Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) reso####.msg.xi####.net:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) www.opendre####.cn:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) oth.up####.mdt.####.com:8080
- TCP(HTTP/1.1) s####.tc.qq.com:80
- TCP(TLS/1.0) h####.b####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP 4####.62.94.2:443
- TCP 47.74.1####.158:5222
- 7x####.c####.z0.####.com
- a####.exc.mob.com
- h####.b####.com
- imgc####.qq.com
- mi.g####.qq.com
- oth.up####.mdt.####.com
- p####.ugd####.com
- regi####.xm####.xi####.com
- reso####.msg.xi####.net
- s####.e.qq.com
- ssl.gst####.com
- www.go####.com
- www.gst####.com
- www.opendre####.cn
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- reso####.msg.xi####.net/gslb/?ver=####&type=####&conpt=d####&uuid=####&l...
- s####.tc.qq.com/gdt/0/transformer_14862517704951522510_1531527759_80.jpg...
- t####.c####.q####.####.com/day2.jpg?attname=####
- t####.c####.q####.####.com/day5.jpg
- www.opendre####.cn/index/getDayRecommendImage
- a####.exc.mob.com/errconf
- oth.up####.mdt.####.com:8080/beacon/vercheck
- s####.e.qq.com/activate
- s####.e.qq.com/msg
- www.opendre####.cn/api/getSettingInfo
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/0305a1bb848bfb50c3b5030a42c25fba9d591e38bf6a059....0.tmp
- /data/data/####/95cced219f270e950a333c6d909984e0.temp
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/XMPushServiceConfig.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1531774850560
- /data/data/####/account_config.xml
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/beacontsa_cover.xml
- /data/data/####/beacontsa_cover_check.lock
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cef153ee59c03a11ea5d4601a254ca854220c29416437ca....0.tmp
- /data/data/####/com.onlybeyond.QRcode;pushservice
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/geofencing.db
- /data/data/####/geofencing.db-journal
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu1571948940.so
- /data/data/####/mipush.xml
- /data/data/####/mipush_account.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/mipush_region
- /data/data/####/mipush_region.lock
- /data/data/####/mobclick_agent_cached_com.onlybeyond.QRcode34
- /data/data/####/qrCode.db-journal
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/tiny_data.data
- /data/data/####/tiny_data.lock
- /data/data/####/umeng_general_config.xml
- /data/data/####/update_lc
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.dic_lock
- /data/media/####/.nomedia
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.rcTag
- /data/media/####/.rc_lock
- /data/media/####/.timestamp
- chmod 755 <Package Folder>/.jiagu/libjiagu1571948940.so
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- sh
- crash_analysis
- libjiagu1571948940
- neh
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding