Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- TCP(HTTP/1.1) www.qchann####.cn:80
- TCP(HTTP/1.1) a.s.lm####.com:80
- TCP(HTTP/1.1) 7611####.xima####.com.####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(TLS/1.0) 1####.250.150.95:443
- TCP(TLS/1.2) 74.1####.131.94:443
- TCP(TLS/1.2) 1####.251.1.95:443
- TCP(TLS/1.2) 2####.85.233.101:443
- TCP(TLS/1.2) 74.1####.205.95:443
- TCP(TLS/1.2) 1####.250.150.95:443
- UDP 64.2####.162.95:443
- UDP 1####.250.150.95:443
- a####.man.aliy####.com
- a####.u####.com
- a.appj####.com
- api.xima####.com
- c.appj####.com
- m####.go####.com
- o####.lm####.com
- s####.lm####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- www.qchann####.cn
- a.s.lm####.com/ad-lmb/adshow?v=####&mvc=####&pid=####&os_ver=####&jingdu...
- a.s.lm####.com/live-index/liveoperation?v=####&mvc=####&vendor=####&osve...
- a.s.lm####.com/tool-aboutlmbang/default?v=####&mvc=####&vendor=####&osve...
- a.s.lm####.com/tool-cnf/app?v=####&mvc=####&vendor=####&osver=####&clien...
- a.s.lm####.com/tool-monitor/check?mvc=####&check_flag=####&fs=####
- a.s.lm####.com/topic/info/index?check_flag=####
- a.s.lm####.com/user-login/index?mvc=####&check_flag=####
- a.s.lm####.com/user/checkin/ischeckin?check_flag=####
- 7611####.xima####.com.####.com/oauth2/secure_access_token
- a####.u####.com.####.com/app_logs
- a.appj####.com/jiagu/check/upgrade
- c.appj####.com/ad/splash/stats.html
- www.qchann####.cn/center/adj
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/QT.xml
- /data/data/####/Qcache1628428499
- /data/data/####/Qcache1628428507
- /data/data/####/ad_show_time.xml
- /data/data/####/arch.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.oat
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/classes4.dex
- /data/data/####/classes5.dex
- /data/data/####/com.wangzhi.MaMaHelp_preferences.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/getui_sp.xml
- /data/data/####/hook_data_preference.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/mamahelp.db
- /data/data/####/mamahelp.db-journal
- /data/data/####/mamahelpdatacollect.db
- /data/data/####/mamahelpdatacollect.db-journal
- /data/data/####/pili_qos_index.json
- /data/data/####/pili_qos_log.0
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qos.xml
- /data/data/####/qtsession.xml
- /data/data/####/run.pid
- /data/data/####/ting_data.xml
- /data/data/####/ting_data.xml.bak
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/xmplayer_config.xml
- /data/data/####/xmplayer_config.xml.bak
- /data/media/####/.nomedia
- /data/media/####/007b843cf53af32f4c5a7e995776fa8b
- /data/media/####/213aec8994865b6d07ff0efd6f2d0b19
- /data/media/####/515c5eaae1596ba1d7c7c7da3142a730
- /data/media/####/881930b9f522b7b41ee4d8a249368816
- /data/media/####/AN.csv-20210808161513
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/TruthInfo.csv-1628428514369
- /data/media/####/UA.csv-20210808161514
- /data/media/####/apion.csv-20210808161610
- /data/media/####/com.tencent.mobileqq_connectSdk.21.08.08.16.log
- /data/media/####/com.wangzhi.MaMaHelp.bin
- /data/media/####/d37f8c0e828efe44ac255f803fdfafdd
- /data/media/####/f7dcad9a83f4664bc75cafce18327242
- /data/media/####/infor.log
- /data/media/####/nim_sdk.log
- /data/media/####/qt.csv.1628428500207.txt
- /data/media/####/uuid
- /data/misc/####/primary.prof
- cat /proc/cpuinfo
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu.so
- ps
- ps -P
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES-CBC-PKCS5Padding
- RSA
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES-CBC-PKCS5Padding