Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) api.icaipia####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(TLS/1.0) api.icaipia####.com:443
- TCP(TLS/1.0) 1####.217.19.206:443
- a####.u####.com
- api.icaipia####.com
- p.wangca####.com
- s0.icaipia####.com
- api.icaipia####.com/api/v1/c/p?p=####
- api.icaipia####.com/api/v5/server/timestamp
- api.icaipia####.com/api/v6/lotterynums/newlatest?keys=####
- api.icaipia####.com/api/v6/lotterynums/newlist/guangdong_n11x5/-1
- api.icaipia####.com/api/v6/lotterynums/newlist/guangdong_n11x5/5241
- api.icaipia####.com/api/v7/misscalculator/supportkey
- t####.c####.q####.####.com/avatar/181204/8a89fb2ddd5e7679074a3b79791ad25...
- t####.c####.q####.####.com/avatar/181210/36e40d0918027456786fdd5cc56fc38...
- a####.u####.com/app_logs
- api.icaipia####.com/api/v5/server/activate
- /data/data/####/-14932529442085446822
- /data/data/####/-149325294475075523
- /data/data/####/-19096045061170456815
- /data/data/####/-2115136484-96403297
- /data/data/####/-321434676-1493157267
- /data/data/####/-421293648-1767012888
- /data/data/####/-740949496-862235719
- /data/data/####/-97258451439919928
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1510430532619833406
- /data/data/####/1733640753-972209822
- /data/data/####/17729035671292121068
- /data/data/####/21090119561046727059
- /data/data/####/2d76acc42c59815dacc5b3d354a62bd98015b6e4d9df9ca....0.tmp
- /data/data/####/__cfg_lk_1312
- /data/data/####/cache.xml
- /data/data/####/cache_int.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.mango.n11x5_preferences.xml
- /data/data/####/com.mango.n11x5_preferences.xml.bak
- /data/data/####/config.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/ffbad329bb619c1cd3f69ec48e299d5e4a0d68dca62f33e....0.tmp
- /data/data/####/getui_sp.xml
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/multidex.version.xml
- /data/data/####/setLottery.db
- /data/data/####/setLottery.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getuiext2
- libjiagu
- AES-CBC-PKCS7Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS7Padding
- DES