Technical information
- Adware.Gexin.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) z.c####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) hm.b####.com:80
- TCP(HTTP/1.1) c.c####.com:80
- TCP(HTTP/1.1) api.18t####.com:80
- TCP(HTTP/1.1) gm.mm####.com:80
- TCP 1####.121.49.82:7002
- UDP s.j####.cn:19000
- TCP 1####.121.49.96:7010
- a####.u####.com
- api.18t####.com
- c####.mm####.com
- c.c####.com
- h####.c####.com
- hm.b####.com
- s.j####.cn
- s11.c####.com
- api.18t####.com/?c=####&a=####&app=####&act=####&vs=####&url=/ap####&a=#...
- api.18t####.com/index.php?c=####&a=####&ids=####&dk=####&ak=####
- c.c####.com/core.php?web_id=####&t=####
- c.c####.com/stat.php?id=####&web_id=####
- gm.mm####.com/9.gif?abc=####&rnd=####
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&ep=####&et=#...
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&et=####&ja=#...
- hm.b####.com/hm.js?6b0d092####
- z.c####.com/stat.htm?id=####&r=####&lg=####&ntime=####&cnzz_eid=####&sho...
- a####.u####.com/app_logs
- api.18t####.com/?c=####&a=####&dk=####&ak=####
- /data/data/####/.jiagu.ls
- /data/data/####/JPushSA_Config.xml
- /data/data/####/NN_AdsMogo.txt
- /data/data/####/cn.jpush.serverconfig.xml
- /data/data/####/com.chw.nnhysj.app_preferences.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/index
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/libjiagu.so
- /data/data/####/nnhysj_BannerData.txt
- /data/data/####/openudid_prefs.xml
- /data/data/####/rep.db-journal
- /data/data/####/statistics_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.nomedia
- /data/media/####/.push_deviceid
- jpush181
- libjiagu