Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) reso####.msg.xi####.net:80
- TCP(HTTP/1.1) o####.map.b####.com:80
- TCP(HTTP/1.1) loc.map.b####.com:80
- TCP(HTTP/1.1) and####.b####.qq.com:80
- UDP(NTP) cn.p####.ntp.org:123
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) ti####.c####.l####.####.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) api.song####.com:443
- TCP(TLS/1.0) u.zhug####.com:443
- TCP 47.74.1####.157:5222
- TCP 4####.62.94.2:443
- and####.b####.qq.com
- api.map.b####.com
- api.song####.com
- cn.p####.ntp.org
- col####.song####.com
- loc.map.b####.com
- m####.song####.com
- o####.map.b####.com
- regi####.xm####.xi####.com
- reso####.msg.xi####.net
- u.zhug####.com
- reso####.msg.xi####.net/gslb/?ver=####&type=####&conpt=d####&uuid=####&l...
- and####.b####.qq.com/rqd/async
- loc.map.b####.com/sdk.php
- o####.map.b####.com/offline_loc
- /data/data/####/.jg.ic
- /data/data/####/.ttpineconeid
- /data/data/####/0cd25adde60865c4f0a63dbc0dece609060e59d2b96ca22....0.tmp
- /data/data/####/4b46e75fb2eda114d291ca67a96474dd8523e06e73ea942....0.tmp
- /data/data/####/9553b0168ce289dcba1c4cdeef240f3df49dbfdd5a53a94....0.tmp
- /data/data/####/CustomIndex
- /data/data/####/DVDirectory.cfg
- /data/data/####/DVHotMap.cfg
- /data/data/####/DVHotcity.cfg
- /data/data/####/DVIndoor.cfg
- /data/data/####/DVVersion.cfg
- /data/data/####/ResPack.rs
- /data/data/####/ResPackIndoorMap.rs
- /data/data/####/UserInfo.xml
- /data/data/####/XMPushServiceConfig.xml
- /data/data/####/authStatus_com.ttyongche.ttpinecone.xml
- /data/data/####/authStatus_com.ttyongche.ttpinecone;remote.xml
- /data/data/####/baseindoormap.sty
- /data/data/####/bugly_db_-journal
- /data/data/####/com.ttyongche.ttpinecone.api.SysApi$Config.xml
- /data/data/####/com.ttyongche.ttpinecone.api.SysApi$StartupResult.xml
- /data/data/####/com.ttyongche.ttpinecone.model.ActivityCount.xml
- /data/data/####/com.ttyongche.ttpinecone.model.Channel.xml
- /data/data/####/com.ttyongche.ttpinecone.model.Deny.xml
- /data/data/####/com.ttyongche.ttpinecone.model.Guide.xml
- /data/data/####/com.ttyongche.ttpinecone.model.HomeOperationInfo.xml
- /data/data/####/com.ttyongche.ttpinecone.model.Launch.xml
- /data/data/####/com.ttyongche.ttpinecone0c319f20364e46019f7e4e0...d6.xml
- /data/data/####/com.ttyongche.ttpinecone;pushservice
- /data/data/####/ea82ef6944bc85922012bc9f40549e7a52eadd60d8173f0....0.tmp
- /data/data/####/firll.dat
- /data/data/####/gal.db
- /data/data/####/gal.db-journal
- /data/data/####/geofencing.db
- /data/data/####/geofencing.db-journal
- /data/data/####/journal.tmp
- /data/data/####/libcuid.so
- /data/data/####/libjiagu1429893349.so
- /data/data/####/map_pref.xml
- /data/data/####/mapstyle.sty
- /data/data/####/mipush.xml
- /data/data/####/mipush_account.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/multidex.version.xml
- /data/data/####/ofl.config
- /data/data/####/ofl_location.db
- /data/data/####/ofl_location.db-journal
- /data/data/####/ofl_statistics.db
- /data/data/####/ofl_statistics.db-journal
- /data/data/####/prefs_event.xml
- /data/data/####/satellitestyle.sty
- /data/data/####/security_info
- /data/data/####/status.xml
- /data/data/####/trafficstyle.sty
- /data/data/####/ver.dat
- /data/data/####/webview.db-journal
- /data/data/####/zhuge
- /data/data/####/zhuge-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/.ttpineconeid
- /data/media/####/DTTempdat.dat
- /data/media/####/DTTempdat.idx
- /data/media/####/DVUserdat.cfg
- /data/media/####/HMTempdat.dat
- /data/media/####/HMTempdat.idx
- /data/media/####/IDRDesTempdat.dat
- /data/media/####/IDRDesTempdat.idx
- /data/media/####/IDRTempdat.dat
- /data/media/####/IDRTempdat.idx
- /data/media/####/ITTempdat.dat
- /data/media/####/ITTempdat.idx
- /data/media/####/conlts.dat
- /data/media/####/custom_config.txt
- /data/media/####/journal.tmp
- /data/media/####/log.lock
- /data/media/####/log1.txt
- /data/media/####/ls.db
- /data/media/####/ls.db-journal
- /data/media/####/test.0
- /system/bin/sh -c getprop ro.board.platform
- /system/bin/sh -c type su
- chmod 755 <Package Folder>/.jiagu/libjiagu1429893349.so
- getprop ro.board.platform
- BaiduMapSDK_base_v4_1_1
- BaiduMapSDK_map_v4_1_1
- BaiduMapSDK_search_v4_1_1
- Bugly
- libjiagu1429893349
- locSDK7
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding
- AES-GCM-NoPadding