Technical information
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) s.wagbr####.alibaba####.com:80
- TCP(HTTP/1.1) hm.b####.com:80
- TCP(HTTP/1.1) wild####.q####.cn.####.net:80
- TCP(HTTP/1.1) oc.u####.com:80
- TCP(HTTP/1.1) www.zuoye####.com.cn:80
- TCP(HTTP/1.1) www.yunxiao####.com:80
- TCP(TLS/1.0) img.yunxiao####.com:443
- TCP(TLS/1.0) wild####.q####.cn.####.net:443
- TCP(TLS/1.0) app-ro####.leanc####.cn:443
- TCP(TLS/1.0) s####.tc.qq.com:443
- TCP(TLS/1.0) l####.cc:443
- a####.u####.com
- app-ro####.leanc####.cn
- au.u####.co
- au.u####.com
- av####.yunxiao####.com
- cn.wa####.com
- cn1.wa####.com
- cn2.wa####.com
- hm.b####.com
- img.yunxiao####.com
- l####.cc
- m####.q####.cn
- oc.u####.com
- r####.wx.qq.com
- www.yunxiao####.com
- www.zuoye####.com.cn
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&ep=####&et=#...
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&et=####&ja=#...
- hm.b####.com/hm.js?1a2b572####
- wild####.q####.cn.####.net/mmbiz_gif/DOVVfocNpPYV4ZxteXp5k4HtPHsPVtbr2R6...
- wild####.q####.cn.####.net/mmbiz_jpg/h0hxdV4qOAR8I7BMVZFRXzbPc58XpichoMG...
- www.yunxiao####.com/CommunityH5/articleView?id=####
- www.yunxiao####.com/CommunityH5/column?id=####&count=####&page=####&page...
- www.yunxiao####.com/CommunityH5/index
- www.yunxiao####.com/static/H5/news/public/css/amazeui.css
- www.yunxiao####.com/static/H5/news/public/css/index.css?v=####
- www.yunxiao####.com/static/H5/news/public/fonts/fontawesome-webfont.ttf?...
- www.yunxiao####.com/static/H5/news/public/gallery/amazeui.min.js
- www.yunxiao####.com/static/H5/news/public/gallery/handlebars.min.js
- www.yunxiao####.com/static/H5/news/public/gallery/jquery/jquery.min.js
- www.yunxiao####.com/static/H5/news/public/gallery/main.js?v=####
- www.yunxiao####.com/static/H5/news/public/gallery/navbarscroll.js
- www.yunxiao####.com/static/H5/public/lib/openOutside.js?v=####
- www.yunxiao####.com/static/Lib/AES.js
- www.yunxiao####.com/static/Lib/audio.js?v=####
- www.yunxiao####.com/static/Lib/zepto.min.js
- www.yunxiao####.com/static/css/article.css?v=####
- www.yunxiao####.com/static/css/img/feed_praise.png
- www.yunxiao####.com/static/css/img/no_praise.png
- www.zuoye####.com.cn/app/banners?platform=####&dpi=####&v=####
- www.zuoye####.com.cn/app/splash/_360?w=####
- www.zuoye####.com.cn/security/ocrtoken?id=####&sn=####
- a####.u####.com/app_logs
- oc.u####.com/check_config_update
- s.wagbr####.alibaba####.com/api/check_app_update
- www.yunxiao####.com/cloud/tickets/getJsTicket
- www.zuoye####.com.cn/security/jytoken
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/app_libs/result_xml_pdf_template.so
- <Package Folder>/app_uxjkclasses.jar
- <Package Folder>/cache/####/-11711265601425525583
- <Package Folder>/cache/####/-771132034-12413057
- <Package Folder>/cache/####/data_0
- <Package Folder>/cache/####/data_1
- <Package Folder>/cache/####/data_2
- <Package Folder>/cache/####/data_3
- <Package Folder>/cache/####/f_000001
- <Package Folder>/cache/####/f_000002
- <Package Folder>/cache/####/f_000003
- <Package Folder>/cache/####/f_000004
- <Package Folder>/cache/####/f_000005
- <Package Folder>/cache/####/f_000006
- <Package Folder>/cache/####/f_000007
- <Package Folder>/cache/####/f_000008
- <Package Folder>/cache/####/f_000009
- <Package Folder>/cache/####/f_00000a
- <Package Folder>/cache/####/f_00000b
- <Package Folder>/cache/####/f_00000c
- <Package Folder>/cache/####/f_00000d
- <Package Folder>/cache/####/f_00000e
- <Package Folder>/cache/####/f_00000f
- <Package Folder>/cache/####/f_000010
- <Package Folder>/cache/####/f_000011
- <Package Folder>/cache/####/f_000012
- <Package Folder>/cache/####/f_000013
- <Package Folder>/cache/####/f_000014
- <Package Folder>/cache/####/f_000015
- <Package Folder>/cache/####/f_000016
- <Package Folder>/cache/####/f_000017
- <Package Folder>/cache/####/f_000018
- <Package Folder>/cache/####/f_000019
- <Package Folder>/cache/####/f_00001a
- <Package Folder>/cache/####/f_00001b
- <Package Folder>/cache/####/f_00001c
- <Package Folder>/cache/####/f_00001d
- <Package Folder>/cache/####/f_00001e
- <Package Folder>/cache/####/f_00001f
- <Package Folder>/cache/####/f_000020
- <Package Folder>/cache/####/f_000021
- <Package Folder>/cache/####/f_000022
- <Package Folder>/cache/####/f_000023
- <Package Folder>/cache/####/f_000024
- <Package Folder>/cache/####/f_000025
- <Package Folder>/cache/####/f_000026
- <Package Folder>/cache/####/f_000027
- <Package Folder>/cache/####/f_000028
- <Package Folder>/cache/####/f_000029
- <Package Folder>/cache/####/f_00002a
- <Package Folder>/cache/####/f_00002b
- <Package Folder>/cache/####/f_00002c
- <Package Folder>/cache/####/f_00002d
- <Package Folder>/cache/####/f_00002e
- <Package Folder>/cache/####/f_00002f
- <Package Folder>/cache/####/index
- <Package Folder>/databases/JingYouMath.db-journal
- <Package Folder>/databases/dbvqkv-journal
- <Package Folder>/databases/push_message.db-journal
- <Package Folder>/databases/webview.db-journal
- <Package Folder>/databases/webviewCookiesChromium.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/.imprint
- <Package Folder>/files/mobclick_agent_cached_<Package>150
- <Package Folder>/files/umeng_it.cache
- <Package Folder>/shared_prefs/AV_CLOUD_API_VERSION_KEY_ZONE.xml
- <Package Folder>/shared_prefs/com.avos.avoscloud.RequestStatist...ta.xml
- <Package Folder>/shared_prefs/com.avos.avoscloud.approuter.uYEd...sz.xml
- <Package Folder>/shared_prefs/com.jingyou.math.xml
- <Package Folder>/shared_prefs/mobclick_agent_online_setting_<Package>.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/Android/####/journal.tmp
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- bspatch
- cahm
- libjiagu
- libtpnsSecurity
- tpnsSecurity
- DES-ECB-PKCS5Padding