Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) www.ge####.com.cn:80
- TCP(HTTP/1.1) app.ge####.com.cn:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) a####.exc.mob.com:80
- TCP(HTTP/1.1) s####.ge####.com.cn:80
- TCP(HTTP/1.1) api.s####.mob.com:80
- TCP(TLS/1.0) 1####.217.19.206:443
- TCP(TLS/1.0) t####.growi####.com:443
- TCP(TLS/1.0) t.growi####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5224
- TCP c####.g####.ig####.com:5225
- a####.exc.mob.com
- api.s####.mob.com
- app.ge####.com.cn
- c####.g####.ig####.com
- c####.g####.ig####.com
- c####.g####.ig####.com
- c####.g####.ig####.com
- s####.ge####.com.cn
- sdk.c####.ig####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- t####.growi####.com
- t.growi####.com
- www.ge####.com.cn
- t####.c####.q####.####.com/config/hz-hzv6.conf
- www.ge####.com.cn/appSkin/43/android/faxian_gaoshoubangdan.png
- www.ge####.com.cn/appSkin/43/android/faxian_gaoshouguandian.png
- www.ge####.com.cn/appSkin/43/android/faxian_remenqunzhu.png
- www.ge####.com.cn/appSkin/43/android/faxian_shipankaihu.png
- www.ge####.com.cn/appSkin/43/android/faxian_tougudasai.png
- www.ge####.com.cn/appSkin/43/android/faxian_zuixinhuida.png
- www.ge####.com.cn/appSkin/43/android/icon_dongtai.png
- www.ge####.com.cn/appSkin/43/android/icon_dongtaihong.png
- www.ge####.com.cn/appSkin/43/android/icon_faxian.png
- www.ge####.com.cn/appSkin/43/android/icon_faxianhong.png
- www.ge####.com.cn/appSkin/43/android/icon_hangqing.png
- www.ge####.com.cn/appSkin/43/android/icon_hangqinghong.png
- www.ge####.com.cn/appSkin/43/android/icon_wode.png
- www.ge####.com.cn/appSkin/43/android/icon_wodehong.png
- www.ge####.com.cn/appSkin/43/android/icon_xiaoxi.png
- www.ge####.com.cn/appSkin/43/android/icon_xiaoxihong.png
- www.ge####.com.cn/appSkin/43/android/qidongye_1334.png
- www.ge####.com.cn/upload/cartoon/10000.gif
- www.ge####.com.cn/upload/cartoon/10001.gif
- www.ge####.com.cn/upload/cartoon/10002.gif
- www.ge####.com.cn/upload/cartoon/10004.gif
- www.ge####.com.cn/upload/cartoon/10006.gif
- www.ge####.com.cn/upload/cartoon/10010.gif
- a####.exc.mob.com/errconf
- api.s####.mob.com/conf4
- api.s####.mob.com/conn
- api.s####.mob.com/data2
- api.s####.mob.com/snsconf
- app.ge####.com.cn/servlet/json;jsessionid=
- s####.ge####.com.cn/servlet/json
- s####.ge####.com.cn/servlet/json;jsessionid=
- /anr/traces.txt
- /data/anr/traces.txt
- /data/data/####/.jg.ic
- /data/data/####/.lock
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/ThrowalbeLog.db-journal
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/cn.com.gentou.gentouwang;pushservice.growing.db-journal
- /data/data/####/device_id.xml.xml
- /data/data/####/getui_sp.xml
- /data/data/####/growing.db-journal
- /data/data/####/growing_profile.xml
- /data/data/####/growing_server_pref.xml
- /data/data/####/growingio_diagnose.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libjiagu.so
- /data/data/####/mob_sdk_exception_1.xml
- /data/data/####/mobclick_agent_cached_cn.com.gentou.gentouwang107
- /data/data/####/multidex.version.xml
- /data/data/####/openudid_prefs.xml
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/run.pid
- /data/data/####/share_sdk_1.xml
- /data/data/####/thinkive.db-journal
- /data/data/####/thinkive.xml
- /data/data/####/umeng_general_config.xml
- /data/media/####/.ba
- /data/media/####/.dk
- /data/media/####/.lock
- /data/media/####/10000.gif.bin
- /data/media/####/10001.gif.bin
- /data/media/####/10002.gif.bin
- /data/media/####/10004.gif.bin
- /data/media/####/10006.gif.bin
- /data/media/####/10010.gif.bin
- /data/media/####/cn.com.gentou.gentouwang.bin
- /data/media/####/faxian_gaoshoubangdan.png.bin
- /data/media/####/faxian_gaoshouguandian.png.bin
- /data/media/####/faxian_remenqunzhu.png.bin
- /data/media/####/faxian_shipankaihu.png.bin
- /data/media/####/faxian_tougudasai.png.bin
- /data/media/####/faxian_zuixinhuida.png.bin
- /data/media/####/qidongye_1334.png.bin
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- ping -c 1 -w 2 120.27.128.192
- getuiext2
- libjiagu
- neh
- AES-ECB-PKCS7Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-ECB-NoPadding