Technical information
- Adware.Egame.1
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) pg.x####.com:80
- TCP(HTTP/1.1) mdm.ope####.360.cn:80
- TCP(HTTP/1.1) p.s.3####.cn:80
- UDP(NTP) 1.cn.p####.####.org:123
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) 2####.58.212.142:443
- TCP 36.1####.235.53:80
- 1.cn.p####.####.org
- av1.x####.com
- i####.cn
- mdm.ope####.360.cn
- p.s.3####.cn
- pg.x####.com
- s####.s.360.cn
- mdm.ope####.360.cn/list/get?product=####&source=####&version=####
- p.s.3####.cn/update/update.php?p=####
- pg.x####.com/api/q/a/3a3b182366b749743e552362c9e93e56a
- pg.x####.com/api/statis/3a3b182366b749743e552362c9e93e56a/app-69534F4D2A...
- /data/data/####/.jg.ic
- /data/data/####/QH_DeviceSDK.xml
- /data/data/####/QH_SDK_M2.xml
- /data/data/####/QH_SDK_UserData.xml
- /data/data/####/QH_SDK_UserData02522a2b2726fb0a03bb19f2d8d9524d.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/Y29tLnNnLmF0bWtwencucWlodQ==.tick.lock
- /data/data/####/com.sg.atmkpzw.qihu_preferences.xml
- /data/data/####/libjiagu-1869300100.so
- /data/data/####/local.jar
- /data/data/####/sdk_apk_info.xml
- /data/data/####/talkingdata_app.db-journal
- /data/data/####/talkingdata_app_process_preferences_file
- /data/data/####/talkingdata_app_version_preferences_file
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/tdlock.txt
- /data/data/####/wwoclasses.dex
- /data/data/####/wwoclasses.dve
- /data/data/####/wwoclasses.jar
- /data/media/####/.deviceId
- /data/media/####/.nomedia
- /data/media/####/.tcookieid
- /data/media/####/02522a2b2726fb0a03bb19f2d8d9524d
- /data/media/####/Bb8
- /data/media/####/Bb8 (deleted)
- /data/media/####/EtJ
- /data/media/####/EtJ (deleted)
- /data/media/####/NlF
- /data/media/####/NlF (deleted)
- /data/media/####/Y29tLnNnLmF0bWtwencucWlodQ==
- /data/media/####/Y29tLnNnLmF0bWtwencucWlodQ== (deleted)
- /data/media/####/cYs
- /data/media/####/cYs (deleted)
- /data/media/####/w5b
- /data/media/####/w5b (deleted)
- chmod 755 <Package Folder>/.jiagu/libjiagu-1869300100.so
- netstat -apn
- libjiagu-1869300100
- me_unipay
- megjb
- qhsdk
- AES-CBC-PKCS7Padding
- AES-CBC-PKCS7Padding