Technical information
- Adware.MyFolder.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i####.aix####.com:80
- TCP(HTTP/1.1) wb.110.ta####.com:80
- TCP(HTTP/1.1) ada####.m.ta####.com:80
- TCP(HTTP/1.1) zhg.ali####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) pin####.qq.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) pi####.qq.com:80
- TCP(HTTP/1.1) img.z####.cn:80
- TCP(HTTP/1.1) ad####.m.ta####.com:80
- TCP(HTTP/1.1) ad.yes####.com:8090
- TCP(HTTP/1.1) v####.yes####.com:8089
- TCP(HTTP/1.1) qiy####.com.edg####.net:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) buxi####.oss-cn-####.aliy####.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(TLS/1.0) nbsdk-b####.al####.com:443
- TCP(TLS/1.0) sh.wagbr####.alibaba####.com:443
- TCP(TLS/1.0) gm.mm####.com:443
- TCP(TLS/1.0) aserver####.m.ta####.com:443
- a####.u####.com
- ad####.m.ta####.com
- ad.yes####.com
- ada####.m.ta####.com
- and####.b####.qq.com
- api.y####.com
- buxi####.oss-cn-####.aliy####.com
- i####.aix####.com
- img.z####.cn
- imgc####.qq.com
- log.u####.com
- mi.g####.qq.com
- nbsdk-b####.al####.com
- p####.qiy####.com
- p####.qiy####.com
- p####.qiy####.com
- p####.qiy####.com
- pi####.qq.com
- pin####.qq.com
- s####.e.qq.com
- s####.u####.com
- up####.yes####.com
- v####.yes####.com
- wb.110.ta####.com
- wgo.mm####.com
- y####.al####.com
- ad####.m.ta####.com/rest/gc2?ak=####&av=####&c=####&d=####&sv=####&t=###...
- buxi####.oss-cn-####.aliy####.com/fd1c9d6f7b1a420d8c3186fca34d6cc1.vnd.a...
- i####.aix####.com/content/2018_05_07/1525686621.gif
- i####.aix####.com/content/2018_05_07/1525687819.gif
- i####.aix####.com/content/2018_05_07/1525692150.PNG
- i####.aix####.com/content/2018_05_07/1525692922.jpg
- i####.aix####.com/content/2018_05_07/1525697836.jpg
- i####.aix####.com/content/2018_05_07/1525704953.jpg
- img.z####.cn/community/0116dc5af01ffca801219b7fcb9216.png@1280w_1l_2o_10...
- img.z####.cn/community/0123425ac432b6a8012062e382f6ba.jpg@1280w_1l_2o_10...
- img.z####.cn/community/0126185ae9768ca801207fa12c53c0.png@1280w_1l_2o_10...
- img.z####.cn/community/013b265aec0543a801207fa1142774.png@1280w_1l_2o_10...
- img.z####.cn/community/01403e5aea68bea801207fa172b8ef.png@1280w_1l_2o_10...
- img.z####.cn/community/0141795ae2e2c8a801214a61498b59.png@1280w_1l_2o_10...
- img.z####.cn/community/014c3d57ce316c0000012e7e223b79.png
- img.z####.cn/community/0164e45af2a338a801207ab4e7b46d.png@1280w_1l_2o_10...
- img.z####.cn/community/017f2e5ad6e7d2a801213867234757.png@1280w_1l_2o_10...
- img.z####.cn/community/0183fd5af0fbaaa801206aba3a1bf0.png@1280w_1l_2o_10...
- img.z####.cn/community/018a3f5af1091da801206aba6b3995.png@1280w_1l_2o_10...
- img.z####.cn/community/019c0e5af0fe1fa801219b7f628bff.png@1280w_1l_2o_10...
- img.z####.cn/community/01bd595adfe694a801214a61ba6064.png@1280w_1l_2o_10...
- img.z####.cn/community/01da8457bff2880000018c1b37810d.png
- mi.g####.qq.com/gdt_mview.fcg?datatype=####&posid=####&count=####&r=####...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- qiy####.com.edg####.net/image/20180504/07/91/v_115927100_m_601_480_270.jpg
- qiy####.com.edg####.net/image/20180504/5d/35/v_115930071_m_601_480_270.jpg
- qiy####.com.edg####.net/image/20180505/86/54/v_115938730_m_601_480_270.jpg
- qiy####.com.edg####.net/image/20180509/86/cd/v_116009960_m_601_480_270.jpg
- a####.u####.com/app_logs
- ad.yes####.com:8090/ad/api/banner
- ad.yes####.com:8090/update/getConfig
- ada####.m.ta####.com/rest/sur?ak=####&av=####&c=####&v=####&s=####&d=###...
- and####.b####.qq.com/rqd/async
- pi####.qq.com/mstat/report/?index=####
- pin####.qq.com/request
- s####.e.qq.com/activate
- s####.e.qq.com/msg
- v####.yes####.com:8089/BuWan/api/v2/class
- v####.yes####.com:8089/BuWan/api/v2/found
- v####.yes####.com:8089/BuWan/api/v2/other
- v####.yes####.com:8089/BuWan/api/v2/recommend
- v####.yes####.com:8089/BuWan/api/v2/user
- wb.110.ta####.com/api/update.do
- zhg.ali####.com/saveWb.json
- /data/data/####/.imprint
- /data/data/####/00dab403c93227fd5f0fa053052b999665db650e5dff2ef....0.tmp
- /data/data/####/0a231bd8575dcf72.txt
- /data/data/####/0cc010d90cb13ac35c98617b1f51301782bf4bea9cf3e4e....0.tmp
- /data/data/####/0fdc44351eda84eed2929fe287575feec5f43212d5dd6d5....0.tmp
- /data/data/####/1525923572560.log
- /data/data/####/16d3e898f442c463104bff6606431bd62cb50c27cd674fe....0.tmp
- /data/data/####/1d77ea041509fe06.lock
- /data/data/####/21c22f492aba3de8.lock
- /data/data/####/254e6c2f71e1a206dc38ea36fd8d9f7a0176da63806fd2a....0.tmp
- /data/data/####/28a6c0aefc948a9f2288eba9290afddfa987fa2a80342a3....0.tmp
- /data/data/####/30fb947c7616bc7e498d3a196f2447e86058173b77118cd....0.tmp
- /data/data/####/38dbf8c3d4a0227ec5c2ef97cb1606ce17472c43c713944....0.tmp
- /data/data/####/399348154a861e485b7b6d30e95f8be1cd818c9e2965275....0.tmp
- /data/data/####/4da7e6e053321397d761a5569b9e3f693bdb062c8dc26ce....0.tmp
- /data/data/####/5e1dc850fa06a25673c9d70910b47e99d9d12071c7f89db....0.tmp
- /data/data/####/644be9df437e6a1ed6fc7db29e75c42205251a18143d454....0.tmp
- /data/data/####/6f0e6994ffcf7536ed38306d7667c06c9968e01a42de7d7....0.tmp
- /data/data/####/7a5b31952299a8555033d515a6a08c0ea473f868adc43a0....0.tmp
- /data/data/####/84eb4a682b30aa2de037046645099f9819ce6ea5e1ef355....0.tmp
- /data/data/####/870a77e8fe60580a1881a4d484354b8a47b062613d6121d....0.tmp
- /data/data/####/8ef9c457b3bbb403.lock
- /data/data/####/8f9c473cc005b30664b1d6c5727a176fc7a8010d1753121....0.tmp
- /data/data/####/930a31b34bd52c08.lock
- /data/data/####/Alvin2.xml
- /data/data/####/Beibei.db-journal
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/ContextData.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/PlayerUIApk.apk
- /data/data/####/SGMANAGER_DATA2.tmp
- /data/data/####/UTCommon.xml
- /data/data/####/a9f0f03bc47561771ae32558219e1ee691af16165ac6c34....0.tmp
- /data/data/####/aliTradeConfigSP.xml
- /data/data/####/analytics_agent_header_.xml
- /data/data/####/ap.Lock
- /data/data/####/bdd7ae0536e81c8a51fcee242f44851275f59257e0b582f....0.tmp
- /data/data/####/bugly_db_legu-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.doudou.ysvideo.mid.world.ro.xml
- /data/data/####/com.doudou.ysvideo_preferences.xml
- /data/data/####/d13a9242cb4e7f97bd0b2e842aa1265ff44b4d1cd5bbffc....0.tmp
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/device_id.xml.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f81ded7e91708d0a522c8b1be73cb4cdbad63339061da94....0.tmp
- /data/data/####/fb1344f111ee3c2c73ec718459dcebeefe7bac52d08b635....0.tmp
- /data/data/####/fbadcb82d340aa45a10385f7d5e2007abfbe177a3e70406....0.tmp
- /data/data/####/fbc4f91ac93606d2fca251f824946d9c29edce1d361e5bb....0.tmp
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/imei.xml
- /data/data/####/journal.tmp
- /data/data/####/legu_tencent_analysis.db_com.doudou.ysvideo-journal
- /data/data/####/libnfix.so
- /data/data/####/libsgmainso-5.1.81.so
- /data/data/####/libshella-2.8.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/lock.lock
- /data/data/####/mix.dex
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/onesdk_device.xml
- /data/data/####/pri_legu_tencent_analysis.db_com.doudou.ysvideo-journal
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/sp.lock
- /data/data/####/timestamp
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/umeng_socialize.xml.bak (deleted)
- /data/data/####/update_lc
- /data/data/####/user.xml
- /data/data/####/ut.db
- /data/data/####/ut.db-journal
- /data/media/####/.mid.txt
- /data/media/####/.mid.txt1000001
- /data/media/####/.nomedia
- /data/media/####/6c709c11d2d46a7b
- /data/media/####/6njfo9uo9d5hd1xa0zc3mfsg0309.0.tmp
- /data/media/####/6san5qpqm0i50llzlvc02u90e309.0.tmp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/dd7893586a493dc3
- /data/media/####/ef76uj00qt3sxxnasatmt4zd.0.tmp
- /data/media/####/hid.dat
- /data/media/####/journal
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- busybox ifconfig
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-2.8.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- MtaNativeCrash
- libnfix
- libshella-2.8
- libufix
- luajava
- nfix
- sgmainso-5.1
- ufix
- ut_c_api
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- RSA-NONE-PKCS1PADDING
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding