/####/sysid.dat
- /data/media/####/tbslog.txt
- /data/media/####/tdata_JNg986
- /data/media/####/tdata_MkX219
- /data/media/####/tdata_iRz660
- /data/media/####/tdata_zzW503
- /data/media/####/test.log
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.miqingshucheng.PushService 24710 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- ls /sys/class/thermal
- mount
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/com.miqingshucheng.PushService 24710 300 0
- getuiext2
- libjiagu1631306394
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding