Technical information
- Adware.Panda.2.origin
- Adware.Panda.3.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) www.6####.cn:8080
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) i####.6####.cn:8080
- TCP(TLS/1.0) 64.2####.163.139:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) 1####.250.179.138:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) i####.6####.cn:443
- TCP(TLS/1.2) 64.2####.163.139:443
- TCP(TLS/1.2) 1####.250.179.138:443
- TCP(TLS/1.2) 64.2####.164.94:443
- TCP(TLS/1.2) 64.2####.165.95:443
- TCP zb-cent####.m.ta####.com:80
- TCP 1####.205.160.76:443
- a####.91.com
- a####.m.ta####.com
- a####.u####.com
- a.appj####.com
- and####.b####.qq.com
- android####.go####.com
- api.s####.mob.com
- i####.6####.cn
- instant####.google####.com
- md####.google####.com
- msg.umengc####.com
- p####.google####.com
- umengj####.m.ta####.com
- www.6####.cn
- a.appj####.com/ad-service/ad/mark
- and####.b####.qq.com/rqd/async?aid=####
- i####.6####.cn:8080/bqms/api/v2/getCountType
- www.6####.cn:8080/bqms/api/v2/carousel
- www.6####.cn:8080/bqms/api/v2/face/new
- www.6####.cn:8080/bqms/api/v2/face/original
- www.6####.cn:8080/bqms/api/v2/getCountType
- www.6####.cn:8080/bqms/api/v2/getFacexbTop
- www.6####.cn:8080/bqms/api/v2/getInterest
- www.6####.cn:8080/bqms/api/v2/getInterestFace
- /data/data/####/.al
- /data/data/####/.dhlock
- /data/data/####/.dic_lock
- /data/data/####/.globalLock
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/.mrecord
- /data/data/####/.mrecord (deleted)
- /data/data/####/.mrlock
- /data/data/####/.nulal
- /data/data/####/.nulplt
- /data/data/####/.pkg_lock
- /data/data/####/.rcTag
- /data/data/####/.rc_lock
- /data/data/####/.statistics
- /data/data/####/078588972ce56a839366b708f341c8aeda05181dddb33f3....0.tmp
- /data/data/####/0834e070466606ed2e52143da0c3a384bf4124779035df1....0.tmp
- /data/data/####/0f25ae13efa29768ac2d54ee6b38bbbc027fed3965210a2....0.tmp
- /data/data/####/1004
- /data/data/####/2017089a938f9dd564a6c8ebc79ea0c894f02a0fb44f5f2....0.tmp
- /data/data/####/2179c5e77365798d010595a8639f121b33f6d6b18914e97...90b4.0
- /data/data/####/2c70fd419b06e70f869575ec562b2b0cf011403d612f017....0.tmp
- /data/data/####/33c199b5397a236fb4aa1944bb89f2f91593209ff87d34b....0.tmp
- /data/data/####/3e992e5aab1b6a2668e2d7351fdbe9dcf42b371115ea435....0.tmp
- /data/data/####/42ccc6c0dee0870f136f98749b50bf12d039bef48657d2f....0.tmp
- /data/data/####/43e952c34a25282426d8e9264c1debba591a28c8e2b6d64....0.tmp
- /data/data/####/45b8caab56188e0e8403c5f6248c225edc79835fa46f42f....0.tmp
- /data/data/####/4a731a5ab8d26d7453fb68a64b111d5f1ea555291b53a17....0.tmp
- /data/data/####/551b9a64d83194aa15f42e2e9724e4c873a36ade2f47c36....0.tmp
- /data/data/####/5e00433181cab38286b2fb9e9a2b32febb76006d4fd37ca....0.tmp
- /data/data/####/60f1d3043a6ec71611e060bda4399013448aed0b035d862...98e3.0
- /data/data/####/6cc17b7fa5c997e37c8ae105ce3fc14e9bc82d7e4c6dab5....0.tmp
- /data/data/####/6fa75ee1da6b72475748cd9fc62f6be64596f05901e13fa....0.tmp
- /data/data/####/7be1df9e0ba4a0cf80ee39af072bbb111ae59741b96a0a4....0.tmp
- /data/data/####/7e36513736b2a8fcfda6e16750611d77ca697dc470413af....0.tmp
- /data/data/####/82ab6bc1656d18d2bf2a15ce7957c73e8a806aa23f0ab09....0.tmp
- /data/data/####/82d44d1f43a91f752fb9dc76735d1ebcb5ca6a6f5bd71e8....0.tmp
- /data/data/####/8c3ef7c2f034598044524c43d7fb6c1cbd7709d51928c19...cee0.0
- /data/data/####/9e60d6946a971ddee12af5f9b250bd038f921249d71c92e....0.tmp
- /data/data/####/9fb37fa7ca0a413a62cecb02e71d4a988344ee1c5d74052....0.tmp
- /data/data/####/ACCS_BIND.xml
- /data/data/####/ACCS_SDK.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml
- /data/data/####/ACCS_SDK_CHANNEL.xml.bak
- /data/data/####/Agoo_AppStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/Cookies
- /data/data/####/Cookies-journal
- /data/data/####/GAME87873.db
- /data/data/####/GAME87873.db-journal
- /data/data/####/MessageStore.db
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/ThrowalbeLog.db
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/accs.db
- /data/data/####/accs.db-journal
- /data/data/####/adce873f1984c288a50938b1597a2a4160db37a7659fb55....0.tmp
- /data/data/####/ae7db40656f27e30cb0622cb83cd04ca61eb2fe5e9b3f1c....0.tmp
- /data/data/####/af2dad32694c14b8dbcd3420f97fb3077cf0492423505b8....0.tmp
- /data/data/####/agoo.pid
- /data/data/####/app_storage.xml
- /data/data/####/b9ca811d37188b286b05afb6c54d019a9f0da1fce2794d5....0.tmp
- /data/data/####/ba1dde03e3d08e44e995c91a2b27d17c173b64388de138e....0.tmp
- /data/data/####/bc143a1d8d62f9cc621b6214c073f146bd5dae51f28258f....0.tmp
- /data/data/####/bcea9fb5b89dc6d4438d19d89ff94ae449d3cdce84005fb....0.tmp
- /data/data/####/bd419f76a75bb61bcca6e9064ec88b7659337b8d939a805....0.tmp
- /data/data/####/bdp_pref.xml
- /data/data/####/bugly_db_
- /data/data/####/bugly_db_-journal
- /data/data/####/c50ff58e8520ce73c520b35b56922bbf2ae62d220536b55....0.tmp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/ccfe403d837ca38a09343ba491dcd5b8735912852ca9ff7....0.tmp
- /data/data/####/classes.dex
- /data/data/####/classes.odex
- /data/data/####/classes.odex.flock (deleted)
- /data/data/####/classes2.dex
- /data/data/####/crashrecord.xml
- /data/data/####/d14e4a8d6a900b0119bfce22bfcf51dbd38620d142195e4....0.tmp
- /data/data/####/d28cfb2070846a269977f97141b358eff42c92a29890e6c....0.tmp
- /data/data/####/d52fe296be5cb46bd81c83088ec80614cfa620d096818a4...4497.0
- /data/data/####/e5976c1ba199a6b5a06d5ec4531b394bcb4d8c0a8f44086....0.tmp
- /data/data/####/ed80b1bd3b15fcc652a50ae7e853b0fccbe34be25e3aeea....0.tmp
- /data/data/####/eea80fd7b6eda8cfc0d715bb660a67f79367fc2261a9dc3....0.tmp
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f9ecd45c388e772a3783e6865c61524af59769d32a404c3....0.tmp
- /data/data/####/faf912bb33d77400e496c64be6a19028b9fffee5382928f....0.tmp
- /data/data/####/ff4dca4467a796422af854a5791b7f6dfabb1cbd38fb0fa....0.tmp
- /data/data/####/inapp_20210423.log
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/libtnet-3.1.7bk1.so
- /data/data/####/local_crash_lock
- /data/data/####/local_crash_lock (deleted)
- /data/data/####/message_accs_db
- /data/data/####/message_accs_db-journal
- /data/data/####/mob_commons_1.xml
- /data/data/####/plugin.apk
- /data/data/####/proc_auxv
- /data/data/####/profile
- /data/data/####/security_info
- /data/data/####/share_sdk_1.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=<Package Folder>/files/plugin.apk --oat-fd=82 --oat-location=/data/user/0/<Package>/files/classes.odex --compiler-filter=speed
- /system/bin/sh -c type su
- cat /sys/class/net/wlan0/address
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu.so
- getprop
- sh
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DESede-CBC-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding