Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) reso####.msg.xi####.net:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(TLS/1.0) h####.b####.com:443
- TCP(TLS/1.0) www.opendre####.cn:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) 3####.tc.qq.com:443
- TCP 47.74.1####.158:5222
- TCP 4####.62.94.2:443
- a####.exc.mob.com
- h####.b####.com
- i####.dd.qq.com
- mt####.go####.com
- regi####.xm####.xi####.com
- reso####.msg.xi####.net
- www.opendre####.cn
- reso####.msg.xi####.net/gslb/?ver=3.0&type=wap&conpt=dvidpodv >>4>>4>>4...
- a####.exc.mob.com/errconf
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/XMPushServiceConfig.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1540967155215
- /data/data/####/account_config.xml
- /data/data/####/baidu_mtj_sdk_record.xml
- /data/data/####/com.onlybeyond.QRcode;pushservice
- /data/data/####/error.txt
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/mipush.xml
- /data/data/####/mipush_account.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/mob_sdk_exception_1.xml.bak
- /data/data/####/qrCode.db-journal
- /data/data/####/recordIndexFile.txt
- /data/data/####/umeng_general_config.xml
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.dic_lock
- /data/media/####/.nomedia
- /data/media/####/.nulplt
- /data/media/####/.pkg_lock
- /data/media/####/.rcTag
- /data/media/####/.rc_lock
- /data/media/####/.timestamp
- /data/media/####/qrcode.apk
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop ro.build.display.id
- getprop ro.build.version.emui
- getprop ro.build.version.opporom
- getprop ro.miui.ui.version.name
- getprop ro.smartisan.version
- getprop ro.vivo.os.version
- sh
- crash_analysis
- libjiagu
- neh
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- RSA-ECB-PKCS1Padding