Technical information
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) f2.doodlem####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) googl####.g.doublec####.net:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(HTTP/1.1) d####.fl####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) d239g0z####.cloudf####.net:80
- TCP(HTTP/1.1) newfeat####.perfect####.com:80
- TCP(TLS/1.0) h.online-####.net:443
- TCP(TLS/1.0) con####.ta####.com:443
- TCP(TLS/1.0) ws.tapjo####.com:443
- TCP(TLS/1.0) s3.amazo####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) ser####.sponso####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) en####.sponso####.com:443
- a####.u####.co
- a####.u####.com
- a.appj####.com
- c.appj####.com
- con####.ta####.com
- con####.ta####.com
- d####.fl####.com
- d239g0z####.cloudf####.net
- en####.sponso####.com
- f2.doodlem####.com
- googl####.g.doublec####.net
- h.online-####.net
- newfeat####.perfect####.com
- p####.f####.com
- p####.f####.com
- p####.f####.com
- rrx68gi####.d.aa.####.net
- s3.amazo####.com
- ser####.sponso####.com
- ssl.google-####.com
- ws.tapjo####.com
- d239g0z####.cloudf####.net/featurescreen/slots_l.jpg
- d239g0z####.cloudf####.net/icons/icon_slots.png
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40-load...
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40.html
- a####.u####.com/app_logs
- a.appj####.com/jiagu/check/upgrade
- c.appj####.com/ad/splash/stats.html
- d####.fl####.com/aap.do
- f2.doodlem####.com/feature_server/fullScreen/get.php
- f2.doodlem####.com/feature_server/geo-ip/test.php
- newfeat####.perfect####.com/featureview/getfeatureview/
- /data/data/####/.dmgames_prefs.xml
- /data/data/####/.flurryagent.37adca07
- /data/data/####/.jg.ic
- /data/data/####/1568089465232.log
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/SponsorPayAdvertiserState.xml
- /data/data/####/SponsorPayPublisherState.xml
- /data/data/####/ThreatMetrixMobileSDK.xml
- /data/data/####/ad_show_time.xml
- /data/data/####/ads546278563.jar
- /data/data/####/classes.jar
- /data/data/####/com.RefinedGames.CrossCourtFree.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dbmkqq-journal
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/index
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/tjcPrefrences.xml
- /data/data/####/um_cache_1568089461049.env
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/wad
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...5qcGc=
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...MucG5n
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- mono
- trustdefender-jni
- unity
- DES-ECB-PKCS5Padding
- RSA
- RSA-ECB-NoPadding
- AES-CBC-PKCS5Padding