Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.177.14.94:80
- TCP(HTTP/1.1) www.go####.com:80
- UDP(NTP) 1.cn.p####.####.org:123
- TCP(TLS/1.0) s####.j####.cn:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) 74.1####.131.113:443
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) gmscomp####.google####.com:443
- TCP(TLS/1.0) and####.google####.com:443
- TCP(TLS/1.0) al####.yuncai####.com:443
- TCP(TLS/1.0) rr6---s####.g####.com:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.0) app.x####.yuncai####.com:443
- TCP(TLS/1.0) 1####.177.14.94:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) jic.talking####.com:443
- TCP(TLS/1.2) 1####.177.14.94:443
- TCP(TLS/1.2) www.go####.com:443
- TCP(TLS/1.2) gmscomp####.google####.com:443
- TCP(TLS/1.2) and####.google####.com:443
- TCP(TLS/1.2) 74.1####.131.101:443
- UDP s.j####.cn:19000
- TCP 1####.71.82.204:7003
- UDP www.gst####.com:443
- UDP rr2---s####.g####.com:443
- UDP gmscomp####.google####.com:443
- 1.cn.p####.####.org
- al####.yuncai####.com
- and####.a####.go####.com
- and####.google####.com
- app.x####.yuncai####.com
- f####.gst####.com
- gmscomp####.google####.com
- i####.cn
- jic.talking####.com
- m####.go####.com
- p####.google####.com
- rr2---s####.g####.com
- rr6---s####.g####.com
- rr9---s####.g####.com
- s####.j####.cn
- s.j####.cn
- safebro####.google####.com
- t####.talking####.net
- td.m####.cn
- up####.sdk.jig####.cn
- www.go####.com
- www.gst####.com
- al####.yuncai####.com:443/upload/2018-02-01/5a72def456f0b.png
- al####.yuncai####.com:443/upload/2020-02-04/5e390f4aa0f2d.jpg
- www.go####.com/gen_204
- app.x####.yuncai####.com:443/account/get_user_info.html
- app.x####.yuncai####.com:443/config/auto_update.html
- app.x####.yuncai####.com:443/config/get_ads.html
- app.x####.yuncai####.com:443/cs/get_message.html
- app.x####.yuncai####.com:443/information/news_detail.html
- app.x####.yuncai####.com:443/information/news_list.html
- app.x####.yuncai####.com:443/reminding/get_unread_reminds.html
- app.x####.yuncai####.com:443/stock/detail.html
- app.x####.yuncai####.com:443/stock/index_list.html
- app.x####.yuncai####.com:443/stock/index_list_data.html
- app.x####.yuncai####.com:443/stock/k_line_chart.html
- app.x####.yuncai####.com:443/stock/minute_by_minute_chart.html
- app.x####.yuncai####.com:443/stock/news_remind.html
- app.x####.yuncai####.com:443/user/get_stock_info.html
- s####.j####.cn:443/v2/report
- /data/data/####/-1239879163
- /data/data/####/-1561846189
- /data/data/####/.jg.ic
- /data/data/####/1571372196
- /data/data/####/1631906306
- /data/data/####/251331217
- /data/data/####/791c9a030b27712aa7d77f03121d39a77e0b938bdee9239...450a.0
- /data/data/####/913543042
- /data/data/####/JPushSA_Config.xml
- /data/data/####/JPushSA_Config.xml.bak
- /data/data/####/JPushSA_Config.xml.bak (deleted)
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime.xml.bak (deleted)
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime.xml.bak
- /data/data/####/TDpref_shorttime.xml.bak (deleted)
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/appPackageNames_v2
- /data/data/####/classes.dex
- /data/data/####/classes.oat
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.android.user.profile.xml.bak
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/com.pointercn.yunvs_preferences.xml
- /data/data/####/d9e7394cce9acc3b0d1718ab05589cec9779f14ee24a23c....0.tmp
- /data/data/####/d9e7394cce9acc3b0d1718ab05589cec9779f14ee24a23c...d234.0
- /data/data/####/file_system_setting.xml
- /data/data/####/file_system_setting.xml.bak
- /data/data/####/file_user_info.xml
- /data/data/####/index
- /data/data/####/journal
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_local_notification.db-journal (deleted)
- /data/data/####/jpush_local_notification.db-wal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-journal (deleted)
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/jpush_statistics.db-wal (deleted)
- /data/data/####/libjiagu.so
- /data/data/####/metrics_guid
- /data/data/####/mpush_app.db-journal
- /data/data/####/mpush_gateway_preferences_file
- /data/data/####/mpush_version_preferences_file
- /data/data/####/proc_auxv
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/the-real-index
- /data/data/####/wakeup_cache.json
- /data/data/####/yuncaijing.db-journal
- /data/media/####/.push_deviceid
- /data/media/####/.tcookieid
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu.so
- getprop
- libjcore119
- libjiagu
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding