Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) m.d####.mob.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) api.s####.mob.com:80
- TCP(TLS/1.0) e.crashly####.com:443
- TCP(TLS/1.0) rep####.crashly####.com:443
- TCP(TLS/1.0) joyc####.51joy####.com:443
- TCP(TLS/1.0) sett####.crashly####.com:443
- a####.exc.mob.com
- a####.u####.com
- api.s####.mob.com
- e.crashly####.com
- joyc####.51joy####.com
- m.d####.mob.com
- rep####.crashly####.com
- sett####.crashly####.com
- m.d####.mob.com/v2/cconf?appkey=####&plat=####&apppkg=####&appver=####&n...
- a####.exc.mob.com/errconf
- a####.u####.com/app_logs
- api.s####.mob.com/conf5
- api.s####.mob.com/conn
- api.s####.mob.com/log4
- api.s####.mob.com/snsconf
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/.mrecord
- /data/data/####/.mrlock
- /data/data/####/.statistics
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3BeginSession.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3BeginSession.json
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionApp.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionApp.json
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionCrash.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionDevice.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionDevice.json
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionOS.cls_temp
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionOS.json
- /data/data/####/5BCA1135014D-0001-08EF-D3B4ADD72CA3SessionUser.cls_temp
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3BeginSession.cls_temp
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3BeginSession.json
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionApp.cls_temp
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionApp.json
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionDevice.cls_temp
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionDevice.json
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionOS.cls_temp
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionOS.json
- /data/data/####/5BCA115400D9-0002-08EF-D3B4ADD72CA3SessionUser.cls_temp
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3BeginSession.cls_temp
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3BeginSession.json
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionApp.cls_temp
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionApp.json
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionDevice.cls_temp
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionDevice.json
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionOS.cls_temp
- /data/data/####/5BCA116F0059-0001-0974-D3B4ADD72CA3SessionOS.json
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/MultiDex.lock
- /data/data/####/ThrowalbeLog.db
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/crash_marker
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/initialization_marker
- /data/data/####/io.fabric.sdk.android;fabric;io.fabric.sdk.andr...ng.xml
- /data/data/####/joyshow_campus_config.xml
- /data/data/####/libjiagu-1368591142.so
- /data/data/####/mob_commons_1.xml
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/multidex.version.xml
- /data/data/####/sa_294a12a4-35e5-4cd3-ad6e-cc477929ae60_1539969334292.tap
- /data/data/####/sa_3c4f011b-acbf-450b-a91c-94d9485e8fa2_1539969334697.tap
- /data/data/####/sa_4fb1c1c3-c7c1-48ff-af4f-479bfe786202_1539969391329.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/share_sdk_1.xml
- /data/data/####/sharesdk.db
- /data/data/####/sharesdk.db-journal
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- /data/media/####/.dic_lock
- /data/media/####/.duid
- /data/media/####/.globalLock
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.rcTag
- /data/media/####/.rc_lock
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- chmod 755 <Package Folder>/.jiagu/libjiagu-1368591142.so
- sh
- libjiagu-1368591142
- neh
- pl_droidsonroids_gif
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding