Technical information
- Adware.Gexin.2.origin
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) i.t####.com:80
- TCP(HTTP/1.1) d####.c####.l####.####.com:80
- TCP(HTTP/1.1) cdn-sdk####.g####.com.####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(TLS/1.0) 1####.217.168.234:443
- TCP(TLS/1.0) 1####.217.17.106:443
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) md####.google####.com:443
- TCP(TLS/1.0) c####.x####.com:443
- TCP(TLS/1.0) instant####.google####.com:443
- TCP(TLS/1.0) android####.go####.com:443
- TCP(TLS/1.0) 1####.217.20.74:443
- TCP(TLS/1.0) hotfix####.aliy####.com:443
- TCP(TLS/1.2) 1####.217.17.106:443
- TCP(TLS/1.2) 1####.217.168.234:443
- TCP(TLS/1.2) 1####.250.179.163:443
- TCP(TLS/1.2) 1####.217.20.74:443
- TCP(TLS/1.2) 1####.217.17.110:443
- TCP sdk.o####.t####.####.com:5224
- TCP cm-10####.g####.com:5226
- a####.man.aliy####.com
- android####.go####.com
- av1.x####.com
- c####.x####.com
- c-h####.g####.com
- cdn-sdk####.g####.com
- cm-1####.g####.com
- cm-10####.g####.com
- g####.face####.com
- go####.1gos####.com
- hotfix####.aliy####.com
- i.t####.com
- instant####.google####.com
- log.u####.com
- md####.google####.com
- s####.u####.com
- s####.u####.com.####.8
- sdk-ope####.g####.com
- sdk.c####.g####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- cdn-sdk####.g####.com.####.com/tdata_cKC073
- cdn-sdk####.g####.com.####.com/tdata_cpZ817
- cdn-sdk####.g####.com.####.com/tdata_lbt428
- d####.c####.l####.####.com/config/hzv9.conf
- i.t####.com/a/3ecf82f3930e0f2fca8c3019af489a072
- c-h####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####
- /data/data/####/.jg.ic
- /data/data/####/1619893706204_3450
- /data/data/####/1619893706757_3450
- /data/data/####/1619893707381_3450
- /data/data/####/1619893707906_3450
- /data/data/####/1619893708339_3450
- /data/data/####/1619893708979_3450
- /data/data/####/1619893716526_3611
- /data/data/####/1619893716714_3611
- /data/data/####/1619893717062_3611
- /data/data/####/1619893717544_3611
- /data/data/####/1619893717916_3611
- /data/data/####/1619893719473_3611
- /data/data/####/1619893736741_3929
- /data/data/####/1619893737151_3929
- /data/data/####/1619893737511_3929
- /data/data/####/1619893737983_3929
- /data/data/####/1619893743510.log
- /data/data/####/1619893778591_3611
- /data/data/####/1619893779892_3611
- /data/data/####/Alvin2.xml
- /data/data/####/AppEventsLogger.persistedevents
- /data/data/####/Archimedes_p1
- /data/data/####/Archimedes_p2
- /data/data/####/Archimedes_p3
- /data/data/####/Archimedes_p4
- /data/data/####/Archimedes_p5
- /data/data/####/ContextData.xml
- /data/data/####/Setting.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TD_app_pefercen_profile.xml.bak
- /data/data/####/TDpref_cloudcontrol1.xml
- /data/data/####/TDpref_cloudcontrol1.xml.bak
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime0.xml
- /data/data/####/TDpref_longtime0.xml.bak
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDpref_shorttime.xml.bak
- /data/data/####/TDpref_shorttime0.xml
- /data/data/####/audioWorksInfo-journal
- /data/data/####/classes.dex
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/classes4.dex
- /data/data/####/com.egospace.go_play_preferences.xml
- /data/data/####/com.egospace.go_play_preferences.xml.bak
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/com.facebook.sdk.attributionTracking.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml.bak
- /data/data/####/com.google.android.gms.measurement.prefs.xml.bak (deleted)
- /data/data/####/getui_sp.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/iv
- /data/data/####/libjiagu.so
- /data/data/####/proc_auxv
- /data/data/####/push.pid
- /data/data/####/pushsdk.db
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/salt
- /data/data/####/sp_sophix.xml
- /data/data/####/tdata_cKC073
- /data/data/####/tdata_cpZ817
- /data/data/####/tdata_cpZ817.jar
- /data/data/####/tdata_lbt428
- /data/data/####/tdata_lbt428.dex
- /data/data/####/tdata_lbt428.dex.flock (deleted)
- /data/data/####/tdata_lbt428.jar
- /data/data/####/tdid.xml
- /data/data/####/umeng_socialize.xml
- /data/data/####/xUtils.db-journal
- /data/media/####/.DS_Store
- /data/media/####/._.DS_Store
- /data/media/####/._Common
- /data/media/####/._tail_1280x720_0.mp4
- /data/media/####/._tail_1280x720_180.mp4
- /data/media/####/._tail_1280x720_270.mp4
- /data/media/####/._tail_1280x720_90.mp4
- /data/media/####/._tail_1920x1080_0.mp4
- /data/media/####/._tail_1920x1080_180.mp4
- /data/media/####/._tail_1920x1080_270.mp4
- /data/media/####/._tail_1920x1080_90.mp4
- /data/media/####/._tail_640x480_0.mp4
- /data/media/####/._tail_640x480_180.mp4
- /data/media/####/._tail_640x480_270.mp4
- /data/media/####/._tail_640x480_90.mp4
- /data/media/####/.tcookieid
- /data/media/####/Common.zip
- /data/media/####/GoPlayDataBase.db
- /data/media/####/GoPlayDataBase.db-journal
- /data/media/####/app.db
- /data/media/####/com.egospace.go_play.bin
- /data/media/####/com.egospace.go_play.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/filter_10.bin
- /data/media/####/journal
- /data/media/####/journal.tmp
- /data/media/####/tail_1280x720_0.mp4
- /data/media/####/tail_1280x720_180.mp4
- /data/media/####/tail_1280x720_270.mp4
- /data/media/####/tail_1280x720_90.mp4
- /data/media/####/tail_1920x1080_0.mp4
- /data/media/####/tail_1920x1080_180.mp4
- /data/media/####/tail_1920x1080_270.mp4
- /data/media/####/tail_1920x1080_90.mp4
- /data/media/####/tail_640x480_0.mp4
- /data/media/####/tail_640x480_180.mp4
- /data/media/####/tail_640x480_270.mp4
- /data/media/####/tail_640x480_90.mp4
- /data/media/####/tdata_cKC073
- /data/media/####/tdata_cpZ817
- /data/media/####/tdata_lbt428
- /data/misc/####/primary.prof
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/files/tdata_cpZ817.jar --oat-fd=55 --oat-location=/data/user/0/<Package>/files/tdata_cpZ817.dex --compiler-filter=speed
- /system/bin/dex2oat --runtime-arg -classpath --runtime-arg & --instruction-set=x86 --instruction-set-features=smp,ssse3,sse4.1,sse4.2,-avx,-avx2,-lock_add,popcnt --runtime-arg -Xrelocate --boot-image=/system/framework/boot.art --runtime-arg -Xms64m --runtime-arg -Xmx512m --instruction-set-variant=x86 --instruction-set-features=default --dex-file=/data/user/0/<Package>/files/tdata_lbt428.jar --oat-fd=92 --oat-location=/data/user/0/<Package>/files/tdata_lbt428.dex --compiler-filter=speed
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- getprop
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding