Technical information
- Adware.Gexin.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) pub.idq####.com.####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) openmo####.qq.com:80
- TCP(HTTP/1.1) msg.umengc####.com:80
- TCP(HTTP/1.1) c.isds####.qq.com:80
- TCP(HTTP/1.1) 1####.205.203.110:8030
- TCP(HTTP/1.1) appsup####.qq.com:80
- TCP(HTTP/1.1) cgi.con####.qq.com:80
- TCP(HTTP/1.1) api.m.ta####.com:80
- TCP(HTTP/1.1) pi####.qq.com:80
- TCP(TLS/1.0) m1.pinzh####.com:443
- TCP(TLS/1.0) 1####.217.19.206:443
- TCP(TLS/1.0) img.pinzh####.com:443
- a####.m.ta####.com
- a####.u####.com
- ag####.m.ta####.com
- api.m.ta####.com
- appsup####.qq.com
- c.isds####.qq.com
- cgi.con####.qq.com
- img.pinzh####.com
- m1.pinzh####.com
- msg.umengc####.com
- openmo####.qq.com
- pi####.qq.com
- pub.idq####.com
- q####.qq.com
- qzones####.g####.cn
- api.m.ta####.com/activeip/?appkey=####&ttid=####&deviceId=####&imei=####...
- api.m.ta####.com/rest/api3.do?t=####&deviceId=####&imei=####&appKey=####...
- api.m.ta####.com/rest/api3.do?ttid=####&t=####&deviceId=####&imei=####&a...
- api.m.ta####.com/rest/api3.do?ttid=####&t=####&imei=####&appKey=####&v=#...
- api.m.ta####.com/spdyip/?appkey=####&ttid=####&deviceId=####&imei=####&n...
- appsup####.qq.com/cgi-bin/appstage/mstats_report?report_type=####&platfo...
- c.isds####.qq.com/code.cgi?domain=####&cgi=####&type=####&code=####&time...
- cgi.con####.qq.com/qqconnectopen/openapi/policy_conf?sdkv=####&appid=###...
- openmo####.qq.com/oauth2.0/m_authorize?status_userip=####&scope=####&red...
- p####.tc.qq.com/c/=/open/mobile/login/js/login_browser_jump.js
- p####.tc.qq.com/open/mobile/login/qzsjump.html?status_userip=####&scope=...
- p####.tc.qq.com/open_proj/qqconnect/h5login/css/jump2.css?t=####
- p####.tc.qq.com/open_proj/qqconnect/h5login/css/sprite/jump2.png?max_age...
- pub.idq####.com.####.com/qconn/widget/mobile/login/images/loading.gif?ma...
- a####.u####.com/app_logs
- msg.umengc####.com/v2/register
- pi####.qq.com/mstat/report
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/cache/####/05a68c468df136bdffe62873e1b31cfd401....0.tmp
- <Package Folder>/cache/####/0ae308fafb0b65ded57aaebfebca2ca9f79....0.tmp
- <Package Folder>/cache/####/0c834aff1ef008bed21c3a0e1db41becee0....0.tmp
- <Package Folder>/cache/####/0dc24e6deb33162be7f7eb722fa12a8507d....0.tmp
- <Package Folder>/cache/####/111e412edc32289a036efcd76c7013c723e....0.tmp
- <Package Folder>/cache/####/12fd4c69cc016dc8b6146d2402e11862148....0.tmp
- <Package Folder>/cache/####/13554b13e3fe97502c2890778f4d33ee398....0.tmp
- <Package Folder>/cache/####/13775024133f7c50098e0c5d2ba13552e3d....0.tmp
- <Package Folder>/cache/####/1899de6132e80087ea295c0b11195fc3c15....0.tmp
- <Package Folder>/cache/####/199da4cca98ec986ac2cc2ca4b7ab644007....0.tmp
- <Package Folder>/cache/####/1afb8a240e506b11fdb3cfd68f6075a5c24....0.tmp
- <Package Folder>/cache/####/1b7e43ce446825c6c178d47fd5557ba436a....0.tmp
- <Package Folder>/cache/####/1cbee61effd4132b6ff64d15beaca02215e....0.tmp
- <Package Folder>/cache/####/1ea4d83c95d3d57256134fbbd71c4f41707....0.tmp
- <Package Folder>/cache/####/2132f3f062d6a2597d7fdb6afd0e96c9838....0.tmp
- <Package Folder>/cache/####/2277ac0d0f8450c953249033296cd747c28....0.tmp
- <Package Folder>/cache/####/23052132474a8f33953c5e9cfdb7b10b16e....0.tmp
- <Package Folder>/cache/####/24596584082f49672652c22fae589c2fc57....0.tmp
- <Package Folder>/cache/####/275bc290d02220e4ffb65bb864c28f8f903....0.tmp
- <Package Folder>/cache/####/281e85ff9eae2e6ca397fc4261bea7eb24e....0.tmp
- <Package Folder>/cache/####/28b932bb27cf43453466c2b67610d6a8a11....0.tmp
- <Package Folder>/cache/####/2af022b70b0e69ea027524ad408183dac11....0.tmp
- <Package Folder>/cache/####/2b23f22b45a99f8bf9eacac35da18e64d27....0.tmp
- <Package Folder>/cache/####/2c7992622f634cdcc0e3d6f4a3ee79c9b41....0.tmp
- <Package Folder>/cache/####/2f8f20e6d7521d05a87f107312b89604c3f....0.tmp
- <Package Folder>/cache/####/31ac84775992ce9ab5fedbbbd1f0973e514....0.tmp
- <Package Folder>/cache/####/3669bff4ca51450f19796bdd3ee69821fc7....0.tmp
- <Package Folder>/cache/####/3924e527f452d760cd3325e17d7697510a6....0.tmp
- <Package Folder>/cache/####/3c2db72e03a987ae1a837fce1e631bb542b....0.tmp
- <Package Folder>/cache/####/3d38f8a523a6e10b11a5bd4ba502e5a8d5c....0.tmp
- <Package Folder>/cache/####/41e611a3c9b3b6ff6d4a2f2c386ec8c1e5f....0.tmp
- <Package Folder>/cache/####/4274f830fddde15c0e686c5acc3904f982a....0.tmp
- <Package Folder>/cache/####/4318ff73436841ef0d9fcd9d1c4f5eac6a4....0.tmp
- <Package Folder>/cache/####/4598905d9e7989dee4744204d5f8e79e285....0.tmp
- <Package Folder>/cache/####/46309a8babc0afb9300056d20acec92a0e6....0.tmp
- <Package Folder>/cache/####/488ddd759a6e2689d8aac5c3a41812b3011....0.tmp
- <Package Folder>/cache/####/48b1e833f8d5de3b57e8b4fb78e63cb9c74....0.tmp
- <Package Folder>/cache/####/4fc723252f9403759eb1c7db9c89f64aedb....0.tmp
- <Package Folder>/cache/####/5108dc572eaf449c470c6cc7b4041c7fa38....0.tmp
- <Package Folder>/cache/####/56c07333c2a2fcf3399325a0c3cb5227fb5....0.tmp
- <Package Folder>/cache/####/578447e20820cd9c40b732a5a429aefa873....0.tmp
- <Package Folder>/cache/####/5b3e5b38c5681c6ef67c60e4ac4cf004b45....0.tmp
- <Package Folder>/cache/####/645bb40b0af07820533fad4b334bcdad073....0.tmp
- <Package Folder>/cache/####/64ac53736dad773b51f3f37d19f0b7e49db....0.tmp
- <Package Folder>/cache/####/65c56a5e300010645c4853329b48bee5103....0.tmp
- <Package Folder>/cache/####/69318638e9d6ce17ff32a4ae8786face5f1....0.tmp
- <Package Folder>/cache/####/6c14dde48dd0931538aadc332c6677660f2....0.tmp
- <Package Folder>/cache/####/6d46347f012386c880fd44cc04a36083b0c....0.tmp
- <Package Folder>/cache/####/6de5af07319a91281220d00a7601b8cf9f4....0.tmp
- <Package Folder>/cache/####/6f5e6244e29652cf25ea68cfa3f10d2d05e....0.tmp
- <Package Folder>/cache/####/71313c16bb7b691f4b536985054f50fb234....0.tmp
- <Package Folder>/cache/####/71cd9f7a95757b7d0f3def0bd210ccdc280....0.tmp
- <Package Folder>/cache/####/722314148635f4c0b3f1493f9c7dd60e744....0.tmp
- <Package Folder>/cache/####/734a2e724583108f2c96f996c3b34635690....0.tmp
- <Package Folder>/cache/####/743791d3c7a67743678b502f6d67e0b41b9....0.tmp
- <Package Folder>/cache/####/75bfb0653ea3344eeda16f092465e290916....0.tmp
- <Package Folder>/cache/####/75f70bd9c671bfc05eee08cf2d72866e424....0.tmp
- <Package Folder>/cache/####/791c3227de03305d52cc882629dfb7b9817....0.tmp
- <Package Folder>/cache/####/819068348abab961548d64c88f758a62209....0.tmp
- <Package Folder>/cache/####/84b685523f2e981e0a09dfb96db35fab644....0.tmp
- <Package Folder>/cache/####/879c4d53c63cea79c0a15e71cfd05915f1c....0.tmp
- <Package Folder>/cache/####/88fb156e102bae31cb89459f0c61b491413....0.tmp
- <Package Folder>/cache/####/89022303fd8ecce9c9ccb233619e6997942....0.tmp
- <Package Folder>/cache/####/8df2baf87d753304c8ab7b025013d026d1e....0.tmp
- <Package Folder>/cache/####/904fca1124dd801d71379d8871f113d59e3....0.tmp
- <Package Folder>/cache/####/91f28d5ecf53cacb9dae6100d425f452d7c....0.tmp
- <Package Folder>/cache/####/9346bd1fb0b7142186667342d815f142fd8....0.tmp
- <Package Folder>/cache/####/93af09a51db26193b55b819a7b24863314a....0.tmp
- <Package Folder>/cache/####/964d377adc7d78e3b219ed81ec0badc639d....0.tmp
- <Package Folder>/cache/####/98dde5f4347fe62a10ae904802e3c49017c....0.tmp
- <Package Folder>/cache/####/9c50549c2cb2b02d40451f93632f216e678....0.tmp
- <Package Folder>/cache/####/9c696aa5e520cb09a8fc41435750a0b9e0e....0.tmp
- <Package Folder>/cache/####/9c90e1c1942f6bda25ba8b4baae47599fbd....0.tmp
- <Package Folder>/cache/####/ae4af8641ae00d7970c21cc51b48e14b8d4....0.tmp
- <Package Folder>/cache/####/b1f35a59cd523dfc2be2428a19fafc118c9....0.tmp
- <Package Folder>/cache/####/b27e915ace3936c3c2bac37813f34a9c323....0.tmp
- <Package Folder>/cache/####/bda303242f06f67660325970766610a76a9....0.tmp
- <Package Folder>/cache/####/c036e8cf69ae701c413677fb366cb2753d4....0.tmp
- <Package Folder>/cache/####/c202116ad9f2e8ec540216fbe17e7ec0390....0.tmp
- <Package Folder>/cache/####/c29c4948896e7dc3d45e832c3c7a5dd083f....0.tmp
- <Package Folder>/cache/####/c3ccdca3a5e9d2e1a58248acdd803f71ce0....0.tmp
- <Package Folder>/cache/####/c3f4f0e1d85c3445f896e0db6a89c084b34....0.tmp
- <Package Folder>/cache/####/c463b60fdc56923b8c8d0b4e37205b6a8a1....0.tmp
- <Package Folder>/cache/####/c4c8b93546518306e8cb56472779fe49fce....0.tmp
- <Package Folder>/cache/####/c5b24d17e0dbb42e5fce91624a039318720....0.tmp
- <Package Folder>/cache/####/c8a1d42ec5f71fdaddcf30f3c2204d7abbf....0.tmp
- <Package Folder>/cache/####/c934cb3acac7ce696232439ae1e69973a21....0.tmp
- <Package Folder>/cache/####/data_0
- <Package Folder>/cache/####/data_1
- <Package Folder>/cache/####/data_2
- <Package Folder>/cache/####/data_3
- <Package Folder>/cache/####/dc51cb93f1f9390eb03f296389872e20a37....0.tmp
- <Package Folder>/cache/####/dd25622b2cb2439cf377c88bbf78f6548c1....0.tmp
- <Package Folder>/cache/####/e04f55d47f1272aca92a1ea47278231c469....0.tmp
- <Package Folder>/cache/####/e09b3f1816f6168f342c7f198ab8a6d8c6c....0.tmp
- <Package Folder>/cache/####/e2383a3130abbded2c2575d9f61d4566dc4....0.tmp
- <Package Folder>/cache/####/ed6aae844abeb1c6bf6999c69516fba3861....0.tmp
- <Package Folder>/cache/####/f0599220dd232e4e3c2eb49cd171d772060....0.tmp
- <Package Folder>/cache/####/f2c0efb723ba44ec29079e0ceb7b118a7a9....0.tmp
- <Package Folder>/cache/####/f401855153b7ab0e7210746d38acd0af395....0.tmp
- <Package Folder>/cache/####/f431ede6bc1ba8257c85f703eb0d6b9b8fe....0.tmp
- <Package Folder>/cache/####/f48dad3555924707349203c1c745a1b4d9a....0.tmp
- <Package Folder>/cache/####/f75fe2a142e245723f9023a1408ac436259....0.tmp
- <Package Folder>/cache/####/fb1d2059f4bd2fe2ba661ca541860f1b73c....0.tmp
- <Package Folder>/cache/####/fd0f4bc979af5c9a1187ad41831da94af31....0.tmp
- <Package Folder>/cache/####/index
- <Package Folder>/cache/####/journal.tmp
- <Package Folder>/databases/MsgLogStore.db-journal
- <Package Folder>/databases/UmengLocalNotificationStore.db-journal
- <Package Folder>/databases/cc.db
- <Package Folder>/databases/cc.db-journal
- <Package Folder>/databases/sdk_report.db
- <Package Folder>/databases/sdk_report.db-journal
- <Package Folder>/databases/tencent_analysis.db-journal
- <Package Folder>/databases/ua.db
- <Package Folder>/databases/ua.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/webviewCookiesChromium.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/####/exchangeIdentity.json
- <Package Folder>/files/.imprint
- <Package Folder>/files/DaemonServer
- <Package Folder>/files/agoo.pid
- <Package Folder>/files/com.tencent.open.config.json.1101355979
- <Package Folder>/files/exid.dat
- <Package Folder>/files/libwbsafeedit_x86.so
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/AGOO_CONNECT.xml
- <Package Folder>/shared_prefs/AGOO_HOST.xml
- <Package Folder>/shared_prefs/Alvin2.xml
- <Package Folder>/shared_prefs/AppStore.xml
- <Package Folder>/shared_prefs/ContextData.xml
- <Package Folder>/shared_prefs/PhoneUtil.xml
- <Package Folder>/shared_prefs/jg_so_upgrade_setting.xml
- <Package Folder>/shared_prefs/jg_so_upgrade_setting.xml.bak
- <Package Folder>/shared_prefs/secure_lib.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <Package Folder>/shared_prefs/umeng_message_state.xml
- <SD-Card>/.DataStorage/ContextData.xml
- <SD-Card>/.UTSystemConfig/####/Alvin2.xml
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- /system/bin/cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_min_freq
- <Package Folder>/files/DaemonServer -s <Package Folder>/lib/ -n runServer -p startservice -n <Package>/com.umeng.message.UmengService --es cockroach cockroach-PPreotect --es pack <Package> --user 0 -f <Package Folder> -t 600 -c agoo.pid -P <Package Folder> -K 1009527 -U tb_android_daemon_1.1.0 -L http://agoodm.m.taobao.com/agoo/report -D {"package":"<Package>","appKey":"umeng:5279b36856240bf5740885c0","utdid":"Wg2EXY/6KjcDAGdzx1FPaLLH","sdkVersion":"20160215"} -I agoodm.m.taobao.com -O 80 -T -Z
- chmod 500 <Package Folder>/files/DaemonServer
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- sh
- MtaNativeCrash
- libjiagu
- libwbsafeedit_x86
- tnet-2.1.20
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding