Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) cdn-sdk####.g####.com.####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(TLS/1.0) al####.u####.com:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) safebro####.google####.com:443
- TCP(TLS/1.0) 1####.250.186.202:443
- TCP(TLS/1.0) ti####.c####.l####.####.com:443
- TCP(TLS/1.0) and####.cli####.go####.com:443
- TCP(TLS/1.2) 1####.250.75.3:443
- TCP(TLS/1.2) and####.cli####.go####.com:443
- TCP(TLS/1.2) 1####.217.16.42:443
- TCP(TLS/1.2) instant####.google####.com:443
- TCP tc-c####.jinx####.com.####.com:443
- TCP sdk.o####.t####.####.net:5224
- TCP api.yunk####.com:443
- TCP cm-10####.g####.com:5226
- TCP tj####.yaoc####.com:443
- and####.cli####.go####.com
- api.map.b####.com
- api.yunk####.com
- c-h####.g####.com
- cdn-sdk####.g####.com
- cm-10####.g####.com
- instant####.google####.com
- l####.tbs.qq.com
- qiniu-####.jinx####.com
- safebro####.google####.com
- sdk-ope####.g####.com
- sdk.c####.g####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- tc-c####.jinx####.com
- tj####.yaoc####.com
- u####.u####.com
- ykz-cdn####.jinx####.com
- cdn-sdk####.g####.com.####.com/tdata_EAx630
- cdn-sdk####.g####.com.####.com/tdata_fPG280
- cdn-sdk####.g####.com.####.com/tdata_kPg706
- d####.c####.l####.####.com/config/hzv9.conf
- sdk.o####.p####.####.com/api/addr.htm
- ti####.c####.l####.####.com:443/1642485957fabbb15197d7648e0384b4175e4a12...
- ti####.c####.l####.####.com:443/1642486205c03ad452efa2f563fff203e075ab5f...
- ti####.c####.l####.####.com:443/1642486432bc669ecedd58b1bc7b4e981140574c...
- ti####.c####.l####.####.com:443/16424866994d84b7f715af8b04254bbbcba6c153...
- ti####.c####.l####.####.com:443/1642748727bd0afcc0d41e11b6fe63d79eb3380f...
- ti####.c####.l####.####.com:443/group1/M00/11/B9/oYYBAFp4G9uAfH0oAAQVSAZ...
- ti####.c####.l####.####.com:443/ykz_activity_02e6100925d969fe827eb992862...
- ti####.c####.l####.####.com:443/ykz_activity_1617a250550be3f89970049a3d2...
- ti####.c####.l####.####.com:443/ykz_activity_1827a8dbb5c9f9c73a4c48b0969...
- ti####.c####.l####.####.com:443/ykz_activity_22336fc92a3439bb79391c048f1...
- ti####.c####.l####.####.com:443/ykz_activity_432613bc71b33e77652c795711f...
- ti####.c####.l####.####.com:443/ykz_activity_463b3bfd20abe8fd9e49e5d3bda...
- ti####.c####.l####.####.com:443/ykz_activity_7545255f1eb4f5696c16f187561...
- ti####.c####.l####.####.com:443/ykz_activity_8733f292ee693564facfcc17a1d...
- ti####.c####.l####.####.com:443/ykz_activity_90cf2f708bf5abcb322513909c0...
- ti####.c####.l####.####.com:443/ykz_activity_9cf216c2479cffe472dcef3005b...
- ti####.c####.l####.####.com:443/ykz_activity_a94cab0df31ecb359b89eebe2b9...
- ti####.c####.l####.####.com:443/ykz_activity_ae075f6f6bc7003129ec5f6be2b...
- ti####.c####.l####.####.com:443/ykz_activity_c61ddddb200b3241170452e400f...
- ti####.c####.l####.####.com:443/ykz_activity_c6224203c87bc0a28606fdf05bd...
- ti####.c####.l####.####.com:443/ykz_activity_d8321220fa7f476719f10b9e9fa...
- ti####.c####.l####.####.com:443/ykz_activity_ddd6a04defb492740f2195ce96c...
- ti####.c####.l####.####.com:443/ykz_activity_debe3d730bb9c77de1f7a98b76a...
- ti####.c####.l####.####.com:443/ykz_activity_e2a28e35e3495511cc3ed83fe02...
- ti####.c####.l####.####.com:443/ykz_activity_f15da40ade79c7273e93f87e7a7...
- al####.u####.com:443/unify_logs
- api.map.b####.com:443/sdkcs/verify
- c-h####.g####.com/api.php?format=####&t=####
- l####.tbs.qq.com/ajax?c=####&k=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####&d=####&k=####
- /data/data/####/.hptc.cache_com.ykz.pmt
- /data/data/####/.hptc_kache_com.ykz.pmt
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/35W_nmntWeOx3FUKYeRRskkZZCg.1116072347.tmp
- /data/data/####/42x30OF-tGT9PC21Cp5TLGGqmWc.cnt
- /data/data/####/4Bj3rIdbNq7aERreRxwCRG4I3nI.cnt
- /data/data/####/8qPWI_4tznqFs8z_BmX2ODNtSvw.cnt
- /data/data/####/9nXiPAnDXj4mGu_zw3u745VwBiA.cnt
- /data/data/####/AdvertisementInfo.xml
- /data/data/####/Cookies-journal
- /data/data/####/Dbtgstlbp-Av0wfnk6JQjRoDEDg.cnt
- /data/data/####/DownloadQueueMgr.xml
- /data/data/####/F9Jz_PU0BchihjvgVTo3YVcocsw.cnt
- /data/data/####/Fqt_wwM-yL2qRLdvx8FIxzURThc.cnt
- /data/data/####/HDRGetter_app.xml
- /data/data/####/JQlIAXdlRKd4Dm5QB9OKan1HfFo.cnt
- /data/data/####/KOw_QprfLQ2bbl0aSFwT1dpR4Q0.cnt
- /data/data/####/LKHivrihGMdXQaYtFUp76pzFWj0.cnt
- /data/data/####/MJdskAYzx51REnTjtRpKO_aXMA8.cnt
- /data/data/####/QsfcSkSQFieyArpCprg8DQqknfc.cnt
- /data/data/####/Regions.db
- /data/data/####/Regions.db-journal
- /data/data/####/U0vss4vpYi_sE7MM27m3CXRie2k.cnt
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/a==7.5.0&&1.6.0_1642850208065_envelope.log
- /data/data/####/advertisement_info.xml
- /data/data/####/btZgVwRiaKjoEtFUs-h0gU8E7s0.811379617.tmp
- /data/data/####/cNV4t6tqspea0B-NwUSxokt6jOQ.cnt
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/com.ykz.pmt_preferences.xml
- /data/data/####/com.ykz.pmt_preferences.xml.bak
- /data/data/####/configInfo.xml
- /data/data/####/core_info
- /data/data/####/dW1weF9pbnRlcm5hbF8xNjQyODUwMjA1OTQ0;
- /data/data/####/dso_deps
- /data/data/####/dso_lock
- /data/data/####/dso_manifest
- /data/data/####/dso_state
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/fizSG1LDrl0fsY2qQ9d1g_ZFrzY.1845043961.tmp
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/gx_sp.xml
- /data/data/####/hAkhi_33KSr2R8ZDx7XaJ4TXNDk.cnt
- /data/data/####/i==1.2.0&&1.6.0_1642850205752_envelope.log
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/jQQGDK4jeh55am97taoum9LTCvE.cnt
- /data/data/####/jmFmgKTIx9obeXRSMEK56v_NqEQ.cnt
- /data/data/####/libBaiduMapSDK_base_v5_2_1.so
- /data/data/####/libBaiduMapSDK_map_v5_2_1.so
- /data/data/####/libcuid.so
- /data/data/####/libentryexpro.so
- /data/data/####/libjiagu.so
- /data/data/####/liblbs.so
- /data/data/####/libuptsmaddon.so
- /data/data/####/libuptsmaddonmi.so
- /data/data/####/mac.xml
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qjSWVo5jERunDAQrYXN7WiZ6juI.cnt
- /data/data/####/run.pid
- /data/data/####/sZQ9d7Ia3setU8GGLa6Ny81B4hg.1978537028.tmp
- /data/data/####/sZQ9d7Ia3setU8GGLa6Ny81B4hg.cnt
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdata_EAx630
- /data/data/####/tdata_EAx630.dex
- /data/data/####/tdata_EAx630.dex.flock (deleted)
- /data/data/####/tdata_EAx630.jar
- /data/data/####/tdata_fPG280
- /data/data/####/tdata_fPG280.dex
- /data/data/####/tdata_fPG280.dex.flock (deleted)
- /data/data/####/tdata_fPG280.jar
- /data/data/####/tdata_kPg706
- /data/data/####/tdata_kPg706.dex
- /data/data/####/tdata_kPg706.dex.flock (deleted)
- /data/data/####/tdata_kPg706.jar
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/vr-ye_NifX-NUBJlHGY4lnRqnoY.cnt
- /data/data/####/vvD7GBTXVgKYL0rgxrRfsh9ID8E.cnt
- /data/data/####/wSexRpXXQMk53HndJtshR5XqmGI.cnt
- /data/data/####/yunkezan
- /data/data/####/yunkezan-journal
- /data/media/####/.DEVICES
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.umm.dat
- /data/media/####/5ccc32dd758841bee3364654eb7dee25.0
- /data/media/####/PIC64756c0f094e4c83e94290f97249922f7fd9b2c6.tmp
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.ykz.pmt.bin
- /data/media/####/com.ykz.pmt.db
- /data/media/####/gkt
- /data/media/####/gkt-journal
- /data/media/####/gktper (deleted)
- /data/media/####/journal
- /data/media/####/tdata_EAx630
- /data/media/####/tdata_fPG280
- /data/media/####/tdata_kPg706
- /data/media/####/test.log
- /data/misc/####/primary.prof
- /system/bin/cat /proc/cpuinfo
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- ls /
- ls /sys/class/thermal
- mount
- sh
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CFB-NoPadding
- AES-ECB-PKCS5Padding
- DES-CBC-PKCS5Padding
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- desede-CBC-PKCS5Padding