Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) p####.tc.qq.com:80
- TCP(HTTP/1.1) d.g####.qq.com:80
- TCP(HTTP/1.1) www.gopl####.com:8080
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) c.g####.qq.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) s####.tc.qq.com:80
- TCP(TLS/1.0) api.growi####.com:443
- TCP(TLS/1.0) h####.b####.com:443
- TCP(TLS/1.0) t####.growi####.com:443
- TCP(TLS/1.0) t.growi####.com:443
- a####.u####.com
- api.growi####.com
- c.g####.qq.com
- d.g####.qq.com
- h####.b####.com
- imgc####.qq.com
- mi.g####.qq.com
- p####.ugd####.com
- qzones####.g####.cn
- s####.e.qq.com
- t####.growi####.com
- t.growi####.com
- www.gopl####.com
- c.g####.qq.com/gdt_mclick.fcg?viewid=####&jtype=####&i=####&os=####&asi=...
- d.g####.qq.com/fcg-bin/gdt_appdetail.fcg?ico=####&op_appid=####
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- p####.tc.qq.com/qzone/biz/gdt/mob/sdk/v2/android02/images/tsa_ad_logo.png
- p####.tc.qq.com/qzone/biz/gdt/mod/android/AndroidAllInOne/proguard/his/r...
- s####.tc.qq.com/gdt/0/transformer_9527442567542775603_1532223840_80.jpg/...
- a####.u####.com/app_logs
- s####.e.qq.com/activate
- s####.e.qq.com/click
- s####.e.qq.com/msg
- www.gopl####.com:8080/goplaycn/api/account/getAccount
- www.gopl####.com:8080/goplaycn/api/application/paidvpn/status
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/336a8d3be3a048b770666ee84feed3b9.temp
- /data/data/####/5ead7c1916e321af3ee0d7d6aa595238.temp
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1532452775446
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/device_id.xml.xml
- /data/data/####/downloads.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/growing.db
- /data/data/####/growing.db-journal
- /data/data/####/growing_profile.xml
- /data/data/####/growing_server_pref.xml
- /data/data/####/growingio_diagnose.xml
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/setting.xml
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/update_lc
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.timestamp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- crash_analysis
- libjiagu
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding