Technical information
- Adware.Appsad.5.origin
- Android.Mobifun.32
- Android.RemoteCode.88.origin
- Android.Xiny.73.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) api.myfree####.com:80
- TCP(HTTP/1.1) www.4g####.net:80
- TCP(HTTP/1.1) wa####.go2c####.org:80
- TCP(HTTP/1.1) smart####.google####.com:80
- TCP(HTTP/1.1) mo####.go2af####.com:80
- TCP(HTTP/1.1) vi####.ddf####.com:80
- TCP(HTTP/1.1) 45.79.1####.48:80
- TCP(HTTP/1.1) ilv####.com:80
- TCP(HTTP/1.1) cac####.sunm####.edge2be####.com:80
- TCP(HTTP/1.1) t####.sm4####.com:80
- TCP(HTTP/1.1) u####.b####.com:80
- TCP(HTTP/1.1) p####.lead####.com:80
- TCP(HTTP/1.1) www.apxadtr####.net:80
- TCP(HTTP/1.1) www.zfr####.com:80
- TCP(HTTP/1.1) www.okyes####.com:8081
- TCP(HTTP/1.1) www.modam####.es:80
- TCP(HTTP/1.1) api.cloud####.net:80
- TCP(HTTP/1.1) c####.jq####.com:80
- TCP(HTTP/1.1) www.bigt####.com:80
- TCP(HTTP/1.1) api.ki####.com:80
- TCP(HTTP/1.1) monet####.sm4####.com:80
- TCP(HTTP/1.1) camspla####.com:80
- TCP(HTTP/1.1) api.mob####.b####.com:80
- TCP(HTTP/1.1) api.bi####.com:80
- TCP(HTTP/1.1) jsc.m####.com:80
- TCP(HTTP/1.1) pag####.googles####.com:80
- TCP(HTTP/1.1) s2s.go2af####.com:80
- TCP(HTTP/1.1) amc.jiek####.com:80
- TCP(HTTP/1.1) www.greatmo####.mobi:80
- TCP(HTTP/1.1) www.koapk####.com:8081
- TCP(HTTP/1.1) a####.google####.com:80
- TCP(HTTP/1.1) mo.freeind####.com:80
- TCP(HTTP/1.1) offer####.online:80
- TCP(HTTP/1.1) www.myfree####.com:80
- TCP(HTTP/1.1) mo####.tagdel####.com:80
- TCP(HTTP/1.1) s####.mob####.b####.com:80
- TCP(HTTP/1.1) tango####.com:80
- TCP(HTTP/1.1) pl####.mob####.b####.com:80
- TCP(HTTP/1.1) ap####.mobi:80
- TCP(HTTP/1.1) www.cu####.com:80
- TCP(HTTP/1.1) www.google-####.com:80
- TCP(HTTP/1.1) s####.adin####.com:80
- TCP(HTTP/1.1) damnedd####.com:80
- TCP(HTTP/1.1) www.gccom####.nl:80
- TCP(TLS/1.0) p####.lead####.com:443
- TCP(TLS/1.0) cac####.sunm####.edge2be####.com:443
- TCP(TLS/1.0) normale####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) pag####.googles####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) c.n####.com:443
- TCP(TLS/1.0) adser####.go####.nl:443
- TCP(TLS/1.0) cdn.connect####.com:443
- TCP(TLS/1.0) admoust####.go2af####.com:443
- TCP(TLS/1.0) c####.roya####.net:443
- TCP(TLS/1.0) img.mf####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- a####.google####.com
- admoust####.go2af####.com
- adser####.go####.com
- adser####.go####.nl
- amc.jiek####.com
- amc.jiek####.com
- ap####.mobi
- api.bi####.com
- api.cloud####.net
- api.ki####.com
- api.mob####.b####.com
- api.myfree####.com
- c####.jq####.com
- c####.roya####.net
- c.n####.com
- camspla####.com
- cdn.connect####.com
- damnedd####.com
- digital####.com
- googl####.g.doublec####.net
- hy####.com
- ilv####.com
- img.mf####.com
- jsc.m####.com
- koolmed####.com
- mo####.go2af####.com
- mo####.tagdel####.com
- mo.freeind####.com
- mobileo####.site
- monet####.sm4####.com
- normale####.com
- oc.fl####.com
- offer####.online
- p####.lead####.com
- pag####.googles####.com
- pl####.mob####.b####.com
- questio####.com
- s####.adde####.com
- s####.adin####.com
- s####.mob####.b####.com
- s2s.go2af####.com
- smart####.google####.com
- smarto####.site
- st####.adde####.com
- t####.sm4####.com
- tango####.com
- trac####.l####.org
- u####.b####.com
- vi####.ddf####.com
- wa####.go2c####.org
- www.4g####.net
- www.apxadtr####.net
- www.bigt####.com
- www.cu####.com
- www.gccom####.nl
- www.go####.com
- www.google-####.com
- www.greatmo####.mobi
- www.koapk####.com
- www.modam####.es
- www.myfree####.com
- www.okyes####.com
- www.zfr####.com
- a####.google####.com/ajax/libs/jqueryui/1.11.2/jquery-ui.min.js
- amc.jiek####.com/sdkcp/plugUpdate.php?uid=####&model=####&plugVersion=##...
- amc.jiek####.com/sdkcp/push_msgcp_new.php?uid=####&model=####&plugVersio...
- amc.jiek####.com/sdkcp/sale_static_newcp.php?uid=####&model=####&plugVer...
- amc.jiek####.com/sdkcp/user_visit_appcp.php?uid=####&model=####&plugVers...
- amc.jiek####.com/sdkcp/wappush?uid=####&model=####&imei=####&screen_size...
- ap####.mobi/red/881c45ea-aec3-11e7-931e-0aa1dc7bdff2/?alg=####&clickid=#...
- ap####.mobi/red/fc487c12-bfa1-11e5-a414-0cc47a44dbaa/?alg=####&clickid=#...
- api.bi####.com/sdkOffer?os=####&model=####&gaid=####&imei=####&androidId...
- api.cloud####.net/api/v3/template/get?slot_id=####&update_time=####&user...
- api.ki####.com/click?tid=####
- api.ki####.com/express?tid=####
- api.mob####.b####.com/strategy/api/v1/rule/get?p=####&hp=####&l=####&c=#...
- api.myfree####.com/dc?nc=####&site=####
- c####.jq####.com/jquery-1.11.1.min.js
- c####.jq####.com/mobile/1.4.5/jquery.mobile-1.4.5.min.js
- cac####.sunm####.edge2be####.com/SMOutstream/SMIntext/SMIntext.js
- camspla####.com/
- camspla####.com/images/camgirl.jpg
- camspla####.com/images/cfnm-webcams.jpg
- camspla####.com/images/escort-sex.jpg
- camspla####.com/images/free-live-chat.jpg
- camspla####.com/images/ipad-webcam-sex.jpg
- camspla####.com/images/live-webcam-sex.jpg
- camspla####.com/images/massage.jpg
- camspla####.com/images/swinger-webcams.jpg
- camspla####.com/images/webcam-chat.jpg
- camspla####.com/images/webcam-sex.jpg
- camspla####.com/styles/forms.css
- camspla####.com/styles/layout.css
- camspla####.com/styles/navi.css
- camspla####.com/styles/tables.css
- damnedd####.com/gw?sub=5a60a704f07b3f0001a3f448&source=72_&url=https://m...
- damnedd####.com/l/9620465a54ddab9d9aa?sub=####&source=####
- damnedd####.com/l/9620465a54ddab9d9aa?sub=####&source=####&code=####
- ilv####.com/28c88/4acA/76MQ/t-9Gs6VqRfgVCfcgxeCEkAI6SfAXQk8arOD0goKhos-U...
- ilv####.com/55K39/N-7P/Oerf/YaaPe2WRVZ5lZxs3BIiYiZ7_bHHhvSwwgn5hPHpES1sd...
- jsc.m####.com/i/w/iwidentiocio-modamania.es.116524.js?t=####
- mo####.go2af####.com/click?pid=####&offer_id=####&sub5=####&sub1=####
- mo####.go2af####.com/sl?id=####&pid=####&sub3=####
- mo####.tagdel####.com/srv/inimage/15387/add.js?serve=####
- monet####.sm4####.com/?utm_medium=####&utm_campaign=####&cid=####
- monet####.sm4####.com/?utm_term=####&clickverify=####&utm_content=####
- monet####.sm4####.com/proc.php?280a208####
- monet####.sm4####.com/proc.php?68e9ebf####
- offer####.online/r/061720d0-fc57-11e7-ad50-114513a17e6c/0/
- offer####.online/r/061720d0-fc57-11e7-ad50-114513a17e6c/1/
- offer####.online/r/06c4b678-fc57-11e7-b225-1143e7a6e66d/0/
- offer####.online/r/06c4b678-fc57-11e7-b225-1143e7a6e66d/1/
- offer####.online/r/0c206176-fc57-11e7-9b65-11477c7e3f65/0/
- offer####.online/r/0c206176-fc57-11e7-9b65-11477c7e3f65/1/
- offer####.online/r/11a63fa8-fc57-11e7-a9a8-11420bcdd3a3/0/
- offer####.online/r/11a63fa8-fc57-11e7-a9a8-11420bcdd3a3/1/
- offer####.online/r/153ac3fa-fc57-11e7-bf26-1145b12038a9/0/
- offer####.online/r/f2e542f8-fc56-11e7-a594-1143a4a60a15/0/
- offer####.online/r/f2e542f8-fc56-11e7-a594-1143a4a60a15/1/
- offer####.online/r/f2efcbb0-fc56-11e7-a401-1145b11fea16/0/
- offer####.online/r/f2efcbb0-fc56-11e7-a401-1145b11fea16/1/
- offer####.online/r/f8dc6600-fc56-11e7-9c48-114513a177de/0/
- offer####.online/r/f8dc6600-fc56-11e7-9c48-114513a177de/1/
- offer####.online/r/ff54cd60-fc56-11e7-823d-1146d4804d48/0/
- offer####.online/r/ff54cd60-fc56-11e7-823d-1146d4804d48/1/
- p####.lead####.com/?m=####&a=####&idoferta=####&fc=####&rr=####&alt=####...
- pag####.googles####.com/pagead/js/adsbygoogle.js
- pag####.googles####.com/pagead/js/r20180116/r20170110/show_ads_impl.js
- pag####.googles####.com/pagead/show_ads.js
- s2s.go2af####.com/click?pid=####&offer_id=####
- s2s.go2af####.com/click?pid=####&offer_id=####&sub1=####&sub2=####
- smart####.google####.com/?utm_medium=####&utm_campaign=####&1=####&cid=#...
- smart####.google####.com/?utm_term=####&clickverify=####&utm_content=####
- smart####.google####.com/proc.php?216b49c####
- t####.sm4####.com/click?cid=####&s1=####&s2=####
- tango####.com/126795_nl_1561_android?rpm=0.2&fallbackUrl=https://digital...
- tango####.com/66291_nl_5587_android?rpm=0.2&fallbackUrl=https://mobileof...
- u####.b####.com/setting/grobal_strategy?p=####&hp=####&l=####&c=####&pro...
- wa####.go2c####.org/aff_c?offer_id=####&aff_id=####
- wa####.go2c####.org/aff_c?offer_id=####&aff_id=####&aff_sub=####&aff_sub...
- www.apxadtr####.net/iclk/redirect.php?apxcode=####&id=####&dv2=####
- www.apxadtr####.net/iclk/redirect.php?code=####&id=####&dv2=####
- www.cu####.com/20180103150757.gen521_BdJar_NgpDex_D827_0103.zip
- www.gccom####.nl/?f=####
- www.google-####.com/__utm.gif?utmwv=1.4&utmn=1248769662&utmcs=UTF-8&utms...
- www.google-####.com/urchin.js
- www.greatmo####.mobi/?sl=####&data1=####&data2=####&data3=####
- www.modam####.es/index_IW.php?utm_source=####&utm_medium=####&utm_term=#...
- www.myfree####.com/?cam=####
- www.myfree####.com/_js/mfccore.js?vcc=####
- www.myfree####.com/_js/top.js?vcc=####
- www.myfree####.com/css/mfc_style.css?no_cache=####
- www.myfree####.com/css/style.css?no_cache=####
- www.myfree####.com/css/videojs.css?no_cache=####
- www.myfree####.com/css/videoplayer.css?no_cache=####
- www.myfree####.com/enter.php?cam=####
- www.myfree####.com/js/PluginDetect.js?vcc=####
- www.myfree####.com/js/common_shortcuts.js?vcc=####
- www.myfree####.com/js/flash_detect.js?vcc=####
- www.myfree####.com/myfreecams700.jpg
- api.bi####.com/un
- mo.freeind####.com/detail/getOfferListNew?enc=####
- pl####.mob####.b####.com/ad_dex.php
- s####.adin####.com/track/ds?sdk_version=####&platform=####&app_version=#...
- s####.mob####.b####.com/cgi-bin-py/ad_sdk.cgi?ty=####&enc=####&bt=####
- vi####.ddf####.com/api/ls
- vi####.ddf####.com/api/o
- vi####.ddf####.com/api/pc
- vi####.ddf####.com/api/va
- www.4g####.net/ad/adc?gffw=####&frrw=####&zfbd=####&dlkvv=####&wdazz=###...
- www.bigt####.com/ad/adc?gffw=####&frrw=####&zfbd=####&dlkvv=####&wdazz=#...
- www.koapk####.com:8081/sm/sr/rt/ry
- www.okyes####.com:8081/sdk/nsd.action?b=####
- www.zfr####.com/up.do
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/.mbj/####/classes.zip
- <Package Folder>/cache/####/data_0
- <Package Folder>/cache/####/data_1
- <Package Folder>/cache/####/data_2
- <Package Folder>/cache/####/data_3
- <Package Folder>/cache/####/f_000001
- <Package Folder>/cache/####/f_000002
- <Package Folder>/cache/####/f_000003
- <Package Folder>/cache/####/f_000004
- <Package Folder>/cache/####/f_000005
- <Package Folder>/cache/####/f_000006
- <Package Folder>/cache/####/f_000007
- <Package Folder>/cache/####/f_000008
- <Package Folder>/cache/####/f_000009
- <Package Folder>/cache/####/f_00000a
- <Package Folder>/cache/####/f_00000b
- <Package Folder>/cache/####/f_00000c
- <Package Folder>/cache/####/f_00000d
- <Package Folder>/cache/####/f_00000e
- <Package Folder>/cache/####/f_00000f
- <Package Folder>/cache/####/index
- <Package Folder>/cache/cc.jar
- <Package Folder>/databases/adblib.db-journal
- <Package Folder>/databases/bdownloaders.db-journal
- <Package Folder>/databases/easv.data-journal
- <Package Folder>/databases/mc_cache.db-journal
- <Package Folder>/databases/swith1014.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/webviewCookiesChromium.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/201801161450.apk
- <Package Folder>/files/DMLABC9CE10FEVA11
- <Package Folder>/files/SW01.jar
- <Package Folder>/files/c201801161450.apk
- <Package Folder>/files/d.zip
- <Package Folder>/files/dtemp.apk
- <Package Folder>/files/google.db
- <Package Folder>/files/ob2.zip
- <Package Folder>/shared_prefs/20160121.xml
- <Package Folder>/shared_prefs/20160121.xml.bak (deleted)
- <Package Folder>/shared_prefs/<Package>;side_ct_default.xml
- <Package Folder>/shared_prefs/<Package>;watch_ct_default.xml
- <Package Folder>/shared_prefs/<Package>_ct_default.xml
- <Package Folder>/shared_prefs/AdsBusiness-data.xml
- <Package Folder>/shared_prefs/MobikokCache_Type_1.xml
- <Package Folder>/shared_prefs/MobikokConfig_Type_1.xml
- <Package Folder>/shared_prefs/MobikokConfig_Type_1.xml.bak (deleted)
- <Package Folder>/shared_prefs/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- <Package Folder>/shared_prefs/SpZvShPrefs.xml
- <Package Folder>/shared_prefs/WebViewSettings.xml
- <Package Folder>/shared_prefs/ag.xml
- <Package Folder>/shared_prefs/aps.xml
- <Package Folder>/shared_prefs/apsad.xml
- <Package Folder>/shared_prefs/apscomm.xml
- <Package Folder>/shared_prefs/cn_rs.xml
- <Package Folder>/shared_prefs/duspf6030945.xml
- <Package Folder>/shared_prefs/jg_so_upgrade_setting.xml
- <Package Folder>/shared_prefs/local_storage0.xml
- <Package Folder>/shared_prefs/local_storage1.xml
- <Package Folder>/shared_prefs/local_storage33.xml
- <Package Folder>/shared_prefs/local_storage999.xml
- <Package Folder>/shared_prefs/m_cfg.xml
- <Package Folder>/shared_prefs/m_cfg.xml.bak
- <Package Folder>/shared_prefs/m_cfg.xml.bak (deleted)
- <Package Folder>/shared_prefs/ops_data.xml
- <Package Folder>/shared_prefs/sp.xml
- <Package Folder>/shared_prefs/sp.xml.bak (deleted)
- <Package Folder>/shared_prefs/t_ini.xml
- <SD-Card>/.androidsystem/####/gads.db
- <SD-Card>/APPMarket/####/125183428.jpg.tmp
- <SD-Card>/baidu/####/journal.tmp
- <SD-Card>/baidu/.cuid
- <SD-Card>/test1510835232689
- c201801161450.apk -p <Package> -c <Package>:side
- cat /sys/class/net/wlan0/address
- cat /sys/devices/system/cpu/cpu0/cpufreq/cpuinfo_max_freq
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- logcat -d -v time
- ps
- sh
- com.down
- libjiagu