Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) on####.ai####.com:8081
- TCP(HTTP/1.1) rp-na####.ron####.com:80
- TCP(HTTP/1.1) amap####.cn-hang####.oss####.####.com:80
- TCP(HTTP/1.1) et2-na6####.wagbr####.ali####.####.com:80
- TCP(TLS/1.0) res####.a####.com:443
- TCP(TLS/1.0) s####.cn.ron####.com:443
- TCP(TLS/1.0) sdk.brtbe####.com:443
- TCP 1####.92.80.26:8606
- a####.u####.com
- amap####.cn-hang####.oss####.####.com
- log.u####.com
- nav.cn.ron####.com
- on####.ai####.com
- res####.a####.com
- s####.cn.ron####.com
- s####.u####.com
- sdk.brtbe####.com
- amap####.cn-hang####.oss####.####.com/sdkcoor/android/x86/libJni_wgs2gcj...
- et2-na6####.wagbr####.ali####.####.com/bar/get/ 56651f8867e58e75cc000357...
- on####.ai####.com:8081/api-tourist/tourist/reportLaunchApp?appChannel=##...
- a####.u####.com/app_logs
- rp-na####.ron####.com/navipush.json
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1586995355733.log
- /data/data/####/1586995355733.log.bak
- /data/data/####/1666662246417.0
- /data/data/####/1754942693652.0
- /data/data/####/1886860528407.0
- /data/data/####/2076683286231.0
- /data/data/####/2254949570459.0
- /data/data/####/2261776433850.0
- /data/data/####/2576647764698.0
- /data/data/####/4144962990832.0
- /data/data/####/42106509978050.0
- /data/data/####/42112227179830.0
- /data/data/####/4361782478959.0
- /data/data/####/4491658294530.0
- /data/data/####/5381804562792.0
- /data/data/####/5596950810182.0
- /data/data/####/5771690583501.0
- /data/data/####/6066754360450.0
- /data/data/####/6086848292055.0
- /data/data/####/6281687754656.0
- /data/data/####/74106515664650.0
- /data/data/####/7944977737802.0
- /data/data/####/80101497574277.0
- /data/data/####/80112411096346.0
- /data/data/####/8071673335159.0
- /data/data/####/85101488890171.0
- /data/data/####/9191660745324.0
- /data/data/####/9996941025373.0
- /data/data/####/BRTBEACONMANAGER.xml
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/RongPush.xml
- /data/data/####/Statistics.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/config.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/hmdb
- /data/data/####/hmdb-journal
- /data/data/####/journal
- /data/data/####/journal.tmp
- /data/data/####/libjiagu-2018832812.so
- /data/data/####/loctemp.so
- /data/data/####/logdb.db
- /data/data/####/logdb.db-journal
- /data/data/####/multidex.version.xml
- /data/data/####/pref.xml
- /data/data/####/push_daemon
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/xUtils_http_cookie.db
- /data/data/####/xUtils_http_cookie.db-journal
- /data/media/####/RongLog_2_8_17.log
- /data/media/####/als.db
- /data/media/####/als.db-journal
- /system/bin/chmod 777 <Package Folder>/app_lib/x86/push_daemon
- <Package Folder>/app_lib/x86/push_daemon <Package> io.rong.push.PushService /storage/emulated/0/.rongLock
- chmod 755 <Package Folder>/.jiagu/libjiagu-2018832812.so
- RongIMLib
- libjiagu-2018832812
- push
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- RSA-ECB-PKCS1Padding
- AES-CBC-NoPadding
- AES-CBC-PKCS5Padding