Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 1####.114.114.114:53
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 2####.130.54.229:80
- TCP(HTTP/1.1) m####.chinane####.com:80
- TCP(HTTP/1.1) 1####.131.87.16:80
- TCP(HTTP/1.1) 1####.232.29.248:80
- TCP(HTTP/1.1) 2####.243.212.25:80
- TCP(HTTP/1.1) 1####.131.87.17:80
- TCP(HTTP/1.1) 1####.231.99.203:80
- TCP(HTTP/1.1) 1####.160.146.169:80
- TCP(HTTP/1.1) 4####.93.83.165:80
- TCP(TLS/1.0) 1####.75.75.84:443
- TCP(TLS/1.0) 1####.11.248.2:443
- TCP(TLS/1.0) 1####.75.76.62:443
- TCP(TLS/1.0) 1####.11.172.28:443
- TCP(TLS/1.0) 2####.205.158.55:443
- TCP(TLS/1.0) 1####.185.170.65:443
- TCP(TLS/1.0) 1####.98.220.22:443
- TCP(TLS/1.0) 1####.11.172.41:443
- TCP(TLS/1.0) s####.j####.cn:443
- TCP(TLS/1.0) 1####.235.46.191:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5226
- TCP 1####.185.170.65:6666
- TCP maa####.chinane####.com:6666
- TCP 1####.202.151.8:7000
- UDP s.j####.cn:19000
- c####.g####.ig####.com
- i####.mystee####.com
- m####.chinane####.com
- maa####.chinane####.com
- mfs.mystee####.com
- mystee####.steelp####.com
- s####.j####.cn
- s.j####.cn
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- sis.j####.io
- m####.chinane####.com/file
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/081f5b0f4cf7d68a78dc1d05635a4a5b.0.tmp
- /data/data/####/081f5b0f4cf7d68a78dc1d05635a4a5b.1.tmp
- /data/data/####/187c738def5e13c778d88847aef55771.0.tmp
- /data/data/####/187c738def5e13c778d88847aef55771.1.tmp
- /data/data/####/22107fe06064b639d06b27c9943956b9.0.tmp
- /data/data/####/22107fe06064b639d06b27c9943956b9.1.tmp
- /data/data/####/283fd2c7060ded79138c8827f5a57e26.0.tmp
- /data/data/####/283fd2c7060ded79138c8827f5a57e26.1.tmp
- /data/data/####/294fbe0f2e9f54a93d05efcfa358c50c.0.tmp
- /data/data/####/294fbe0f2e9f54a93d05efcfa358c50c.1.tmp
- /data/data/####/3018adc2-7091-463f-9baf-b442c0d0b4af
- /data/data/####/37d4f830de546de63fdc730c9fb0ba23.0.tmp
- /data/data/####/37d4f830de546de63fdc730c9fb0ba23.1.tmp
- /data/data/####/3a0b8d3513d4470e5b9aed6146e3cdf72459d9b12f795fc....0.tmp
- /data/data/####/3e0ea6cad72092d5a32d7fc3eb8c647c.0.tmp
- /data/data/####/3e0ea6cad72092d5a32d7fc3eb8c647c.1.tmp
- /data/data/####/486934c71b750a0a7a65e586761b99fe.0.tmp
- /data/data/####/486934c71b750a0a7a65e586761b99fe.1.tmp
- /data/data/####/4d91d3cd6c0a2d52e007ec6f5a3012a757e22e565d48bd0....0.tmp
- /data/data/####/4e0b98976a075e4d98ae2b5fd2a6dfa9b854aa1d8d88967....0.tmp
- /data/data/####/5104b6a3fef722e69ea121b107fe00f1.0.tmp
- /data/data/####/5104b6a3fef722e69ea121b107fe00f1.1.tmp
- /data/data/####/53ee7385-7b7b-4894-b550-28f77799394a
- /data/data/####/5832A903131E4D508BCC62610F63544A.mmap2
- /data/data/####/69f0914d4d5afa14dd2a186baf50a0ab.0.tmp
- /data/data/####/69f0914d4d5afa14dd2a186baf50a0ab.1.tmp
- /data/data/####/761c6b64aa9bd8d9521ebf39ea783f58175a57b67461570....0.tmp
- /data/data/####/7c1cbcc462ed07abb96969c673384d39.0.tmp
- /data/data/####/7c1cbcc462ed07abb96969c673384d39.1.tmp
- /data/data/####/83891a24801781afc358c010e4455feca31954323826108....0.tmp
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/JPushSA_Config.xml
- /data/data/####/LKME_Server_Request_Queue.xml
- /data/data/####/MultiDex.lock
- /data/data/####/NBSAnrStore.xml
- /data/data/####/NBSCrashStore.xml
- /data/data/####/SteelphoneAndroidCommon.xml
- /data/data/####/UM_PROBE_DATA.xml
- /data/data/####/a2251952-5946-4ede-b025-c56b56c71545
- /data/data/####/a==7.5.1&&4.7.4_1532871459375_envelope.log
- /data/data/####/appPackageNames_v2
- /data/data/####/bbcbb195-575a-4623-b9a3-7c4452fd6c54
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.networkbench.agent.impl.v2_com.mysteel.andr...ne.xml
- /data/data/####/d28779de-b282-4403-99d6-d55bfee05672
- /data/data/####/d4014b45022740b893a77d2c08641005.0.tmp
- /data/data/####/d4014b45022740b893a77d2c08641005.1.tmp
- /data/data/####/d827f9aeee72d6ebb6f0e779ab621d0c.0.tmp
- /data/data/####/d827f9aeee72d6ebb6f0e779ab621d0c.1.tmp
- /data/data/####/d86179cd49104a6e3abb94b8366256af.0.tmp
- /data/data/####/d86179cd49104a6e3abb94b8366256af.1.tmp
- /data/data/####/daf1dcb8d948f8a9f093a272a904c26701ef0a45444afb4....0.tmp
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/e35e17467d1314fc194b7ca5d5b9218f.0.tmp
- /data/data/####/e35e17467d1314fc194b7ca5d5b9218f.1.tmp
- /data/data/####/eff1dbda2380a75ab9d95e17b40b1183.0.tmp
- /data/data/####/eff1dbda2380a75ab9d95e17b40b1183.1.tmp
- /data/data/####/event_com.mysteel.android.steelphone.log
- /data/data/####/event_com.mysteel.android.steelphone;pushcore.log
- /data/data/####/event_com.mysteel.android.steelphone;pushservice.log
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f252c4dc3c44ba1e664e77d0b3b1ab5e.0.tmp
- /data/data/####/f252c4dc3c44ba1e664e77d0b3b1ab5e.1.tmp
- /data/data/####/f4fcddd8-2bc1-4a01-96c6-eacae31502c9
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/fba63f7250fe4c1703e38495c2cfca37.0.tmp
- /data/data/####/fba63f7250fe4c1703e38495c2cfca37.1.tmp
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/i==1.2.0&&4.7.4_1532871458049_envelope.log
- /data/data/####/index
- /data/data/####/info.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_local_notification.db-wal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/libjiagu1033754980.so
- /data/data/####/linkedme_referral_shared_pref.xml
- /data/data/####/lock.tmp
- /data/data/####/matosdk_preference.xml
- /data/data/####/matosdk_preference_pushcore.xml
- /data/data/####/matosdk_preference_pushservice.xml
- /data/data/####/multidex.version.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/share.db-journal
- /data/data/####/tdata_YYn966
- /data/data/####/tdata_YYn966.jar
- /data/data/####/tdata_eOt091
- /data/data/####/tdata_eOt091.jar
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/um_pri.xml
- /data/data/####/umdat.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/wspx
- /data/media/####/.a.dat
- /data/media/####/.adfwe.dat
- /data/media/####/.cca.dat
- /data/media/####/.lm_device_id
- /data/media/####/.nomedia
- /data/media/####/.push_deviceid
- /data/media/####/.umm.dat
- /data/media/####/081f5b0f4cf7d68a78dc1d05635a4a5b.0.tmp
- /data/media/####/294fbe0f2e9f54a93d05efcfa358c50c.0.tmp
- /data/media/####/5104b6a3fef722e69ea121b107fe00f1.0.tmp
- /data/media/####/5832A903131E4D508BCC62610F63544A_20180729.xlog
- /data/media/####/69f0914d4d5afa14dd2a186baf50a0ab.0.tmp
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.mysteel.android.steelphone.bin
- /data/media/####/com.mysteel.android.steelphone.db
- /data/media/####/d827f9aeee72d6ebb6f0e779ab621d0c.0.tmp
- /data/media/####/journal.tmp
- /data/media/####/tdata_YYn966
- /data/media/####/tdata_eOt091
- /data/media/####/test.log
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.push.GetuiPushService 26044 300 0
- cat /sys/class/net/eth0/address
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu1033754980.so
- ls /
- ls /sys/class/thermal
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.push.GetuiPushService 26044 300 0
- com.maa
- getuiext2
- jcore121
- libjiagu1033754980
- marsxlog
- securityenv
- stlport_shared
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding