Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) v2.g####.qq.com:80
- TCP(HTTP/1.1) t####.dmp.y####.net:80
- TCP(HTTP/1.1) h####.b####.com:80
- TCP(HTTP/1.1) s####.tc.qq.com:80
- TCP(HTTP/1.1) l####.c####.q####.####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- TCP(HTTP/1.1) s####.gw.y####.net:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) sc.g####.qq.com:80
- TCP(HTTP/1.1) app.w####.cn:80
- TCP(HTTP/1.1) imgc####.qq.com.####.com:80
- TCP(HTTP/1.1) h####.y####.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) s.y####.net:80
- TCP(TLS/1.0) t####.qq.com:443
- TCP(TLS/1.0) b####.m.jd.com:443
- TCP(TLS/1.0) wl.jd.com.####.com:443
- TCP(TLS/1.0) he####.jd.com:443
- TCP(TLS/1.0) ur####.jd.com:443
- TCP(TLS/1.0) 36####.edges####.net:443
- TCP(TLS/1.0) i####.j####.com:443
- TCP(TLS/1.0) z####.jd.com:443
- TCP(TLS/1.0) 1####.217.17.110:443
- 8####.nd####.y####.com
- and####.b####.qq.com
- app.w####.cn
- black####.m.jd.com
- h####.b####.com
- h####.y####.com
- h5.360bu####.com
- he####.jd.com
- i####.360bu####.com
- i####.360bu####.com
- i####.360bu####.com
- i####.360bu####.com
- i####.360bu####.com
- i####.360bu####.com
- i####.360bu####.com
- imgc####.qq.com
- m####.m.jd.com
- mi.g####.qq.com
- p####.ugd####.com
- qzones####.g####.cn
- s####.e.qq.com
- s####.gw.y####.net
- s.y####.net
- sc.g####.qq.com
- sdk.st####.y####.com
- t####.dmp.y####.net
- t####.qq.com
- ur####.jd.com
- v2.g####.qq.com
- w####.jd.com
- w####.jd.com
- w####.jd.com
- wq####.jd.com
- wq.360bu####.com
- z####.jd.com
- zdl####.d####.com
- app.w####.cn/action/connect/active?app_id=####&udid=####&imsi=####&net=#...
- h####.y####.com/
- imgc####.qq.com.####.com/qzone/biz/gdt/mob/sdk/v2/android02/images/tsa_a...
- imgc####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/progu...
- l####.c####.q####.####.com/core/aos-dex/1609/6446/4595cef0.jar
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- s####.gw.y####.net/stat/v3/udt2?appid=####&s=####
- s####.tc.qq.com/gdt/0/transformer_13979473094295907619_1557710351_80.jpg...
- s.y####.net/aos/v3/initf?s=####
- s.y####.net/stat/aos/v3/pkc?s=####
- s.y####.net/stat/aos/v3/pku?s=####
- sc.g####.qq.com/gdt_mclick.fcg?viewid=####&jtype=####&i=####&os=####&asi...
- v2.g####.qq.com/gdt_stats.fcg?viewid=####&i=####&os=####&xp=####&gap=####
- and####.b####.qq.com/rqd/async?aid=####
- app.w####.cn/action/user_info
- h####.b####.com/app.gif
- s####.e.qq.com/activate
- s####.e.qq.com/click
- s####.e.qq.com/msg
- t####.dmp.y####.net/v1/android/packages?rt=####&sign=####
- t####.dmp.y####.net/v2/android/pkgtime?rt=####&sign=####
- /data/data/####/.jg.ic
- /data/data/####/1002
- /data/data/####/1004
- /data/data/####/5ead7c1916e321af3ee0d7d6aa595238.temp
- /data/data/####/8cf429709754ffc952f46dce53cc1020-journal
- /data/data/####/919891dcd6e2a4ba362e0a1bffcf0f4a.temp
- /data/data/####/AppSettings.xml
- /data/data/####/BUGLY_COMMON_VALUES.xml
- /data/data/####/C0XKJAO3JLZKJPDKJFXLINQCJIOAOD.xml
- /data/data/####/CE94557724F842149D690D0E8CBB1CBD.xml
- /data/data/####/CacheTime.dat
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/P15pKIjsm64m
- /data/data/####/P15pKIjsm64m-journal
- /data/data/####/Shared_settings.xml
- /data/data/####/ShowAdFlag.xml
- /data/data/####/T1oX0rhhuXWt
- /data/data/####/T1oX0rhhuXWt-journal
- /data/data/####/XKwVoK0huy3R
- /data/data/####/XKwVoK0huy3R-journal
- /data/data/####/ZDLLQ
- /data/data/####/ZDLLQ-journal
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/bugly_db_-journal
- /data/data/####/com.fax.zdllq.BETA_VALUES.xml
- /data/data/####/com.fax.zdllq.push_sync.xml
- /data/data/####/com.fax.zdllq.xml
- /data/data/####/com.fax.zdllq_preferences.xml
- /data/data/####/crashrecord.xml
- /data/data/####/d06709411a2770797352fbd33edd42cc
- /data/data/####/d06709411a2770797352fbd33edd42cc-journal
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dbVersion.xml
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/df612b08b286f7aac08e7e56c761195c
- /data/data/####/df612b08b286f7aac08e7e56c761195c-journal
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/f_000005
- /data/data/####/f_000006
- /data/data/####/f_000007
- /data/data/####/f_000008
- /data/data/####/f_000009
- /data/data/####/f_00000a
- /data/data/####/f_00000b
- /data/data/####/f_00000c
- /data/data/####/f_00000d
- /data/data/####/f_00000e
- /data/data/####/f_00000f
- /data/data/####/f_000010
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/getanchor.js
- /data/data/####/getform.js
- /data/data/####/home.html
- /data/data/####/index
- /data/data/####/index_2.01.css
- /data/data/####/jqIqJYOT3JpT
- /data/data/####/jqIqJYOT3JpT-journal
- /data/data/####/libjiagu.so
- /data/data/####/line.png
- /data/data/####/local_crash_lock
- /data/data/####/multidex.version.xml
- /data/data/####/page_1557741143627.html
- /data/data/####/plugin-deploy.jar
- /data/data/####/plugin-deploy.key
- /data/data/####/pst.xml
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/security_info
- /data/data/####/sprite.png
- /data/data/####/sprite@2x.png
- /data/data/####/update_lc
- /data/data/####/wIU6pTyUBYWX
- /data/data/####/wIU6pTyUBYWX-journal
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/data/####/wsUL1uCdKvjD
- /data/data/####/wsUL1uCdKvjD-journal
- /data/data/####/ymdex.jar.new
- /data/media/####/.cuid
- /data/media/####/AppPackage.dat
- /data/media/####/ApplicationCache.db-journal
- /data/media/####/ApplicationCache.db-journal (deleted)
- /data/media/####/CacheTime.dat
- /data/media/####/DXTX902KJZX9JASLDJF
- /data/media/####/DXTX902KJZX9JASLDJF.ymtf
- /data/media/####/UnPackage.dat
- /data/media/####/android
- /data/media/####/https_wqs.jd.com_0.localstorage-journal
- /data/media/####/i42d45df023jnkdd93la483f9xGFKXI
- /data/media/####/lightapp_V4.db
- /data/media/####/lightapp_V4.db-journal
- /data/media/####/s92TjjdfoP2n3o9dfji2l9s1olkjf0p
- /system/bin/cat /sys/devices/system/cpu/kernel_max
- /system/bin/sh -c getprop
- /system/bin/sh -c type su
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- BaiduMapSDKInit
- Bugly
- libjiagu
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DES
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES
- RSA-ECB-PKCS1Padding
- AES
- AES-ECB-PKCS7Padding
- AES-GCM-NoPadding
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES
- RSA-ECB-PKCS1Padding