Техническая информация
- Android.Spy.2442
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) l####.cc:80
- TCP(HTTP/1.1) t####.qq.com:443
- TCP(HTTP/1.1) 1####.254.116.117:80
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) api.xiaoxia####.com:443
- TCP(TLS/1.0) c####.x####.com:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) hotfix####.aliy####.com:443
- TCP(TLS/1.0) 1####.217.19.206:443
- TCP t####.qq.com:8080
- TCP t####.qq.com:80
- a####.man.aliy####.com
- a####.u####.com
- amap####.cn-hang####.oss####.####.com
- and####.b####.qq.com
- api.xiaoxia####.com
- av1.x####.com
- c####.x####.com
- hotfix####.aliy####.com
- i.t####.com
- l####.cc
- pi####.qq.com
- res####.a####.com
- t####.qq.com
- l####.cc/i/sdk/is_gal?sign=####&android_id=####&retry_times=####&linkedm...
- a####.u####.com/app_logs
- and####.b####.qq.com/rqd/async?aid=####
- l####.cc/i/sdk/close
- l####.cc/i/sdk/install
- l####.cc/i/sdk/open
- sh.wagbr####.aliyun####.com/man/api?ak=####&s=####
- t####.qq.com:443/203.205.146.122:443/
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.tpns.service.xml.xml
- /data/data/####/.tpns.settings.xml.xml
- /data/data/####/.tpush_mta.xml
- /data/data/####/099e9243b173ccbb666470ab89fc55de39fdb6298f1fd68....0.tmp
- /data/data/####/1004
- /data/data/####/1553948729426_2374
- /data/data/####/1553948729497_2374
- /data/data/####/1553948729656_2374
- /data/data/####/1553948730278_2374
- /data/data/####/1553948730460_2374
- /data/data/####/1553948731933_2374
- /data/data/####/1553948733024_2374
- /data/data/####/1553948733059_2374
- /data/data/####/1553948734685_2374
- /data/data/####/1553948735304_2374
- /data/data/####/1553948742126_2374
- /data/data/####/1553948742192_2374
- /data/data/####/1553948742504_2374
- /data/data/####/1553948794377_2374
- /data/data/####/3.5.5.xml
- /data/data/####/8fb777c858aac902e506f2a737892aa2bf12d12f00fbca9....0.tmp
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/LKME_Server_Request_Queue.xml
- /data/data/####/SP_AROUTER_CACHE.xml
- /data/data/####/TDCloudSettingsConfigD6061AAE5168653277DAEB311FDCE49D.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/TalingDataConfigD6061AAE5168653277DAEB311FDCE49D.xml
- /data/data/####/aed36a2676f06c2e5db876e092ec9b958edf0b40524c6d6....0.tmp
- /data/data/####/bsd.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.basestonedata.instalment_preferences.xml
- /data/data/####/crashrecord.xml
- /data/data/####/dafile.db
- /data/data/####/dafile.db-journal
- /data/data/####/db35b2fa3f4cf0b95d8f5502d1d2e56ade966b74c68039d....0.tmp
- /data/data/####/device_id.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/jg_so_upgrade_setting.xml
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/linkedme_referral_shared_pref.xml
- /data/data/####/local_crash_lock
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/pref.xml
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/security_info
- /data/data/####/sp_sophix.xml
- /data/data/####/tdid.xml
- /data/data/####/tempfile
- /data/data/####/tpush.shareprefs.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/.lm_device_id
- /data/media/####/.lm_device_info
- /data/media/####/.mid.txt
- /data/media/####/.tcookieid
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/alsn.db
- /data/media/####/alsn.db-journal
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- <Package Folder>/lib/libxguardian.so <Package>,2100207932;<Package>,2100207932; 55388 203.205.128.130 [{"idx":0,"ts":%d,"et":2000,"si":0,"ui":"<IMEI>","ky":"Axg%lu","mid":"cfbdc9d1d6000539d7070c931cb9f28b280843a9","ev":{"ov":"18","sr":"600*752","md":"<System Property>","lg":"en","sv":"3.0","mf":"unknown","apn":"%s"}}] 0 18
- cat /sys/class/net/wlan0/address
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- sh <Package Folder>/lib/libxguardian.so <Package>,2100207932;<Package>,2100207932; 55388 203.205.128.130 [{ idx :0, ts :%d, et :2000, si :0, ui : <IMEI> , ky : Axg%lu , mid : cfbdc9d1d6000539d7070c931cb9f28b280843a9 , ev :{ ov : 18 , sr : 600*752 , md : <System Property> , lg : en , sv : 3.0 , mf : unknown , apn : %s }}] 0 18
- Bugly
- libjiagu
- tpnsSecurity
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB8-NoPadding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1PADDING
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB8-NoPadding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- DES-ECB-PKCS5Padding