Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) a####.u####.com:80
- UDP(NTP) 1.cn.p####.####.org:123
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) app.x####.com:443
- TCP(TLS/1.0) jic.talking####.com:443
- TCP(TLS/1.0) lbs.net####.im:443
- TCP(TLS/1.0) p####.google####.com:443
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) 1####.194.79.95:443
- TCP(TLS/1.0) nim.qi####.com:443
- TCP(TLS/1.0) 1####.177.119.95:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) qy-swa####.qi####.com:443
- TCP(TLS/1.2) 1####.177.126.94:443
- TCP(TLS/1.2) 1####.194.79.95:443
- TCP(TLS/1.2) 1####.177.119.101:443
- TCP l####.net####.im:8080
- 1.cn.p####.####.org
- a####.u####.com
- android####.go####.com
- app.x####.com
- i####.cn
- id1.cn.8.####.8
- instant####.google####.com
- jic.talking####.com
- l####.net####.im
- lbs.net####.im
- m####.go####.com
- md####.google####.com
- nim.qi####.com
- p####.google####.com
- pg.x####.com
- qy-swa####.qi####.com
- wfd.net####.im
- wfd.net####.im.####.8
- a####.u####.com/app_logs
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.jg.store.report_cf
- /data/data/####/.jgck
- /data/data/####/LST.xml
- /data/data/####/NIMSDK_Config_bd16106733565134a8996634c6f43a1c.xml
- /data/data/####/NIMSDK_Config_bd16106733565134a8996634c6f43a1c_...86.xml
- /data/data/####/TDCloudSettingsConfig2D51075BBBC948E36A11E656DABC1775.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime.xml.bak
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/Unicorn.bd16106733565134a8996634c6f43a1c.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/classes.dex
- /data/data/####/classes.dex;classes2.dex
- /data/data/####/classes.oat
- /data/data/####/com.qiyukf.analytics.xml
- /data/data/####/com.qiyukf.analytics.xml.bak
- /data/data/####/com.yanxiu.gphone.training.teacher_preferences.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/libjiagu.so
- /data/data/####/mpush_app.db-journal
- /data/data/####/msg.db-journal
- /data/data/####/qiyu_save_bd16106733565134a8996634c6f43a1c.xml
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/tdlock.txt
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/unicorn#cheese#
- /data/data/####/yanxiuString.xml
- /data/data/####/yxtrain.db-journal
- /data/misc/####/primary.prof
- /system/bin/dex2oat --instruction-set=x86 --dex-file=<Package Folder>/.jiagu/classes.dex --dex-file=<Package Folder>/.jiagu/classes.dex:classes2.dex --oat-file=<Package Folder>/.jiagu/classes.oat --inline-depth-limit=0 --compiler-filter=speed
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS7Padding
- AES-ECB-NoPadding