Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) api.and####.rua####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) i####.rua####.com.####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5226
- 7j####.c####.z0.####.com
- a####.u####.com
- a.appj####.com
- api.and####.rua####.com
- c####.g####.ig####.com
- c-h####.g####.com
- i####.rua####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- api.and####.rua####.com/ad/indexPPT?key=####
- api.and####.rua####.com/game/gameClickUpdate?game_id=####&key=####
- api.and####.rua####.com/game/gameCommentList?game_id=####&page=####&sort...
- api.and####.rua####.com/game/gameDetail?game_id=####&uid=####&key=####
- api.and####.rua####.com/game/listByModel?model=####&page=####&limit=####...
- api.and####.rua####.com/game/listByTag?tag_type=####&tag_id=####&model=#...
- api.and####.rua####.com/game/listByType?type=####&model=####&page=####&r...
- api.and####.rua####.com/game_giftbag/list_by_game?game_id=####&uid=####&...
- api.and####.rua####.com/system/update?versioncode=####&key=####
- i####.rua####.com.####.com/uploads/ad/4d8180e4e00c2.jpg
- i####.rua####.com.####.com/uploads/ad/865c52eb41779.jpg
- i####.rua####.com.####.com/uploads/ad/b8019df19aab9.jpg
- i####.rua####.com.####.com/uploads/ad/e35c29ef4e777.jpg
- i####.rua####.com.####.com/uploads/game_logo/201711/gLogo_5a02ecbaa542e5...
- i####.rua####.com.####.com/uploads/game_logo/201712/gLogo_5a41f022c01c45...
- i####.rua####.com.####.com/uploads/game_logo/201805/gLogo_5afabb365f36d1...
- i####.rua####.com.####.com/uploads/game_logo/201805/gLogo_5b0f539cea73b9...
- i####.rua####.com.####.com/uploads/game_logo/201806/gLogo_5b318c46670c66...
- i####.rua####.com.####.com/uploads/game_logo/201807/gLogo_5b3f0b94ce80c0...
- i####.rua####.com.####.com/uploads/game_logo/201807/gLogo_5b51913c8489c0...
- i####.rua####.com.####.com/uploads/game_logo/201807/gLogo_5b56ef98e92461...
- i####.rua####.com.####.com/uploads/game_logo/201807/gLogo_5b5937254b2317...
- i####.rua####.com.####.com/uploads/game_logo/201808/gLogo_5b6a680dbb82c6...
- i####.rua####.com.####.com/uploads/game_logo/201809/gLogo_5b90c8df469ec7...
- i####.rua####.com.####.com/uploads/game_logo/201810/gLogo_5bc59390555de0...
- i####.rua####.com.####.com/uploads/game_logo/201810/gLogo_5bc6c27e1fa446...
- i####.rua####.com.####.com/uploads/game_logo/201810/gLogo_5bd68b9d21bcd8...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5bdbcbf62c17a6...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5be3960a47a3e0...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5be40b4fe81a28...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5bf3b07c1b9981...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5bfe0dcbb10335...
- i####.rua####.com.####.com/uploads/game_logo/201811/gLogo_5c00e30c0ca3e2...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c074f558cb2b3...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0a3c201d1069...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0a3d1327c1d0...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0b21ef5b1762...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0b2518efbbd0...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0b40546dcd26...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0b40fdade481...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0b692b95c779...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0db996c32369...
- i####.rua####.com.####.com/uploads/game_logo/201812/gLogo_5c0de229230996...
- t####.c####.q####.####.com/data/images/user/nomal_100.png
- t####.c####.q####.####.com/tdata_IKl114
- t####.c####.q####.####.com/tdata_qHR433
- t####.c####.q####.####.com/uface/2017/08/25/avatar_20170825181803_136255...
- t####.c####.q####.####.com/uface/2017/09/19/avatar_20170919083350_172415...
- t####.c####.q####.####.com/uface/2017/10/24/avatar_20171024212354_117926...
- t####.c####.q####.####.com/uface/2017/11/18/avatar_20171118124326_73601_...
- t####.c####.q####.####.com/uploads/game_pic/201810/g_pic5bd3ed5a6f32c6.9...
- t####.c####.q####.####.com/uploads/game_pic/201810/g_pic5bd3ed5a93cb62.1...
- t####.c####.q####.####.com/uploads/game_pic/201810/g_pic5bd3ed5aafb424.4...
- t####.c####.q####.####.com/uploads/game_pic/201810/g_pic5bd3ed5aca4871.6...
- t####.c####.q####.####.com/uploads/game_pic/201810/g_pic5bd3ed5ade2ec9.4...
- t####.c####.q####.####.com/uploads/game_pic/201811/g_pic5bfe0dba541504.8...
- t####.c####.q####.####.com/uploads/game_pic/201811/g_pic5bfe0dba7b79e5.9...
- t####.c####.q####.####.com/uploads/game_pic/201811/g_pic5bfe0dba97b6f3.9...
- t####.c####.q####.####.com/uploads/game_pic/201811/g_pic5bfe0dbab42c62.8...
- t####.c####.q####.####.com/uploads/game_pic/201811/g_pic5bfe0dbad3c0a3.7...
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- a####.u####.com/app_logs
- a.appj####.com/ad-service/ad/mark
- a.appj####.com/jiagu/check/upgrade
- api.and####.rua####.com/game/gameIsUpdate
- c-h####.g####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/-1346034567-1740196428
- /data/data/####/-13460345671455328987
- /data/data/####/-13460345671810501527
- /data/data/####/-13460345671845272341
- /data/data/####/-1346034567188248152
- /data/data/####/-13460345671930061230
- /data/data/####/-13460345672095375518
- /data/data/####/-13460345672143154559
- /data/data/####/-1346034567351513979
- /data/data/####/-1346034567433826052
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1151825905640137951
- /data/data/####/1222597828-1033521696
- /data/data/####/1222597828-112218544
- /data/data/####/1222597828-1463133152
- /data/data/####/1222597828-1527059280
- /data/data/####/1222597828-1581007265
- /data/data/####/1222597828-174102682
- /data/data/####/1222597828-1794247546
- /data/data/####/1222597828-2137655396
- /data/data/####/1222597828-225685627
- /data/data/####/1222597828-238725364
- /data/data/####/1222597828-290522106
- /data/data/####/1222597828-320780570
- /data/data/####/1222597828-340932217
- /data/data/####/1222597828-503620541
- /data/data/####/1222597828-728776309
- /data/data/####/1222597828-77267842
- /data/data/####/1222597828-827839499
- /data/data/####/1222597828-876168814
- /data/data/####/1222597828-943852419
- /data/data/####/12225978281049908496
- /data/data/####/1222597828108999393
- /data/data/####/12225978281271060203
- /data/data/####/12225978281413876290
- /data/data/####/12225978281572647745
- /data/data/####/12225978281734791263
- /data/data/####/12225978282026536212
- /data/data/####/12225978282097233195
- /data/data/####/12225978282144671787
- /data/data/####/1222597828698788587
- /data/data/####/1222597828974302996
- /data/data/####/1346841673-207571604
- /data/data/####/1346842633316954105
- /data/data/####/13468637761016107382
- /data/data/####/960210157-1722057483
- /data/data/####/exchangeIdentity.json
- /data/data/####/gdaemon_20161017
- /data/data/####/gx_sp.xml
- /data/data/####/init.pid
- /data/data/####/init_c.pid
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/sp.xml
- /data/data/####/tdata_IKl114
- /data/data/####/tdata_IKl114.jar
- /data/data/####/tdata_qHR433
- /data/data/####/tdata_qHR433.jar
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/xUtils.db-journal
- /data/media/####/.nomedia
- /data/media/####/23uzw556cbk80rjkuaunqnkg6
- /data/media/####/27nzls6snd5mbhirq5mteidd2
- /data/media/####/3kynl24t5jyxg22nwoij45nc7
- /data/media/####/74bd66m9b1hr66rroy0mx2hhr
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.rtk.app.db
- /data/media/####/tdata_IKl114
- /data/media/####/tdata_qHR433
- /data/media/####/test.log
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.igexin.sdk.PushService 24069 300 0
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/files/libjiagu.so
- getuiext2
- libjiagu
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-NoPadding