Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) i.t####.com:80
- TCP(HTTP/1.1) d####.opensp####.cn:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) h####.opensp####.cn:80
- TCP(HTTP/1.1) aexcep####.b####.qq.com:8012
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) c####.x####.com:443
- TCP(TLS/1.0) et2-na6####.wagbr####.ali####.####.com:443
- aexcep####.b####.qq.com
- and####.b####.qq.com
- av1.x####.com
- c####.x####.com
- c####.x####.com
- d####.opensp####.cn
- h####.opensp####.cn
- i.t####.com
- log.u####.com
- s####.u####.com
- h####.opensp####.cn/launchconfig?t=####&p=####
- i.t####.com/a/376d7efb807716c867aa303b013048e57
- aexcep####.b####.qq.com:8012/rqd/async
- and####.b####.qq.com/rqd/async
- and####.b####.qq.com/rqd/async?aid=####
- d####.opensp####.cn/index.php/clientrequest/clientcollect/isCollect
- /data/data/####/1004
- /data/data/####/1559111203747_2295
- /data/data/####/1559111204249_2295
- /data/data/####/1559111204590_2295
- /data/data/####/1559111205905_2295
- /data/data/####/1559111206557_2295
- /data/data/####/1559111206976_2295
- /data/data/####/1559111207194_2295
- /data/data/####/1559111207394_2295
- /data/data/####/1559111207628_2295
- /data/data/####/1559111207861_2295
- /data/data/####/1559111212067.log
- /data/data/####/Archimedes_p4
- /data/data/####/Archimedes_p5
- /data/data/####/CST.db-journal
- /data/data/####/CST_SPData.xml
- /data/data/####/Pythagoras_phase.xml
- /data/data/####/TDCloudSettingsConfigE08BA26A3646481009E4C6E5C040B60B.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_cloudcontrol1.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/TalingDataConfigE08BA26A3646481009E4C6E5C040B60B.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/bugly_db_legu-journal
- /data/data/####/com.iflytek.id.xml
- /data/data/####/com.iflytek.msc.xml
- /data/data/####/com.lynnrichter.qcxg_preferences.xml
- /data/data/####/crashrecord.xml
- /data/data/####/ifly_launch_lib.xml
- /data/data/####/iflytek_state_com.lynnrichter.qcxg.xml
- /data/data/####/libnfix.so
- /data/data/####/libshella-3.0.0.0.so
- /data/data/####/local_crash_lock
- /data/data/####/mPBE.xml
- /data/data/####/mix.dex
- /data/data/####/multidex.version.xml
- /data/data/####/native_record_lock
- /data/data/####/security_info
- /data/data/####/tdid.xml
- /data/data/####/umeng_socialize.xml
- /data/media/####/.tcookieid
- /data/media/####/iflyworkdir_test
- /system/bin/sh -c getprop
- /system/bin/sh -c getprop ro.aa.romver
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c getprop ro.build.fingerprint
- /system/bin/sh -c getprop ro.build.nubia.rom.name
- /system/bin/sh -c getprop ro.build.rom.id
- /system/bin/sh -c getprop ro.build.tyd.kbstyle_version
- /system/bin/sh -c getprop ro.build.version.emui
- /system/bin/sh -c getprop ro.build.version.opporom
- /system/bin/sh -c getprop ro.gn.gnromvernumber
- /system/bin/sh -c getprop ro.lenovo.series
- /system/bin/sh -c getprop ro.lewa.version
- /system/bin/sh -c getprop ro.meizu.product.model
- /system/bin/sh -c getprop ro.miui.ui.version.name
- /system/bin/sh -c getprop ro.vivo.os.build.display.id
- /system/bin/sh -c type su
- chmod 700 <Package Folder>/tx_shell/libnfix.so
- chmod 700 <Package Folder>/tx_shell/libshella-3.0.0.0.so
- chmod 700 <Package Folder>/tx_shell/libufix.so
- getprop
- getprop ro.aa.romver
- getprop ro.board.platform
- getprop ro.build.fingerprint
- getprop ro.build.nubia.rom.name
- getprop ro.build.rom.id
- getprop ro.build.tyd.kbstyle_version
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.gn.gnromvernumber
- getprop ro.lenovo.series
- getprop ro.meizu.product.model
- getprop ro.miui.ui.version.name
- getprop ro.vivo.os.build.display.id
- getprop ro.yunos.version
- logcat -d -v threadtime
- Bugly
- libnfix
- libshella-3.0.0.0
- libufix
- msc
- nfix
- ufix
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding