Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) nav.cn.ron####.com:80
- TCP(HTTP/1.1) 1####.198.14.27:443
- TCP(HTTP/1.1) 1####.136.248.241:443
- TCP(HTTP/1.1) 1####.75.109.31:443
- TCP(HTTP/1.1) 47.2####.48.229:443
- TCP(HTTP/1.1) 47.2####.48.230:443
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- TCP(HTTP/1.1) 54.2####.15.41:443
- TCP(HTTP/1.1) 18.1####.154.189:443
- TCP(HTTP/1.1) i.t####.com:80
- TCP(HTTP/1.1) 1####.78.94.142:443
- TCP(HTTP/1.1) 34.1####.26.203:443
- TCP(HTTP/1.1) 1####.89.75.30:443
- TCP(HTTP/1.1) 39.1####.103.199:443
- TCP(HTTP/1.1) 47.1####.0.205:443
- TCP(HTTP/1.1) 35.2####.176.194:443
- TCP(HTTP/1.1) 1####.226.106.211:443
- TCP(TLS/1.0) 54.2####.15.41:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) 39.1####.103.199:443
- TCP(TLS/1.0) 47.1####.0.205:443
- TCP(TLS/1.0) 1####.89.75.30:443
- TCP(TLS/1.0) 1####.250.27.102:443
- TCP(TLS/1.0) 47.2####.48.229:443
- TCP(TLS/1.0) 1####.198.14.27:443
- TCP(TLS/1.0) 1####.75.109.31:443
- TCP(TLS/1.0) 18.1####.154.189:443
- TCP(TLS/1.0) 35.2####.176.194:443
- TCP(TLS/1.0) to####.ctobsn####.com.####.net:443
- TCP(TLS/1.0) 1####.78.94.142:443
- TCP(TLS/1.0) 1####.226.106.211:443
- TCP(TLS/1.0) 47.2####.48.230:443
- TCP(TLS/1.0) 1####.250.102.95:443
- TCP(TLS/1.0) bgp.netarch####.l.####.net:443
- TCP(TLS/1.0) 1####.136.248.241:443
- TCP(TLS/1.0) 34.1####.26.203:443
- TCP(TLS/1.2) 1####.250.102.95:443
- TCP(TLS/1.2) 1####.250.102.94:443
- TCP 1####.50.90.174:8000
- TCP 47.2####.48.231:443
- UDP 1####.250.102.95:443
- TCP 8.1####.123.139:443
- TCP 47.2####.48.230:443
- TCP 47.2####.48.229:443
- a####.u####.com
- aa.birdg####.com
- and####.google####.com
- api####.wanzhuy####.com
- api.anythin####.com
- c####.x####.com
- da.anythin####.com
- dig.b####.net
- dm.byted####.com
- dm.ps####.com
- dm.tou####.com
- gv1.x####.com
- i.t####.com
- l####.cc
- l####.tbs.qq.com
- l####.tracki####.com
- log.tracki####.com
- log.u####.com
- m####.go####.com
- md####.google####.com
- nav.cn.ron####.com
- p####.birdg####.com
- pang####.sn####.com
- s####.cn.ron####.com
- s####.tracki####.com
- s####.u####.com
- s####.u####.com.####.8
- sf3-fe####.pglstat####.com
- sf3-ttc####.ps####.com
- to####.ctobsn####.com
- 47.2####.48.229:443/get_domains/v4/?abi=####&aid=####&device_platform=##...
- 47.2####.48.230:443/get_domains/v4/?abi=####&aid=####&device_platform=##...
- 47.2####.48.230:443/service/2/app_alert_check/?aid=####&device_id=####&t...
- i.t####.com/a/3a1001fd33ff19cda714056f7f01d1e88
- 1####.136.248.241:443/i/sdk/install
- 1####.198.14.27:443/configcloud/rest/sdk/match
- 1####.226.106.211:443/ajax?c=####&k=####
- 1####.75.109.31:443/active.json
- 1####.78.94.142:443/v1/d_api
- 1####.89.75.30:443/v1.0.0/setting/generatesign.json
- 1####.89.75.30:443/v1.0.0/setting/global.json
- 1####.89.75.30:443/v3.2.1/synthesize/retained
- 1####.89.75.30:443/v3.2.2/thing/indexactivity
- 1####.89.75.30:443/v3.2.2/thing/tabStyle.json
- 18.1####.154.189:443/v1/open/app
- 34.1####.26.203:443/receive/pkginfo
- 34.1####.26.203:443/receive/tkio/install
- 34.1####.26.203:443/receive/tkio/startup
- 35.2####.176.194:443/u/g/v1/848b02e0
- 35.2####.176.194:443/u/g/v1/d92a832a
- 39.1####.103.199:443/v1/ptk
- 47.1####.0.205:443/v1/open/da
- 47.2####.48.230:443/service/2/app_log/?device_platform=####&version_code...
- 47.2####.48.230:443/service/2/device_register_only/?aid=####&tt_info=####
- 47.2####.48.230:443/service/2/log_settings/?device_platform=####
- 54.2####.15.41:443/dpquery
- a####.u####.com.####.com/app_logs
- nav.cn.ron####.com/navipush.json
- /data/data/####/-1135038580-754662270
- /data/data/####/.cl
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1629409948589_3587
- /data/data/####/1629409951222_3587
- /data/data/####/1629409952824_3587
- /data/data/####/1629409953964_3587
- /data/data/####/1629409954737_3587
- /data/data/####/1629409955554_3587
- /data/data/####/1629409957150_3587
- /data/data/####/1629409957349_3587
- /data/data/####/1629409957564_3587
- /data/data/####/1629409957769_3587
- /data/data/####/1629409958166_3587
- /data/data/####/1629409958847_3587
- /data/data/####/1629409972149.log
- /data/data/####/Archimedes_p4
- /data/data/####/Archimedes_p5
- /data/data/####/BroadcastSharedPreferencesDemo.xml
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/FwLog.xml
- /data/data/####/FwLog.xml.bak
- /data/data/####/HappyGame.xml
- /data/data/####/HappyGame_Hall.xml
- /data/data/####/LKME_Server_Request_Queue.xml
- /data/data/####/PrefsFile.xml
- /data/data/####/PrefsFile.xml.bak
- /data/data/####/Pythagoras_phase.xml
- /data/data/####/Reyun.db
- /data/data/####/Reyun.db-journal
- /data/data/####/RongPush.xml
- /data/data/####/SharedPreferencesDemo.xml
- /data/data/####/SharedPreferencesDemo.xml.bak (deleted)
- /data/data/####/Statistics.xml
- /data/data/####/Statistics.xml.bak
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_cloudcontrol3.xml
- /data/data/####/TDpref_cloudcontrol3.xml.bak
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime3.xml
- /data/data/####/TDpref_longtime3.xml.bak
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime.xml.bak
- /data/data/####/TDpref_shorttime3.xml
- /data/data/####/Web Data
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/anythink.db-journal
- /data/data/####/anythink_agent_log
- /data/data/####/anythink_placement_strategy_update_check.xml
- /data/data/####/anythink_sdk.xml
- /data/data/####/anythink_sdk.xml.bak
- /data/data/####/anythink_temp_log
- /data/data/####/bd_embed_tea_agent.db-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/classes.dex;classes5.dex
- /data/data/####/classes.dex;classes6.dex
- /data/data/####/classes.oat
- /data/data/####/com.XiaoWanZi.Painting.common.InviteHistoryUtils.xml
- /data/data/####/com.XiaoWanZi.Painting_preferences.xml
- /data/data/####/config_wz.xml
- /data/data/####/core_info
- /data/data/####/d41d8cd98f00b204e9800998ecf8427e;account_file.xml
- /data/data/####/download_upload
- /data/data/####/downloader.db-journal
- /data/data/####/embed_applog_stats.xml
- /data/data/####/embed_applog_stats.xml (deleted)
- /data/data/####/embed_header_custom.xml
- /data/data/####/embed_last_sp_session.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/hianalytics_global_v2_com.XiaoWanZi.Painting.xml
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/linkedme_referral_shared_pref.xml
- /data/data/####/linkedme_referral_shared_pref.xml.bak
- /data/data/####/locale.config.xml
- /data/data/####/mPBE.xml
- /data/data/####/metrics_guid
- /data/data/####/netflow.xml
- /data/data/####/netflow.xml.bak
- /data/data/####/npth.xml
- /data/data/####/npth_log.db-journal
- /data/data/####/proc_auxv
- /data/data/####/self_device_id.xml
- /data/data/####/snssdk_openudid.xml
- /data/data/####/sp_push_time.xml
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbs_pv_config
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdid.xml
- /data/data/####/tracking_device_id_cache.xml
- /data/data/####/tracking_install.xml
- /data/data/####/tracking_pkgInfo.xml
- /data/data/####/tramini.db-journal
- /data/data/####/tramini.xml
- /data/data/####/tt_dns_settings.xml
- /data/data/####/tt_sdk_settings.xml
- /data/data/####/tt_sdk_settings.xml (deleted)
- /data/data/####/tt_sdk_settings.xml.bak
- /data/data/####/ttopenadsdk.xml
- /data/data/####/ttopensdk.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/webview_data.lock
- /data/data/####/wz.db-journal
- /data/media/####/4a8ef93f62dfd8a881c554957364d84c.tmp
- /data/media/####/94b3442e45e99476d46d56fa7f466d84.tmp
- /data/media/####/a2372bb9f08aa7b6721952f4ef1e631a
- /data/media/####/a2372bb9f08aa7b6721952f4ef1e631a.tmp
- /data/media/####/tbslog.txt
- /data/media/####/temp_pkg_info.json
- /data/misc/####/primary.prof
- cat /sys/class/net/wlan0/address
- chmod 777 /data/user/0/<Package>/cache/Download
- getprop
- getprop ro.build.version.emui
- getprop ro.product.cpu.abi
- mount
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- DES-CBC-PKCS5Padding
- RSA-ECB-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding