Technical information
- Adware.Gexin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ser####.dc####.net.cn:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) c.c####.com:80
- TCP(HTTP/1.1) z.c####.com:80
- TCP(HTTP/1.1) api.map.b####.com:80
- TCP(HTTP/1.1) www.36####.cn:80
- TCP(HTTP/1.1) qin####.com.www.####.com:80
- TCP(HTTP/1.1) ne####.bootstr####.com:80
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) 1####.217.17.46:443
- TCP(TLS/1.0) ser####.dc####.net.cn:443
- TCP(TLS/1.0) hm.b####.com:443
- TCP(TLS/1.0) loc.map.b####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5226
- api.map.b####.com
- c####.g####.ig####.com
- c-h####.g####.com
- c.c####.com
- hm.b####.com
- loc.map.b####.com
- ne####.bootstr####.com
- pub-####.qin####.com
- s22.c####.com
- sdk-ope####.g####.com
- sdk.c####.ig####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- ser####.dc####.net.cn
- st####.dc####.net.cn
- www.36####.cn
- z1.c####.com
- api.map.b####.com/?qt=####&ak=####&callback=####
- api.map.b####.com/api?v=####&ak=####
- api.map.b####.com/geocoder/v2/?ak=####&callback=####&location=####&outpu...
- api.map.b####.com/getscript?v=####&ak=####&services=####&t=####
- api.map.b####.com/images/blank.gif?product=####&sub_product=####&v=####&...
- c.c####.com/core.php?web_id=####&t=####
- c.c####.com/z_stat.php?id=####
- ne####.bootstr####.com/font-awesome/4.7.0/css/font-awesome.min.css
- qin####.com.www.####.com/tdata_EDT356
- t####.c####.q####.####.com/config/hz-hzv6.conf
- www.36####.cn/
- www.36####.cn/index.php/appointment/s_index?st=####
- www.36####.cn/index.php/service/index
- www.36####.cn/news/update?appid=####&version=####
- www.36####.cn/news/updatez?appid=####&version=####
- www.36####.cn/public/application/js/jquery.form.js
- www.36####.cn/public/application/js/jsAddress.js
- www.36####.cn/public/application/js/layer/laydate/laydate.js
- www.36####.cn/public/application/js/layer/laydate/need/laydate.css
- www.36####.cn/public/application/js/layer/laydate/skins/default/laydate....
- www.36####.cn/public/application/js/layer/layer.js
- www.36####.cn/public/application/js/layer/skin/default/loading-1.gif
- www.36####.cn/public/application/js/layer/skin/layer.css
- www.36####.cn/public/application/js/lyndon_common.js
- www.36####.cn/public/js/plusShare.js
- www.36####.cn/public/mobile//images/img/banner.png
- www.36####.cn/public/mobile/images/arrow_black_left.png
- www.36####.cn/public/mobile/images/bieshu.png
- www.36####.cn/public/mobile/images/circle_down.png
- www.36####.cn/public/mobile/images/cpj.png
- www.36####.cn/public/mobile/images/fdbn.png
- www.36####.cn/public/mobile/images/fl.png
- www.36####.cn/public/mobile/images/gd.png
- www.36####.cn/public/mobile/images/gwc.png
- www.36####.cn/public/mobile/images/index/bsty.png
- www.36####.cn/public/mobile/images/index/fjc.png
- www.36####.cn/public/mobile/images/index/gefqc.png
- www.36####.cn/public/mobile/images/index/jgdw.png
- www.36####.cn/public/mobile/images/index/jmsq.png
- www.36####.cn/public/mobile/images/index/lc.png
- www.36####.cn/public/mobile/images/index/mp.png
- www.36####.cn/public/mobile/images/index/qyyq.png
- www.36####.cn/public/mobile/images/index/sanx.png
- www.36####.cn/public/mobile/images/index/search.png
- www.36####.cn/public/mobile/images/index/sydw.png
- www.36####.cn/public/mobile/images/index/xxdj.png
- www.36####.cn/public/mobile/images/index/ylqy.png
- www.36####.cn/public/mobile/images/index/zqc.png
- www.36####.cn/public/mobile/images/inlogo.png
- www.36####.cn/public/mobile/images/jtlz.png
- www.36####.cn/public/mobile/images/jtyy.png
- www.36####.cn/public/mobile/images/llj.png
- www.36####.cn/public/mobile/images/ltlh.png
- www.36####.cn/public/mobile/images/myicon/qreturn.png
- www.36####.cn/public/mobile/images/news-icon.png
- www.36####.cn/public/mobile/images/sadv.jpg
- www.36####.cn/public/mobile/images/sy.png
- www.36####.cn/public/mobile/images/wd.png
- www.36####.cn/public/mobile/images/xjzx.png
- www.36####.cn/public/mobile/images/ylgx.png
- www.36####.cn/public/mobile/images/ylgy.png
- www.36####.cn/public/mobile/images/ylsq.png
- www.36####.cn/public/mobile/images/yszy.png
- www.36####.cn/public/mobile/images/ythy.png
- www.36####.cn/public/mobile/images/yy.png
- www.36####.cn/public/mobile/images/zcqc.png
- www.36####.cn/public/mobile/js/jquery.cityselect.js
- www.36####.cn/public/mobile/js/jquery.js
- www.36####.cn/public/mobile/js/mui.min.js
- www.36####.cn/public/mobile/js/plusGeolocation.js
- www.36####.cn/public/mobile/js/public.js
- www.36####.cn/public/mobile/js/rem.js
- www.36####.cn/public/mobile/js/swiper-3.4.0.jquery.min.js
- www.36####.cn/public/mobile/js/zepto.js
- www.36####.cn/public/mobile/style/css.css?a=####
- www.36####.cn/public/mobile/style/public.css
- www.36####.cn/public/mobile/style/swiper.min.css
- www.36####.cn/upload/app_adv/2018-12-06/2018120610042716.jpg
- www.36####.cn/upload/app_adv/2018-12-07/2018120703064399.jpg
- www.36####.cn/upload/app_adv/2019-04-01/2019040110484825.jpg
- www.36####.cn/upload/park/2019-04-16/2019041610542550.jpg
- www.36####.cn/upload/park/2019-04-17/2019041709155676.jpg
- www.36####.cn/upload/park/2019-04-19/2019041909161442.jpg
- www.36####.cn/upload/park/2019-04-19/2019041910165516.jpg
- z.c####.com/stat.htm?id=####&r=####&lg=####&ntime=####&cnzz_eid=####&sho...
- z.c####.com/stat.htm?id=1275015323&r=http://www.360hyh.cn/index.php/serv...
- c-h####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####
- ser####.dc####.net.cn/device/location
- www.36####.cn/index.php/appointment/simple
- /data/data/####/.imei.txt
- /data/data/####/.jg.ic
- /data/data/####/03b317c6447e
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/ApplicationCache.db-journal (deleted)
- /data/data/####/MultiDex.lock
- /data/data/####/__W2A__www.360hyh.cn.append.css
- /data/data/####/__W2A__www.360hyh.cn.xml
- /data/data/####/__W2A__www.360hyh.cn_storages.xml
- /data/data/####/__shortcut.js
- /data/data/####/__template.json
- /data/data/####/__wap2app.js
- /data/data/####/__wap2app.ttf
- /data/data/####/__wap2appbrowser.html
- /data/data/####/__wap2appconfig.js
- /data/data/####/__wap2appcontext.html
- /data/data/####/__wap2apperror.html
- /data/data/####/__wap2appplayer.js
- /data/data/####/__wap2appquit.js
- /data/data/####/__wap2appswiper.html
- /data/data/####/__wap2apptabbar.css
- /data/data/####/__wap2apptabbar.js
- /data/data/####/_adio.dcloud.feature.ad.a.a.xml
- /data/data/####/authStatus_io.d.hyh360hy.xml
- /data/data/####/authStatus_io.d.hyh360hy;remote.xml
- /data/data/####/client_index.html
- /data/data/####/clientid_igexin.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dc_ad_type_key.xml
- /data/data/####/eje3cnc
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/f_000011
- /data/data/####/f_000012
- /data/data/####/f_000013
- /data/data/####/f_000014
- /data/data/####/f_000015
- /data/data/####/f_000016
- /data/data/####/firll.dat
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gx_sp.xml
- /data/data/####/hst.db
- /data/data/####/hst.db-journal
- /data/data/####/html5Geo.xml
- /data/data/####/http_www.360hyh.cn_0.localstorage-journal
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libcuid.so
- /data/data/####/libjiagu-954117913.so
- /data/data/####/manifest.json
- /data/data/####/multidex.version.xml
- /data/data/####/pdr.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/sitemap.json
- /data/data/####/start_statistics_data.xml
- /data/data/####/stream_permission.xml
- /data/data/####/test_app
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.imei.txt
- /data/media/####/12054593EBCEC20F96A149DBCD7B3088.css
- /data/media/####/AdEnable.dat
- /data/media/####/FA13686DB614A09D4BAAE3D57D404638.css
- /data/media/####/app.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/io.d.hyh360hy.bin
- /data/media/####/io.d.hyh360hy.db
- /data/media/####/test.log
- /data/media/####/yoh.dat
- /data/media/####/yol.dat
- /data/media/####/yom.dat
- <Package Folder>/files/gdaemon_20161017 0 <Package>/io.dcloud.feature.apsGt.GTNormalPushService 24115 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- mount
- BaiduMapSDK_base_v5_2_1
- getuiext2
- libjiagu-954117913
- locSDK7b
- so
- AES-CBC-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding