Technical information
- Adware.Was.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) connect####.gst####.com:80
- TCP(HTTP/1.1) 39.1####.120.165:9127
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) ap####.uc.cn:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.0) u####.u####.com:443
- TCP(TLS/1.0) rr18---####.g####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) firebas####.google####.com:443
- TCP(TLS/1.0) rr2---s####.g####.com:443
- TCP(TLS/1.0) er####.u####.com.####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) 74.1####.131.113:443
- TCP(TLS/1.2) firebas####.google####.com:443
- TCP(TLS/1.2) 64.2####.165.99:443
- TCP(TLS/1.2) connect####.gst####.com:443
- UDP firebas####.google####.com:443
- and####.a####.go####.com
- and####.google####.com
- ap####.uc.cn
- connect####.gst####.com
- er####.u####.com
- firebas####.google####.com
- firebas####.google####.com
- googl####.g.doublec####.net
- m####.go####.com
- md####.google####.com
- p####.google####.com
- rr18---####.g####.com
- rr2---s####.g####.com
- rr9---s####.g####.com
- u####.u####.com
- www.google####.com
- ap####.uc.cn:443/collect?chk=####&vno=####&uuid=####&app=####&enc=####
- er####.u####.com.####.com:443/upload
- firebas####.google####.com:443/v1/projects/440797529708/namespaces/fireb...
- firebas####.google####.com:443/v1/projects/drinkcocktail-d0035/installat...
- u####.u####.com:443/unify_logs
- u####.u####.com:443/zcfg
- /data/data/####/.cl
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jg.ri
- /data/data/####/.jg.store.report_cf
- /data/data/####/5bc057e1f1f556f0750000cb_4.4.0_c5598d9_SM-T555_...log.gz
- /data/data/####/Cookies-journal
- /data/data/####/FirebaseAppHeartBeat.xml
- /data/data/####/FirebaseAppHeartBeat.xml.bak
- /data/data/####/PersistedInstallation.W0RFRkFVTFRd+MTo0NDA3OTc1...4.json
- /data/data/####/PersistedInstallation1095408651tmp
- /data/data/####/PersistedInstallation1964884100tmp
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/XALER0ROTALUMIS0LIATKCOC0ECIUJ0KNIRD0MOC.ctj
- /data/data/####/XALER0ROTALUMIS0LIATKCOC0ECIUJ0KNIRD0MOC.st
- /data/data/####/admob.xml
- /data/data/####/admob_user_agent.xml
- /data/data/####/bytes
- /data/data/####/cdt.wa
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.dex;classes4.dex
- /data/data/####/com.drink.juice.cocktail.simulator.relax_preferences.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml.bak
- /data/data/####/cr.wa
- /data/data/####/dfe6b2497a7513ba_0
- /data/data/####/dt.wa
- /data/data/####/e18f08bf7e49acf3_0
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f038e94cb33282ab_0
- /data/data/####/fds (deleted)
- /data/data/####/frc_1;440797529708;android;7d26f6210185ffc8_fir...gs.xml
- /data/data/####/frc_1;440797529708;android;7d26f6210185ffc8_fir...h.json
- /data/data/####/frc_1;440797529708;android;7d26f6210185ffc8_fir...ml.bak
- /data/data/####/generatefid.lock
- /data/data/####/google_app_measurement_local.db
- /data/data/####/google_app_measurement_local.db-journal
- /data/data/####/https_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/i==1.2.0&&4.4.0_1700813292500_dW5pZnlfbG9ncw==;.log
- /data/data/####/index
- /data/data/####/info.xml
- /data/data/####/libjiagu.so
- /data/data/####/metrics_guid
- /data/data/####/proc_auxv
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/t==9.2.5&&4.4.0_1700813291970_dW5pZnlfbG9ncw==;.log
- /data/data/####/temp-index
- /data/data/####/the-real-index
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/um_session_id.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_common_location.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_zcfg_flag
- /data/data/####/umeng_zero_cache.db
- /data/data/####/umeng_zero_cache.db-journal
- /data/data/####/unique
- /data/data/####/ver
- /data/data/####/z==1.2.0&&4.4.0_1700813289718_emNmZw==;.log
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- logcat -d -b events -b main -v threadtime -t 1500
- ls -l /system/bin/su
- ls /
- ls /sys/class/thermal
- sh -c type su
- libcrashsdk
- libjiagu
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS7Padding