Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) j####.ixi####.com:80
- TCP(HTTP/1.1) si####.ixi####.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(HTTP/1.1) n####.huaina####.com:80
- TCP(HTTP/1.1) 1####.75.118.58:443
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) 1####.75.66.114:443
- TCP(HTTP/1.1) 1####.171.131.129:443
- TCP(TLS/1.0) 1####.75.66.114:443
- TCP(TLS/1.0) 1####.171.131.129:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) 1####.251.36.10:443
- TCP(TLS/1.0) t.growi####.com:443
- TCP(TLS/1.0) 1####.75.118.58:443
- TCP(TLS/1.2) 1####.250.179.195:443
- TCP(TLS/1.2) 2####.58.214.14:443
- TCP(TLS/1.2) 1####.251.36.42:443
- TCP(TLS/1.2) 1####.251.36.46:443
- TCP 47.2####.48.181:443
- TCP sdk.o####.t####.####.net:5224
- UDP 1####.217.17.74:443
- and####.b####.qq.com
- api.growi####.com
- cdn####.appa####.com
- cdn####.appa####.com.####.8
- cm-1####.g####.com
- cm-1####.g####.com
- experi####.appa####.com
- j####.ixi####.com
- md####.google####.com
- morgoth####.ixi####.com
- n####.huaina####.com
- s####.magicwi####.cn
- sdk.c####.g####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- si####.ixi####.com
- t.growi####.com
- 1####.75.118.58:443/app/912ded755d706e14/android/devices?u=####&dm=####&...
- d####.c####.l####.####.com/config/hzv9.conf
- j####.ixi####.com/abtest/get_config?project_name=####&phone_sn=####&devi...
- j####.ixi####.com/abtest/get_config?project_name=####&phone_sn=####&vers...
- j####.ixi####.com/config/load?version=####&project_name=####&front_type=...
- n####.huaina####.com/promotion_task/info?device_id=####&activate=####&ph...
- n####.huaina####.com/report/get_bad_words?phone_sn=####&device_id=####&v...
- n####.huaina####.com/report/get_bad_words?phone_sn=####&version=####&app...
- n####.huaina####.com/serverInfo/info_server?phone_sn=####&device_id=####...
- n####.huaina####.com/serverInfo/info_server?phone_sn=####&version=####&a...
- si####.ixi####.com/chosen/tab_info?first_startup_index=####&phone_sn=###...
- 1####.171.131.129:443/custom/912ded755d706e14/android/events?stm=####
- 1####.171.131.129:443/v2/912ded755d706e14/android/action?stm=####
- 1####.171.131.129:443/v2/912ded755d706e14/android/pv?stm=####
- 1####.75.66.114:443/get_flags_async
- and####.b####.qq.com/rqd/async?aid=####
- /data/data/####/.jg.ic
- /data/data/####/1004
- /data/data/####/7bab8c20e0e9d9a9fdc3cdc6e2ed2fa0
- /data/data/####/ADHOC_SHARED_PREFERENCE.xml
- /data/data/####/ADHOC_SHARED_PREFERENCE.xml.bak
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/QALConfigStore.dat
- /data/data/####/TLS_DEVICE_INFO.xml
- /data/data/####/TLS_DEVICE_INFO.xml.bak
- /data/data/####/WLOGIN_DEVICE_INFO.xml
- /data/data/####/Web Data
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/bugly_db_
- /data/data/####/bugly_db_-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/com.mei.wood;pushservice.growing.db
- /data/data/####/com.mei.wood;pushservice.growing.db-journal
- /data/data/####/com.mei.wood_preferences.xml
- /data/data/####/configLoad_new
- /data/data/####/crashrecord.xml
- /data/data/####/getui_sp.xml
- /data/data/####/growing.db
- /data/data/####/growing.db-journal
- /data/data/####/growing_ecsid.xml
- /data/data/####/growing_persist_data.xml
- /data/data/####/growing_profile.xml
- /data/data/####/growingio_diagnose.xml
- /data/data/####/growingio_diagnose.xml.bak
- /data/data/####/home_tab_new_info
- /data/data/####/increment_cache_file
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/local_crash_lock
- /data/data/####/local_crash_lock (deleted)
- /data/data/####/metrics_guid
- /data/data/####/mwsdk_analytics.db
- /data/data/####/mwsdk_analytics.db-journal
- /data/data/####/persistent_data.xml
- /data/data/####/persistent_data.xml.bak
- /data/data/####/pili_qos_index.json
- /data/data/####/pili_qos_log.0
- /data/data/####/preferences.xml
- /data/data/####/preferences.xml.bak
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qalimid_v2
- /data/data/####/qos.xml
- /data/data/####/report_v5.msgstore
- /data/data/####/report_v5.msgstore-journal (deleted)
- /data/data/####/report_v5.msgstore-shm
- /data/data/####/report_v5.msgstore-wal
- /data/data/####/run.pid
- /data/data/####/security_info
- /data/data/####/the-real-index
- /data/data/####/tls_device.dat
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/wlogin_device.dat
- /data/media/####/60f6e0c0c0df5c3d9fcdc31aba937f7f015974605d8b32....0.tmp
- /data/media/####/7c22c7137fac8b82ff4effb149a14dcc916d398dee4f81....0.tmp
- /data/media/####/8bfa0856d771245ec88ecabd31efad61a3bd11afd05ca7...128a.0
- /data/media/####/ADHOC_CLIENT_APP
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/app.21.08.07.08.log
- /data/media/####/c4d0c1f870ad468eb900cd297953491e47b2c894c95c97....0.tmp
- /data/media/####/com.mei.wood.bin
- /data/media/####/f64a9b134033a366a153f8af8fed5150.0
- /data/media/####/imsdk_20210807.log
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/sdk.21.08.07.08.log
- /data/misc/####/primary.prof
- /system/bin/sh -c type su
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding