Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) d####.yiyuan####.com:80
- TCP(HTTP/1.1) w####.chinaca####.com:80
- TCP(HTTP/1.1) hm.b####.com:80
- TCP(HTTP/1.1) up####.yiyuan####.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) mo####.b####.com:80
- TCP(HTTP/1.1) app.yiyuan####.com:80
- TCP(TLS/1.0) o####.we####.qq.com:443
- TCP(TLS/1.0) hm.b####.com:443
- TCP(TLS/1.0) mobads-####.b####.com:443
- a####.exc.mob.com
- api.s####.mob.com
- app.yiyuan####.com
- d####.yiyuan####.com
- hm.b####.com
- mo####.b####.com
- mobads-####.b####.com
- o####.we####.qq.com
- pac####.yiyuan####.com
- up####.yiyuan####.com
- w####.chinaca####.com
- app.yiyuan####.com/
- app.yiyuan####.com/static/css/base.css?ver=####
- app.yiyuan####.com/static/images/close-icon.png
- app.yiyuan####.com/static/images/forbidden_login/i1021-24-2.png
- app.yiyuan####.com/static/images/forbidden_login/i1021-24.png
- app.yiyuan####.com/static/images/wx-login2.png
- app.yiyuan####.com/static/js/app_tongji.js?ver=####
- d####.yiyuan####.com/android/yiyuanzhuan.apk
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&ep=####&et=#...
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&et=####&ja=#...
- hm.b####.com/hm.js?b1d7031####
- mo####.b####.com/ads/ads.appcache
- mo####.b####.com/ads/css/min/main.css
- mo####.b####.com/ads/index.htm
- mo####.b####.com/ads/js/ads.trunk.js
- mo####.b####.com/ads/js/c.js
- mo####.b####.com/ads/pa/8/__pasys_remote_banner.php??bdr=####&os=####&v=...
- mo####.b####.com/ads/pa/8/__xadsdk__remote__8.7051.jar
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1530122460376=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1530122490740=####
- mo####.b####.com/cpro/ui/mads.php?code2=####&b1530122521386=####
- up####.yiyuan####.com/android/versioninfo.json?1530122####
- up####.yiyuan####.com/static/css/bonus.css?ver=####
- up####.yiyuan####.com/static/css/style-3.css?ver=####
- up####.yiyuan####.com/static/images/default_avatar.png
- up####.yiyuan####.com/static/images/dftt.png
- up####.yiyuan####.com/static/images/forbidden_login/i1021-45.png
- up####.yiyuan####.com/static/images/forbidden_login/qq1021-btn.png
- up####.yiyuan####.com/static/images/t-icons.png
- up####.yiyuan####.com/static/js/jquery-1.11.2.min.js
- up####.yiyuan####.com/static/js/libs.js?ver=####
- w####.chinaca####.com/wechat/redirect_v2?params=####&target_domain=####
- a####.exc.mob.com/errconf
- app.yiyuan####.com/device/info
- up####.yiyuan####.com/android_v2/installed
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/JPushSA_Config.xml
- /data/data/####/QIXIAO_ANDROID_COMMON.xml
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/__x_adsdk_agent_header__.xml
- /data/data/####/__xadsdk__remote__final__builtin__.jar
- /data/data/####/__xadsdk__remote__final__c4774f7c-d2cb-4bcc-8d3...2c.jar
- /data/data/####/__xadsdk_downloaded__version__.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.baidu.mobads.loader.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/http_app.yiyuanzuan.com_0.localstorage-journal
- /data/data/####/http_mobads.baidu.com_0.localstorage-journal
- /data/data/####/index
- /data/data/####/jpush_stat_cache.json
- /data/data/####/libjiagu.so
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/mobclick_agent_cached_com.qixiao.yyz19
- /data/data/####/multidex.version.xml
- /data/data/####/share_sdk_1.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.dk
- /data/media/####/.lock
- /data/media/####/yiyuanzhuan.apk
- chmod 755 <Package Folder>/files/libjiagu.so
- jpush206
- libjiagu
- neh
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding