Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) cn-hang####.oss####.aliyun####.com:80
- TCP(HTTP/1.1) xi####.edges####.net:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) qzs.gd####.com.####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) l####.tbs.qq.com:80
- TCP(TLS/1.0) 1####.194.163.27:443
- TCP(TLS/1.0) best####.b####.cn:443
- TCP(TLS/1.0) scdn2####.wpc.17####.####.net:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) bj####.ads.oppomo####.com:443
- TCP(TLS/1.0) xi####.edges####.net:443
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) sdkco####.ad.xi####.com:443
- TCP(TLS/1.0) c####.x####.com:443
- TCP(TLS/1.0) z####.ad.xi####.com:443
- TCP(TLS/1.2) 64.2####.161.102:443
- TCP(TLS/1.2) md####.google####.com:443
- TCP(TLS/1.2) 1####.251.1.94:443
- UDP md####.google####.com:443
- a####.u####.com
- ad.shandia####.cn
- ad.shandia####.cn.####.8
- and####.google####.com
- api.shandia####.cn
- api.shandia####.cn.####.8
- av1.x####.com
- b####.b####.cn
- best####.b####.cn
- bj####.ads.oppomo####.com
- c####.x####.com
- cn-hang####.oss####.aliyun####.com
- f####.ma####.xi####.com
- f3.ma####.xi####.com
- i.t####.com
- l####.tbs.qq.com
- m####.go####.com
- md####.google####.com
- mi.g####.qq.com
- qzs.gd####.com
- res####.a####.com
- s####.e.qq.com
- sdkco####.ad.xi####.com
- u-####.shandia####.cn
- u-####.shandia####.cn.####.8
- z####.ad.xi####.com
- best####.b####.cn:443/sdk/channel/bsdk_conf_jswh_new.json
- c####.x####.com:443/sdk/conf?id=####&p=####&v=####&sv=####&cv=####
- cn-hang####.oss####.aliyun####.com/amap-api/comm/upload/CoordinateSoEnhe...
- mi.g####.qq.com/gdt_mview.fcg?count=####&adposcount=####&fc=####&datatyp...
- qzs.gd####.com.####.com/union/res/android/plugin/plugin.dex-1063.jar
- scdn2####.wpc.17####.####.net:443/download/AdCenter/05b4bf36955af43f6937...
- sdkco####.ad.xi####.com:443/api/checkupdate/lastusefulversion2?av=####&c...
- xi####.edges####.net:443/download/AdCenter/07ed056dbdaa49aedaaecc182d751...
- a####.u####.com/app_logs
- bj####.ads.oppomo####.com:443/proxy/strategy/
- l####.tbs.qq.com/ajax?c=####&k=####
- res####.a####.com:443/v3/iasdkauth?key=####&ts=####&scode=####
- s####.e.qq.com/activate
- z####.ad.xi####.com:443/client/upgrade/mimo/v1
- /data/data/####/-446786033
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jgck
- /data/data/####/1693417429650_3635
- /data/data/####/1693417429661_3635
- /data/data/####/1693417429683_3635
- /data/data/####/1693417430552_3635
- /data/data/####/1693417440303_3841
- /data/data/####/1977284811
- /data/data/####/1d2b904cbeadfb72ed9546111a231c85.0
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/TDCloudSettingsConfigAFDF0D2FFC3448A4A1B78E669D9B5153.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TD_app_pefercen_profile.xml.bak
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/TalingDataConfigAFDF0D2FFC3448A4A1B78E669D9B5153.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/_m_rec.xml
- /data/data/####/access_control.control.mx
- /data/data/####/access_control.write.mx
- /data/data/####/acs_st.db-journal
- /data/data/####/acs_st_config.ini
- /data/data/####/agnes.xml
- /data/data/####/analytics.apk.tmp
- /data/data/####/analytics_api.xml
- /data/data/####/analytics_updater.xml
- /data/data/####/app_list.xml
- /data/data/####/bigdata.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.oat
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/classes4.dex
- /data/data/####/com.le123.ysdq_preferences.xml
- /data/data/####/com.oppo.acs.st.prefs.xml
- /data/data/####/com.oppo.acs.st.prefs.xml.bak
- /data/data/####/commonsp.xml
- /data/data/####/core_info
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/device_id.xml.xml
- /data/data/####/download.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/firstlaunch.xml
- /data/data/####/gdt_plugin.dex
- /data/data/####/gdt_plugin.dex.flock (deleted)
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.next
- /data/data/####/gdt_plugin.next.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_suid
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/infinitemovie.db
- /data/data/####/infinitemovie.db-journal
- /data/data/####/is_show_score_pop.xml
- /data/data/####/journal
- /data/data/####/k.store
- /data/data/####/libas.so
- /data/data/####/libas.so (deleted)
- /data/data/####/libjiagu.so
- /data/data/####/libwgs2gcj.so
- /data/data/####/loctemp.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/metrics_guid
- /data/data/####/mimo_download.apk.tmp
- /data/data/####/mimo_download.dex
- /data/data/####/mimo_download.dex.flock (deleted)
- /data/data/####/myDataDao.realm
- /data/data/####/myDataDao.realm.lock
- /data/data/####/plugin_updater.xml
- /data/data/####/pref.xml
- /data/data/####/priornetstate.xml
- /data/data/####/proc_auxv
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/service_utilcom.le123.ysdq.xml
- /data/data/####/setting_relative_sharepreference.xml
- /data/data/####/tbs_download_config.xml
- /data/data/####/tbs_download_config.xml.bak
- /data/data/####/tbs_download_stat.xml
- /data/data/####/tbscoreinstall.txt
- /data/data/####/tbslock.txt
- /data/data/####/tdid.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/update_lc
- /data/data/####/zeus_crash_info.xml
- /data/data/####/zeus_pms.xml
- /data/media/####/.agnes_installid_com.le123.ysdq_2.5.9
- /data/media/####/.tcookieid
- /data/media/####/.ucf.dat
- /data/media/####/1693417432430.db (deleted)
- /data/media/####/1693417439598.db (deleted)
- /data/media/####/YSDQ_LOG.txt
- /data/media/####/alsn20170807.db
- /data/media/####/alsn20170807.db-journal
- /data/media/####/mcs_msg.ini
- /data/media/####/shareqrcode
- /data/media/####/tbslog.txt
- /data/misc/####/primary.prof
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- getprop ro.product.cpu.abi
- libTokenUtil
- libjiagu
- librealm-jni
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- DES-CBC-PKCS5Padding
- RC4
- RSA-ECB-NoPadding
- RSA-ECB-PKCS1Padding
- 1
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS7Padding
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding