Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ads.w####.cn:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) o####.b####.cn.####.com:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) t2.2####.com.####.com:80
- TCP(HTTP/1.1) app.w####.cn:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) www.zbj####.com:80
- ads.w####.cn
- app.w####.cn
- im####.w####.cn
- mi.g####.qq.com
- o####.b####.cn
- oc.u####.com
- qzones####.g####.cn
- s####.e.qq.com
- t2.2####.com
- wap####.w####.cn
- www.zbj####.com
- ads.w####.cn/action/ad/show?app_id=####&udid=####&imsi=####&net=####&bas...
- ads.w####.cn/action/miniad/ad?app_id=####&udid=####&imsi=####&net=####&b...
- ads.w####.cn/action/pop_ad/ad?app_id=####&udid=####&imsi=####&net=####&b...
- app.w####.cn/action/account/getinfo?app_id=####&udid=####&imsi=####&net=...
- app.w####.cn/action/connect/active?app_id=####&udid=####&imsi=####&net=#...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/icon-close.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/inter_close_lo...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/popup_ad_car_b...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/tsa_ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/images/tsa_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/interstitial.appcache
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/interstitial.html
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/js-release/20170821/i...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android01/js/lib/require.js
- t2.2####.com.####.com/uploads/tu/201504/670/slt.jpg
- www.zbj####.com/uploads/allimg/1508/2_0P42324301924.jpg
- www.zbj####.com/uploads/allimg/160102/202U53412-0-lp.jpg
- www.zbj####.com/uploads/allimg/160909/2-160Z91Q6400-L.jpg
- www.zbj####.com/uploads/allimg/160920/2-1609201012190-L.jpg
- www.zbj####.com/uploads/allimg/161026/2-1610261501390-L.jpg
- www.zbj####.com/uploads/allimg/161027/2-16102GA4580-L.jpg
- www.zbj####.com/uploads/allimg/161027/2-16102GAK50-L.jpg
- www.zbj####.com/uploads/allimg/161107/160J03P2-0.jpg
- www.zbj####.com/uploads/allimg/161115/2-161115141I50-L.jpg
- app.w####.cn/action/user_info
- o####.b####.cn.####.com/8/create
- o####.b####.cn.####.com/8/find
- o####.b####.cn.####.com/8/init
- o####.b####.cn.####.com/8/secret
- oc.u####.com/v2/check_config_update
- oc.u####.com/v2/get_update_time
- s####.e.qq.com/activate
- s####.e.qq.com/err
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/333036164018.983
- /data/data/####/333036164018.983 (deleted)
- /data/data/####/333036165285.543
- /data/data/####/333036165285.543 (deleted)
- /data/data/####/333036165868.421
- /data/data/####/333036165868.421 (deleted)
- /data/data/####/333036169686.769
- /data/data/####/333036169686.769 (deleted)
- /data/data/####/333036169951.683
- /data/data/####/333036169951.683 (deleted)
- /data/data/####/333036170042.312
- /data/data/####/333036170042.312 (deleted)
- /data/data/####/333036170558.592
- /data/data/####/333036170558.592 (deleted)
- /data/data/####/333036171119.833
- /data/data/####/333036171119.833 (deleted)
- /data/data/####/333036171657.598
- /data/data/####/333036171657.598 (deleted)
- /data/data/####/333036173092.685
- /data/data/####/333036173092.685 (deleted)
- /data/data/####/98841760411.0051
- /data/data/####/98841760411.0051 (deleted)
- /data/data/####/98841760786.9072
- /data/data/####/98841760786.9072 (deleted)
- /data/data/####/98841760959.8996
- /data/data/####/98841760959.8996 (deleted)
- /data/data/####/98841762093.1467
- /data/data/####/98841762093.1467 (deleted)
- /data/data/####/98841762171.7705
- /data/data/####/98841762171.7705 (deleted)
- /data/data/####/98841762198.6682
- /data/data/####/98841762198.6682 (deleted)
- /data/data/####/98841762351.8947
- /data/data/####/98841762351.8947 (deleted)
- /data/data/####/98841762518.4654
- /data/data/####/98841762518.4654 (deleted)
- /data/data/####/98841762678.0686
- /data/data/####/98841762678.0686 (deleted)
- /data/data/####/98841763103.988
- /data/data/####/98841763103.988 (deleted)
- /data/data/####/AppSettings.xml
- /data/data/####/CacheTime.dat
- /data/data/####/DZTPreferences.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/ShowAdFlag.xml
- /data/data/####/bmob_sp.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/index
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_cached_com.mynk.player4
- /data/data/####/onlineconfig_agent_online_setting_com.mynk.player.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/update_lc
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/xUtils_http_cache.db
- /data/data/####/xUtils_http_cache.db-journal
- /data/data/####/xUtils_http_cookie.db
- /data/data/####/xUtils_http_cookie.db-journal
- /data/media/####/.nomedia
- /data/media/####/AppPackage.dat
- /data/media/####/ApplicationCache.db-journal
- /data/media/####/CacheTime.dat
- /data/media/####/UnPackage.dat
- /data/media/####/android
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- bmob
- libjiagu
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- DES-CBC-PKCS5Padding
- AES-CBC-PKCS5Padding
- DES-CBC-PKCS5Padding