Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) www.eas####.com:80
- TCP(HTTP/1.1) cdn-sdk####.g####.com.####.com:80
- TCP(HTTP/1.1) api.kais####.com:8080
- TCP(HTTP/1.1) a####.eas####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(TLS/1.0) api.kais####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP cm-1####.g####.com:5225
- a1.eas####.com
- api.kais####.com
- c-h####.g####.com
- cdn-sdk####.g####.com
- cm-1####.g####.com
- im####.deathe####.com
- sdk-ope####.g####.com
- sdk.c####.g####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- www.eas####.com
- api.kais####.com:8080/crowdfundingservice2/common/config?client=####&cli...
- api.kais####.com:8080/crowdfundingservice2/project/tag/list/v2?client=##...
- cdn-sdk####.g####.com.####.com/tdata_CoH340
- cdn-sdk####.g####.com.####.com/tdata_WVc478
- cdn-sdk####.g####.com.####.com/tdata_pKX830
- cdn-sdk####.g####.com.####.com/tdata_pmY337
- d####.c####.l####.####.com/config/hzv9.conf
- sdk-ope####.g####.com/api/addr.htm
- ti####.c####.l####.####.com/2019-05-16_5cdcf0810de51.jpeg
- ti####.c####.l####.####.com/7BCD41BD3E772020E050190AFD01022C20200920123621
- ti####.c####.l####.####.com/8A018D2F21828129E05010ACD005146D20191028132731
- ti####.c####.l####.####.com/8B550A0D66067F25E05010ACD00570AF20191211124454
- ti####.c####.l####.####.com/o_1du1m52q71ftl5k8r3k1k781mcg19.jpg
- ti####.c####.l####.####.com/o_1eb5soekdnn8mem1dj614lmpkg19.jpg
- ti####.c####.l####.####.com/o_1eikqq6s917d41c1m3ib2f6ga1s.jpg
- www.eas####.com/easemob/server.xml?sdk_version=####&app_key=####&file_ve...
- a####.eas####.com/kaistart/kaishi/devices
- api.kais####.com:8080/crowdfundingservice2/tool/save/device?client=####&...
- c-h####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####
- /data/data/####/-1320815741-583711988
- /data/data/####/-16234304251411681739
- /data/data/####/-1776226831491362145
- /data/data/####/-2020095603-1838312558
- /data/data/####/-2020095603-1839953109
- /data/data/####/-381067687-1796422049
- /data/data/####/-381067687-1796446099
- /data/data/####/-381067687-1796448020
- /data/data/####/-381067687-1798089413
- /data/data/####/-381067687-1798090307
- /data/data/####/-381067687-1798090562
- /data/data/####/-5679315491585345220
- /data/data/####/.jg.ic
- /data/data/####/1147783289-583688892
- /data/data/####/1785693093-1838313493
- /data/data/####/1785693093-1839955898
- /data/data/####/285381856813301025
- /data/data/####/285381856814943463
- /data/data/####/2BKjL-QHG0Y76b4qtu9pNzfeemE.-2019474993.tmp
- /data/data/####/87095509-900605579
- /data/data/####/DGWs57mIBxuoUwg5q7apvb50h3o.-1636038724.tmp
- /data/data/####/SS_E5GknnGPhSx9EJ5geohZ-q3g.-1706989331.tmp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.kaistart.android_preferences.xml
- /data/data/####/device_id.xml.xml
- /data/data/####/easemob.sdk.pref.xml
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/iXjNwONRlUZOz5VczzmoDIzMMXg.-424344275.tmp
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/libjiagu.so
- /data/data/####/mTFfepPMn1QUoRNutPwoDW1Avdk.-1846594049.tmp
- /data/data/####/mobclick_agent_cached_com.kaistart.android30
- /data/data/####/multidex.version.xml
- /data/data/####/pay_type_order.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushk.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/sg7Sy9iyuD_PaPYPj_wCD4oMHss.-175808681.tmp
- /data/data/####/tdata_CoH340
- /data/data/####/tdata_CoH340.jar
- /data/data/####/tdata_WVc478
- /data/data/####/tdata_WVc478.jar
- /data/data/####/tdata_pKX830
- /data/data/####/tdata_pKX830.jar
- /data/data/####/tdata_pmY337
- /data/data/####/tdata_pmY337.jar
- /data/data/####/uU8tQSmiiyt9IZV0QdPWQG57V3s.-158931147.tmp
- /data/data/####/umeng_general_config.xml
- /data/media/####/000.html
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.kaistart.android.bin
- /data/media/####/com.kaistart.android.db
- /data/media/####/tdata_CoH340
- /data/media/####/tdata_WVc478
- /data/media/####/tdata_pKX830
- /data/media/####/tdata_pmY337
- /data/media/####/test.log
- <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.GetUIPushService 25015 300 0
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.GetUIPushService 25015 300 0
- getuiext2
- imagepipeline
- libjiagu
- AES-ECB-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-ECB-PKCS5Padding