Technical information
- Adware.Gexin.1.origin
- Android.DownLoader.683.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) cdn.img.h####.####.com:80
- TCP(TLS/1.0) up####.weihu####.com:443
- TCP(TLS/1.0) cdn.app.pin####.####.com:443
- TCP(TLS/1.0) pe.winin####.top:443
- TCP c####.g####.ig####.com:5225
- TCP sdk.o####.t####.####.com:5224
- a####.u####.com
- c####.g####.ig####.com
- c.appj####.com
- cdn.app.pin####.top
- cdn.img.h####.top
- pe.winin####.top
- sdk.o####.i####.####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- up####.weihu####.com
- cdn.img.h####.####.com/upload/201805/8/img/20180508175440871.png
- a####.u####.com/app_logs
- c.appj####.com/ad/splash/stats.html
- sdk.o####.p####.####.com/api.php?action=####&format=####
- sdk.o####.p####.####.com/api.php?action=####&session_last=####&format=##...
- /data/data/####/.jg.ic
- /data/data/####/V2.8.8.1.txt
- /data/data/####/ad_show_time.xml
- /data/data/####/cqfda.caulate.fate.wherego_preferences.xml
- /data/data/####/ek.jar
- /data/data/####/gxdbapp.db-journal
- /data/data/####/gxsdkdb.db
- /data/data/####/gxsdkdb.db-journal
- /data/data/####/increment.db-journal
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/kr.xml
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_header_cqfda.caulate.fate.wherego.xml
- /data/data/####/mobclick_agent_state_cqfda.caulate.fate.wherego.xml
- /data/data/####/stop.lock
- /data/data/####/t_u.db-journal
- /data/data/####/uc.jar
- /data/data/####/vbz.xml
- /data/media/####/.nomedia
- /data/media/####/030659155233879cd0e918cc8a943e00.apk
- /data/media/####/2a2f7a3feef67
- /data/media/####/app.db
- /data/media/####/b.tmp
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/cqfda.caulate.fate.wherego.db
- /data/media/####/imsi.db
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- chmod 777 /storage/emulated/0/Android/data/<Package>/files/Download/Android/azb/030659155233879cd0e918cc8a943e00.apk
- libjiagu
- mt_facepp
- RSA
- DES