Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) 1####.144.131.205:8089
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) 04img####.eas####.com.####.com:80
- TCP(HTTP/1.1) 1####.144.131.205:80
- TCP(HTTP/1.1) 1####.62.65.240:8090
- TCP(TLS/1.0) gtrad####.com:443
- TCP(TLS/1.0) www.p####.com:443
- TCP(TLS/1.0) p####.126.net:443
- 01img####.eas####.com
- 02img####.eas####.com
- 03img####.eas####.com
- 04img####.eas####.com
- 06img####.eas####.com
- a####.u####.com
- aexcep####.b####.qq.com
- and####.b####.qq.com
- gtrad####.com
- p####.126.net
- www.p####.com
- 04img####.eas####.com.####.com/mobile/20181208/20181208150755_d41d8cd98f...
- 04img####.eas####.com.####.com/mobile/20181208/20181208150758_d41d8cd98f...
- 04img####.eas####.com.####.com/mobile/20181208/20181208150842_b8a4a2019a...
- 04img####.eas####.com.####.com/mobile/20181208/20181208151003_c86b2ae42f...
- 04img####.eas####.com.####.com/mobile/20181208/20181208151026_aa3b77cf9a...
- 04img####.eas####.com.####.com/mobile/20181208/20181208151107_d41d8cd98f...
- 04img####.eas####.com.####.com/mobile/20181208/20181208151455_dcef92cf65...
- 04img####.eas####.com.####.com/mobile/20181208/20181208_c088a3fe12ea7563...
- 04img####.eas####.com.####.com/mobile/20181208/20181208_e5ce6751f99a8835...
- a####.u####.com/app_logs
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- /data/data/####/.imprint
- /data/data/####/027c8b99566017415ebe2ba0b71e9a00dfd4d6bd612acaf....0.tmp
- /data/data/####/143fbb66860696faccc850f63166b4fd0ea1922643a3b72....0.tmp
- /data/data/####/251558c4e1cad71f4f37a79bb44fbc4a97c5eac2e7c60af....0.tmp
- /data/data/####/52505fb690b1c720f27b98c463b589eafc667eab3d8d2af....0.tmp
- /data/data/####/541b4fa44d50a2f22bb42244dd6870f9ea8763def592296....0.tmp
- /data/data/####/6abd54f9794eeb6df2acba2af9070e998851256d8528933....0.tmp
- /data/data/####/6ff284e3fb5a9f6a9b8a92b96da5b500a4d9458e0221e5a....0.tmp
- /data/data/####/80e8f71f2fd5dc92c13cd5ecdfb68aa08ad51f4b891c8dd....0.tmp
- /data/data/####/95a645202fe20ccec05ef0bfb081775e2edb028d545e57b....0.tmp
- /data/data/####/AntSPUtil.xml
- /data/data/####/MultiDex.lock
- /data/data/####/a4c4cac44c40b4619174c5dc511b66b39f801207095777e....0.tmp
- /data/data/####/b2bcfc1caf3b27fb7bcc31d68871bf8dae4727f071e7fe7....0.tmp
- /data/data/####/bugly_db_legu-journal
- /data/data/####/c6378f62c7d3df5f2c0d85bde3bd4c44fe49ae9637fee43....0.tmp
- /data/data/####/cacf744ef7d42fe3393ac07d771af39071ac667b62a0d4e....0.tmp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/e1fac4403f70680bd5a9b304453a9608a3ddd52c05ad7e8....0.tmp
- /data/data/####/ef0d2f31cfa7a6dfb47344dc7c44a26251c11f31e10d139....0.tmp
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f1497b662adc6865da22883cf246d5dfc8f750642ea518f....0.tmp
- /data/data/####/f8211157253b86df552a82f46b38002a66e7471ea9ce944....0.tmp
- /data/data/####/journal.tmp
- /data/data/####/libnfix.so
- /data/data/####/libshella-2.9.0.2.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/mix.dex
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/pgyersdk.xml
- /data/data/####/security_info
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-2.9.0.2.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- libnfix
- libshella-2.9.0.2
- libufix
- nfix
- ufix
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-ISO10126Padding
- AES-CBC-PKCS7Padding
- AES-GCM-NoPadding