Technical information
- Android.DownLoader.698.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.205.203.110:8032
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) u####.umengc####.com:80
- TCP(HTTP/1.1) sh.wagbr####.alibaba####.com:80
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(HTTP/1.1) msg.umengc####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) a####.b####.qq.com:8011
- TCP(HTTP/1.1) api.m.ta####.com:80
- TCP(HTTP/1.1) a####.m.ta####.com:80
- TCP(HTTP/1.1) m####.q####.t####.####.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) pi####.qq.com:80
- TCP(TLS/1.0) m####.q####.t####.####.com:443
- TCP(TLS/1.0) wild####.q####.cn.####.net:443
- a####.b####.qq.com
- a####.m.ta####.com
- a####.u####.com
- aexcep####.b####.qq.com
- and####.b####.qq.com
- api.wsq.u####.com
- imgc####.qq.com
- m####.q####.cn
- m####.q####.cn
- mi.g####.qq.com
- msg.umengc####.com
- mt####.go####.com
- oc.u####.com
- p####.ugd####.com
- pi####.qq.com
- qzones####.g####.cn
- s####.e.qq.com
- u####.umengc####.com
- u####.umengc####.com
- api.m.ta####.com/activeip/?appkey=####&ttid=####&deviceId=####&imei=####...
- api.m.ta####.com/spdyip/?appkey=####&ttid=####&deviceId=####&imei=####&n...
- m####.q####.t####.####.com/gdt/0/DAAOTgCABIABIAAFBaf7_rCIofucTF.png/0?ck...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/banner.appcache
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/banner.html
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/banner_close_b...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/bannerbg02.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/bannerbg03.jpg
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/bannerbg07.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/close02.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/close03.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/download_icon....
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/download_icon_...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/gdt_logo_black...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/icon-ad.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/sdk_bg.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/tc-gdt-sdk-ope...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/tsa_ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/tsa_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/js-release/20170821/b...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/js/lib/require.js
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- sh.wagbr####.alibaba####.com/v2/feeds/rank?dt=####&imei=####&os=####&en=...
- sh.wagbr####.alibaba####.com/v2/feeds/stream?dt=####&imei=####&os=####&e...
- sh.wagbr####.alibaba####.com/v2/topics/?dt=####&imei=####&os=####&en=###...
- sh.wagbr####.alibaba####.com/v2/user/recommended_feed?dt=####&imei=####&...
- u####.umengc####.com/rest/api3.do?t=####&deviceId=####&imei=####&appKey=...
- u####.umengc####.com/rest/api3.do?ttid=####&t=####&deviceId=####&imei=##...
- u####.umengc####.com/rest/api3.do?ttid=####&t=####&imei=####&appKey=####...
- a####.b####.qq.com:8011/rqd/async
- a####.m.ta####.com/rest/gc?ak=####&av=####&c=####&v=####&s=####&d=####&s...
- a####.m.ta####.com/rest/sur?ak=####&av=####&c=####&v=####&s=####&d=####&...
- a####.u####.com/app_logs
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- msg.umengc####.com/v2/register
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- pi####.qq.com/mstat/report/?index=####
- s####.e.qq.com/activate
- /data/data/####/.imprint
- /data/data/####/.mta-wxop.xml
- /data/data/####/1534520661527b.jar
- /data/data/####/1534520662897b.jar
- /data/data/####/AGOO_CONNECT.xml
- /data/data/####/AGOO_HOST.xml
- /data/data/####/Alvin2.xml
- /data/data/####/AppStore.xml
- /data/data/####/ContextData.xml
- /data/data/####/DaemonServer
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/PhoneUtil.xml
- /data/data/####/UTMCBase.xml
- /data/data/####/UTMCConf160831877.xml
- /data/data/####/UTMCLog160831877.xml
- /data/data/####/UTMCLog160831877.xml.bak
- /data/data/####/agoo.pid
- /data/data/####/bugly_db_legu-journal
- /data/data/####/component_name.xml
- /data/data/####/config.xml
- /data/data/####/core_info
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/debug.conf
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/fbappInfo_pre.xml
- /data/data/####/fbconf_pre.xml
- /data/data/####/futuregods_config.xml
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/index
- /data/data/####/libshella-2.8.so
- /data/data/####/libufix.so
- /data/data/####/local_crash_lock
- /data/data/####/mix.dex
- /data/data/####/mobclick_agent_online_setting_com.zgy.drawing.xml
- /data/data/####/native_record_lock
- /data/data/####/pri_wxop_tencent_analysis.db-journal
- /data/data/####/s_update.xml
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/umeng_community.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/umeng_socialize_qq.xml
- /data/data/####/update_lc
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/wxop_tencent_analysis.db-journal
- /data/media/####/-1912764307
- /data/media/####/-534515231
- /data/media/####/-535438752
- /data/media/####/-536362273
- /data/media/####/-537285794
- /data/media/####/-538209315
- /data/media/####/.nomedia
- /data/media/####/0001.png
- /data/media/####/0002.jpg
- /data/media/####/0003.jpg
- /data/media/####/0004.jpg
- /data/media/####/0005.jpg
- /data/media/####/0006.jpg
- /data/media/####/0007.jpg
- /data/media/####/0008.jpg
- /data/media/####/0009.jpg
- /data/media/####/0010.jpg
- /data/media/####/0011.png
- /data/media/####/0012.png
- /data/media/####/0013.png
- /data/media/####/0014.png
- /data/media/####/0015.png
- /data/media/####/0016.jpg
- /data/media/####/0017.png
- /data/media/####/0018.jpg
- /data/media/####/0019.png
- /data/media/####/0020.png
- /data/media/####/0021.jpg
- /data/media/####/0022.png
- /data/media/####/0023.jpg
- /data/media/####/0024.png
- /data/media/####/0025.png
- /data/media/####/0026.jpg
- /data/media/####/0027.jpg
- /data/media/####/0028.jpg
- /data/media/####/0029.jpg
- /data/media/####/0030.png
- /data/media/####/10000.png
- /data/media/####/10001.png
- /data/media/####/10002.png
- /data/media/####/10003.png
- /data/media/####/10004.png
- /data/media/####/10005.png
- /data/media/####/10006.png
- /data/media/####/10007.png
- /data/media/####/10008.png
- /data/media/####/10009.png
- /data/media/####/10010.png
- /data/media/####/10011.png
- /data/media/####/10012.png
- /data/media/####/10013.png
- /data/media/####/10014.png
- /data/media/####/10015.png
- /data/media/####/10016.png
- /data/media/####/10017.png
- /data/media/####/10018.png
- /data/media/####/10019.png
- /data/media/####/1155548812
- /data/media/####/1569981557
- /data/media/####/446535983
- /data/media/####/470009350
- /data/media/####/Alvin2.xml
- /data/media/####/ApplicationCache.db-journal
- /data/media/####/ContextData.xml
- /data/media/####/bgpics.mp3
- /data/media/####/innnerpic.mp3
- /data/media/####/journal.tmp
- /data/media/####/topics.xml
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- <Package Folder>/files/DaemonServer -s <Package Folder>/lib/ -n runServer -p startservice -a <Package>.intent.action.COCKROACH --es cockroach cockroach-PPreotect --es pack <Package> --user 0 -f <Package Folder> -t 60 -c agoo.pid -P <Package Folder> -K 9527 -U tb_android_daemon_1.1.0 -L http://100.69.168.33/agoo/report -D {"package":"<Package>","appKey":"umeng:53a0ee1356240be04d0635fc","utdid":"W3btVQbQrekDAGdzx1Gmc3pX","sdkVersion":"20150423"} -I 100.69.168.33 -O 80 -T -Z
- chmod 500 <Package Folder>/files/DaemonServer
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-2.8.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.lewa.version
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.product.cpu.abi
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- sh
- Bugly
- libnfix
- libshella-2.8
- libufix
- nfix
- tnet-2.0
- ufix
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding