Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) v2.g####.qq.com:80
- TCP(HTTP/1.1) log.djdu####.com:80
- TCP(HTTP/1.1) et2-na6####.wagbr####.ali####.####.com:80
- TCP(HTTP/1.1) imgc####.qq.com.####.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) 1####.29.29.29:80
- TCP(HTTP/1.1) sc.g####.qq.com:80
- TCP(HTTP/1.1) r####.shoujid####.com:80
- TCP(HTTP/1.1) www.shoujid####.com:80
- TCP(HTTP/1.1) p####.ugd####.com.####.com:80
- TCP(HTTP/1.1) qzones####.g####.cn.####.com:80
- TCP(HTTP/1.1) o####.sn####.com:80
- TCP(HTTP/1.1) cdnri####.shoujid####.com.####.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) cdnuser####.shoujid####.com.####.com:80
- TCP(HTTP/1.1) xj.gd####.com.####.com:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) thi####.q####.cn:80
- TCP(HTTP/1.1) log.shoujid####.com:80
- TCP(TLS/1.0) s####.we####.com:443
- TCP(TLS/1.0) mobads-####.b####.com:443
- TCP(TLS/1.0) r####.gdt.qq.com:443
- TCP(TLS/1.0) s####.e.qq.com:443
- TCP(TLS/1.0) qzones####.g####.cn.####.com:443
- TCP(TLS/1.0) i.g####.cn.####.com:443
- TCP(TLS/1.0) h5.g####.qq.com:443
- TCP(TLS/1.0) tia####.qq.com:443
- a####.u####.com
- cdnri####.shoujid####.com
- cdnri####.shoujid####.com
- cdnuser####.shoujid####.com
- h5.g####.qq.com
- i.g####.cn
- imgc####.qq.com
- log.djdu####.com
- log.shoujid####.com
- log.u####.com
- mi.g####.qq.com
- mo####.b####.com
- mobads-####.b####.com
- o####.sn####.com
- oc.u####.com
- p####.ugd####.com
- qzones####.g####.cn
- r####.gdt.qq.com
- r####.shoujid####.com
- s####.e.qq.com
- s####.u####.com
- s####.we####.com
- sc.g####.qq.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- thi####.q####.cn
- tia####.qq.com
- v2.g####.qq.com
- www.shoujid####.com
- xj.gd####.com
- cdnri####.shoujid####.com.####.com/ringres/mm/m96/490/70317490-9.mp3
- cdnri####.shoujid####.com.####.com/ringres/software/bb/pic/erge120.png
- cdnri####.shoujid####.com.####.com/ringres/userv1/m96/818/84045818.mp3
- cdnri####.shoujid####.com.####.com/ringres/verify.dat
- cdnuser####.shoujid####.com.####.com/head_pic/17/user_head_7869194_20181...
- et2-na6####.wagbr####.ali####.####.com/bar/get/4fa4d53e5270157de9000014/...
- imgc####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/progu...
- log.shoujid####.com/log.php?user=####&prod=####&isrc=####&mac=####&dev=#...
- mi.g####.qq.com/gdt_mview.fcg?datatype=####&posid=####&count=####&r=####...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&spsa=####&posh=####&count=####&r...
- p####.ugd####.com.####.com/gdt/0/DAAofYpAQ4AeAACJBdX7R5Cm6OHt0J.jpg/0?ck...
- p####.ugd####.com.####.com/gdt/0/DAAofYpAQ4AeAACJBdXKX1AHpDCymu.jpg/0?ck...
- p####.ugd####.com.####.com/gdt/0/DAAofYpAQ4AeAACLBdXKkCCPsK0ewN.jpg/0?ck...
- p####.ugd####.com.####.com/gdt/0/transformer_16507599891556222630_156787...
- p####.ugd####.com.####.com/gdt/0/transformer_17869268281419030987_156756...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android02/images/t...
- r####.shoujid####.com/ring_enc.php?cmd=####&q=####
- r####.shoujid####.com/ring_enc.php?cmd=####&q=cTCi0####
- r####.shoujid####.com/ringv1/verify.dat
- r####.shoujid####.com/ringv1/xmldata/searchad.xml
- sc.g####.qq.com/gdt_mclick.fcg?viewid=####&jtype=####&i=####&os=####&asi...
- thi####.q####.cn/mmopen/vi_32/Q0j4TwGTfTIgIcTEvw5IkgibbU18210BlA1qPvOhJp...
- v2.g####.qq.com/gdt_stats.fcg?viewid=####&i=####&os=####&xp=####
- v2.g####.qq.com/gdt_stats.fcg?viewid=####&i=####&os=####&xp=####&gap=####
- www.shoujid####.com/image/you.png
- xj.gd####.com.####.com/xjimg/0/d0de407d900305ed2ba17a7618a209f87ac873f3....
- a####.u####.com/app_logs
- log.djdu####.com/logs/log.php
- o####.sn####.com/access_token/register/device/v2/?
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- s####.e.qq.com/activate
- s####.e.qq.com/click
- s####.e.qq.com/err
- s####.e.qq.com/msg
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1567890674076.log
- /data/data/####/2161.yaqcookie
- /data/data/####/5502f8db6604ce495f65797e3495b1f6.temp
- /data/data/####/5ead7c1916e321af3ee0d7d6aa595238.temp
- /data/data/####/7bc39671d45f555fb2a767ca9082e638.temp
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/BrowserPreference.xml
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/MultiDex.lock
- /data/data/####/__x_adsdk_agent_header__.xml
- /data/data/####/__xadsdk__remote__final__builtin__.jar
- /data/data/####/__xadsdk__remote__final__builtinversion__.jar
- /data/data/####/__xadsdk__remote__final__running__.jar
- /data/data/####/_duoduonews.xml
- /data/data/####/bc71e9f61f2cf49c61847228f8c02113.temp
- /data/data/####/c680093bdde9430a46a23be019e10797.temp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.baidu.mobads.loader.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/dexMethod.82894129.dat
- /data/data/####/duoduo.ringtone.database
- /data/data/####/duoduo.ringtone.database-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/gdt_config.cfg
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_stat.db
- /data/data/####/gdt_stat.db-journal
- /data/data/####/gdt_suid
- /data/data/####/getui_sp.xml
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libjiagu178973751.so
- /data/data/####/libyaqbasic.82894129.so
- /data/data/####/libyaqpro.82894129.so
- /data/data/####/lna.nq
- /data/data/####/lock_dm
- /data/data/####/lock_gt
- /data/data/####/multidex.version.xml
- /data/data/####/onlineconfig_agent_online_setting_com.shoujiduo...ne.xml
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qos.xml
- /data/data/####/ring.shoujiduoduo.com.xml
- /data/data/####/run.pid
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/umeng_socialize.xml.bak
- /data/data/####/umeng_socialize.xml.bak (deleted)
- /data/data/####/update_lc
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/yaqsdkcookie
- /data/media/####/-424691100
- /data/media/####/-548693349
- /data/media/####/.nomedia
- /data/media/####/1808937995
- /data/media/####/1816609837
- /data/media/####/583036292
- /data/media/####/category.tmp
- /data/media/####/com.shoujiduoduo.ringtone.bin
- /data/media/####/config.tmp
- /data/media/####/hotkey.tmp
- /data/media/####/list_1.tmp
- /data/media/####/make_ring.xml
- /data/media/####/search_ad.tmp
- /data/media/####/toplist.tmp
- /data/media/####/verify_cdn.dat
- /data/media/####/verify_duoduo1.dat
- /data/media/####/铃声多多_只是太爱你_丁芙妮.mp3
- /data/media/####/铃声多多_百酷哪吒❗-全网最火肾没了,肾没了,还不是因为你买了苹果_百酷哪吒❗.mp3
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- QPlayer
- getuiext2
- libjiagu178973751
- libyaqbasic.82894129
- libyaqpro.82894129
- mad
- opencore_aac
- url_encode
- AES-CBC-NoPadding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-NoPadding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding