Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) sh.wagbr####.aliyun####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) r####.uu.qq.com:80
- TCP(TLS/1.0) newton####.ele.me:443
- TCP(TLS/1.0) mobile-####.ele.me:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) ope####.b####.com:443
- TCP(TLS/1.0) g####.ele.me:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5224
- a####.ele.me
- a####.u####.com
- access-####.ele.me
- amap####.cn-hang####.oss####.####.com
- c####.g####.ig####.com
- c.sz.gt.####.com
- g####.ele.me
- mobile-####.ele.me
- newton####.ele.me
- ope####.b####.com
- p####.ele.me
- r####.uu.qq.com
- regi####.xm####.xi####.com
- res####.a####.com
- sdk.c####.ig####.com
- sdk.o####.i####.####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- sh.wagbr####.aliyun####.com/sdkcoor/android/x86/libJni_wgs2gcj.so
- a####.u####.com/app_logs
- r####.uu.qq.com/rqd/sync
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/AndroidTTS.xml
- /data/data/####/Gandalf_Counter.xml
- /data/data/####/apm_db-journal
- /data/data/####/bugly_data.xml
- /data/data/####/bugly_db_-journal
- /data/data/####/dafile.db
- /data/data/####/dafile.db-journal
- /data/data/####/data_storage-journal
- /data/data/####/dex_opt.xml
- /data/data/####/dso_deps
- /data/data/####/dso_lock
- /data/data/####/dso_manifest
- /data/data/####/dso_state
- /data/data/####/exchangeIdentity.json
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/increment.db-journal
- /data/data/####/init.pid
- /data/data/####/init_c.pid
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/loctemp.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/me.ele.foundation.xml
- /data/data/####/me.ele.push.preferences.xml
- /data/data/####/me.ele.shopcenter_Gandalf-journal
- /data/data/####/me_ele_imf_config_manager.xml
- /data/data/####/mipush.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/multidex.version.xml
- /data/data/####/persistent_manage.xml
- /data/data/####/pref.xml
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/sp_eleme_foundation.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/.config
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/alsn.db
- /data/media/####/alsn.db-journal
- /data/media/####/app.db
- /data/media/####/bd_etts_speech_female.dat
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/me.ele.shopcenter.db
- /system/bin/sh -c getprop ro.board.platform
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- BDSpeechDecoder_V1
- Bugly
- bd_etts
- bdtts
- deadpool
- gnustl_shared
- libjiagu
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- DES-CBC-PKCS5Padding