Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) d####.d####.mob.com:80
- TCP(HTTP/1.1) dl.tx####.com:80
- TCP(HTTP/1.1) c.d####.mob.com:80
- TCP(HTTP/1.1) api.s####.mob.com:80
- TCP(HTTP/1.1) m.d####.mob.com:80
- TCP(TLS/1.0) 64.2####.165.94:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) bea####.g####.com:443
- TCP(TLS/1.2) 1####.177.14.103:443
- TCP(TLS/1.2) 64.2####.164.139:443
- TCP(TLS/1.2) p####.google####.com:443
- TCP(TLS/1.2) 64.2####.165.94:443
- UDP bea####.g####.com:443
- UDP p####.google####.com:443
- UDP 74.1####.131.102:443
- UDP rr2---s####.g####.com:443
- a####.exc.mob.com
- and####.google####.com
- api.map.b####.com
- api.s####.mob.com
- bea####.g####.com
- c.d####.mob.com
- d####.d####.mob.com
- dl.tx####.com
- gmscomp####.google####.com
- m.d####.mob.com
- p####.google####.com
- rr2---s####.g####.com
- www.tx####.com
- dl.tx####.com/ad/txy_ad_info.txt
- dl.tx####.com/cdn.txt
- dl.tx####.com/cdnkeys.txt
- m.d####.mob.com/cconf?appkey=####&plat=####&apppkg=####&appver=####&netw...
- api.map.b####.com:443/sdkcs/verify
- api.s####.mob.com/conf5
- api.s####.mob.com/conn
- api.s####.mob.com/data2
- api.s####.mob.com/log4
- c.d####.mob.com/cdata
- c.d####.mob.com/errconf
- d####.d####.mob.com/dinfo
- d####.d####.mob.com/dsign
- /data/data/####/.fsgkea
- /data/data/####/.jg.ac
- /data/data/####/.jg.ri
- /data/data/####/.jg.store.report_cf
- /data/data/####/.jg.store.report_pid
- /data/data/####/.lock
- /data/data/####/.mrecord
- /data/data/####/.mrecord (deleted)
- /data/data/####/.mrlock
- /data/data/####/.statistics
- /data/data/####/7edb6be5d06e1c9775dcad63b3650213ae17dcdc5eabb57....0.tmp
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/ThrowalbeLog.db-journal (deleted)
- /data/data/####/authStatus_com.txy.anywhere.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.dex;classes3.dex
- /data/data/####/classes.oat
- /data/data/####/jgobfppppp (deleted)
- /data/data/####/journal
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/mac.xml
- /data/data/####/mob_commons_1.xml
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/proc_auxv
- /data/data/####/share_sdk_1.xml
- /data/data/####/shared_pref.xml
- /data/data/####/sharesdk.db-journal
- /data/data/####/umeng_general_config.xml
- /data/media/####/.al
- /data/media/####/.ccLock
- /data/media/####/.ccc
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.dh
- /data/media/####/.dh-journal
- /data/media/####/.dhlock
- /data/media/####/.dic_lock
- /data/media/####/.dk
- /data/media/####/.duid
- /data/media/####/.globalLock
- /data/media/####/.nulal
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.plst
- /data/media/####/.rc_lock
- /data/media/####/.usLock
- /data/misc/####/primary.prof
- cat /sys/class/net/wlan0/address
- grep -E -v root|shell|system
- sh
- top -d 0 -n 1
- top -d 0 -n 1 | grep -E -v 'root|shell|system' >> /storage/emulated/0/Mob/comm/dbs/.plst && echo "======================" >> /storage/emulated/0/Mob/comm/dbs/.plst
- libBaiduMapSDK_base_v4_3_1
- libjiagu
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-CBC-PKCS5Padding