Technical information
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) f2.doodlem####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) googl####.g.doublec####.net:80
- TCP(HTTP/1.1) d####.fl####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) d239g0z####.cloudf####.net:80
- TCP(HTTP/1.1) newfeat####.perfect####.com:80
- TCP(TLS/1.0) h.online-####.net:443
- TCP(TLS/1.0) con####.ta####.com:443
- TCP(TLS/1.0) ws.tapjo####.com:443
- TCP(TLS/1.0) s3.amazo####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) ser####.sponso####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) en####.sponso####.com:443
- a####.u####.com
- a.appj####.com
- an.ite####.com
- an1.ite####.com
- an2.ite####.com
- con####.ta####.com
- con####.ta####.com
- d####.fl####.com
- d239g0z####.cloudf####.net
- en####.sponso####.com
- f2.doodlem####.com
- googl####.g.doublec####.net
- h.online-####.net
- newfeat####.perfect####.com
- rrx68gi####.d.aa.####.net
- s3.amazo####.com
- ser####.sponso####.com
- ssl.google-####.com
- ws.tapjo####.com
- d239g0z####.cloudf####.net/featurescreen/3DPoolnew_l.jpg
- d239g0z####.cloudf####.net/icons/icon_HighSchoolGang.png
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40-load...
- googl####.g.doublec####.net/mads/static/mad/sdk/native/sdk-core-v40.html
- a####.u####.com/app_logs
- a.appj####.com/ad-service/ad/mark
- d####.fl####.com/aap.do
- f2.doodlem####.com/feature_server/fullScreen/get.php
- f2.doodlem####.com/feature_server/geo-ip/test.php
- newfeat####.perfect####.com/featureview/getfeatureview/
- /data/data/####/.dmgames_prefs.xml
- /data/data/####/.flurryagent.37adca07
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1526913159609.log
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/SponsorPayAdvertiserState.xml
- /data/data/####/SponsorPayPublisherState.xml
- /data/data/####/ThreatMetrixMobileSDK.xml
- /data/data/####/ads1399931759.jar
- /data/data/####/classes.jar
- /data/data/####/com.RefinedGames.CrossCourtFree.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dbbtx-journal
- /data/data/####/f_000001
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/http_googleads.g.doubleclick.net_0.localstorage-journal
- /data/data/####/index
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/mobclick_agent_online_setting_com.RefinedGames....ee.xml
- /data/data/####/tjcPrefrences.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...cucG5n
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...wuanBn
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- mono
- trustdefender-jni
- unity
- DES-ECB-PKCS5Padding
- AES-CBC-PKCS5Padding