Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) api.52####.com:80
- TCP(HTTP/1.1) t####.qq.com:80
- TCP(HTTP/1.1) cgi.con####.qq.com:80
- TCP(HTTP/1.1) t####.qq.com:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP t####.qq.com:80
- TCP t####.qq.com:443
- api.52####.com
- api.map.b####.com
- cgi.con####.qq.com
- pi####.qq.com
- t####.qq.com
- cgi.con####.qq.com/qqconnectopen/openapi/policy_conf?sdkv=####&appid=###...
- api.52####.com/app/getConfig
- api.52####.com/app/getUpgrade
- api.52####.com/push/getTag
- t####.qq.com/
- t####.qq.com/203.205.254.169:80/
- t####.qq.com:443/203.205.254.169:443/
- /data/data/####/-2063382505141149181
- /data/data/####/-620750058-569746145
- /data/data/####/.com.kuaiyu.mimo;xg_service_v2.xg.stat..xml
- /data/data/####/.jg.ic
- /data/data/####/.tpns.xml.xml
- /data/data/####/.tpush_mta.xml
- /data/data/####/4596518961328184720
- /data/data/####/MultiDex.lock
- /data/data/####/QALConfigStore.dat
- /data/data/####/TLS_DEVICE_INFO.xml
- /data/data/####/WLOGIN_DEVICE_INFO.xml
- /data/data/####/authStatus_com.kuaiyu.mimo.xml
- /data/data/####/com.mimo.preference.xml
- /data/data/####/com.tencent.open.config.json.1105377083
- /data/data/####/device_id.xml
- /data/data/####/disk_entries_list_image_cache_1010609892.xml
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/mm.db
- /data/data/####/multidex.version.xml
- /data/data/####/preference_push.xml
- /data/data/####/qalimid
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/report_v5.msgstore-journal
- /data/data/####/tls_device.dat
- /data/data/####/tpush.shareprefs.xml
- /data/data/####/wlogin_device.dat
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/app.19.12.04.18.log
- /data/media/####/imsdk_20191204.log
- /data/media/####/log_app_12_04.txt
- /data/media/####/log_receivers_12_04.txt
- /data/media/####/sdk.19.12.04.18.log
- <Package Folder>/lib/libxguardian.so <Package>,2100206280; 55774 203.205.235.17 [{"idx":0,"ts":%d,"et":2000,"si":0,"ui":"<IMEI>","ky":"Axg%lu","mid":"0","ev":{"ov":"18","sr":"600*752","md":"<System Property>","lg":"en","sv":"2.46","mf":"unknown","apn":"%s"}}] 0 18
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- sh <Package Folder>/lib/libxguardian.so <Package>,2100206280; 55774 203.205.235.17 [{ idx :0, ts :%d, et :2000, si :0, ui : <IMEI> , ky : Axg%lu , mid : 0 , ev :{ ov : 18 , sr : 600*752 , md : <System Property> , lg : en , sv : 2.46 , mf : unknown , apn : %s }}] 0 18
- BaiduMapSDK_base_v4_3_2
- _imcore_jni_gyp
- libjiagu
- libwtcrypto
- qalcodecwrapper
- qalmsfboot
- tpnsSecurity
- AES-CBC-PKCS5Padding
- AES-CFB8-NoPadding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1PADDING
- AES-CFB8-NoPadding