Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) res####.bx####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) et2-na6####.wagbr####.ali####.####.com:80
- TCP(HTTP/1.1) s28.9####.cn:80
- TCP(TLS/1.0) res####.bx####.com:443
- TCP(TLS/1.0) ti####.bx####.com:443
- a####.u####.com
- apm-col####.qte####.com
- log.u####.com
- res####.bx####.com
- s####.u####.com
- s28.9####.cn
- s29.9####.cn
- ti####.bx####.com
- et2-na6####.wagbr####.ali####.####.com/bar/get/54ab977dfd98c51d120006bf/...
- s28.9####.cn/static/upload/a/181108143124-481_m.png
- s28.9####.cn/static/upload/a/181109115153-735_m.png
- s28.9####.cn/static/upload/a/181109115649-378_m.png
- a####.u####.com/app_logs
- res####.bx####.com/api/article/lists
- res####.bx####.com/api/common/ads
- res####.bx####.com/api/common/checkversion
- res####.bx####.com/api/common/keywordplaceholder
- res####.bx####.com/api/common/launchstat
- res####.bx####.com/api/common/popads
- res####.bx####.com/api/common/searchhotkeyword
- res####.bx####.com/api/planner/lists
- res####.bx####.com/api/product/airecommend
- res####.bx####.com/api/solution/lists
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/1542164189630.log.bak (deleted)
- /data/data/####/1542164189683.log
- /data/data/####/5c386baf2a4338639bffe18cb684ae892639486826d4e69....0.tmp
- /data/data/####/ApplicationCache.db-journal
- /data/data/####/QALConfigStore.dat
- /data/data/####/TLS_DEVICE_INFO.xml
- /data/data/####/TestinAgent.db
- /data/data/####/TestinAgent.db-journal
- /data/data/####/TestinCrash.xml
- /data/data/####/WLOGIN_DEVICE_INFO.xml
- /data/data/####/b2457ec57f4fd1065e3c87d3b402adc09c3f0a225313f1d....0.tmp
- /data/data/####/com.jiuyang.baoxian_preferences.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/exchangeIdentity.json
- /data/data/####/f130e4294750b004c85b5145c04ad0c5657ae73b847d2a7....0.tmp
- /data/data/####/imei
- /data/data/####/index
- /data/data/####/insure.db-journal
- /data/data/####/journal.tmp
- /data/data/####/libjiagu-214755050.so
- /data/data/####/mobclick_agent_cached_com.jiuyang.baoxian45
- /data/data/####/multidex.version.xml
- /data/data/####/report_v5.msgstore-journal
- /data/data/####/tls_device.dat
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_socialize.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/wlogin_device.dat
- /data/media/####/app.18.11.14.02.log
- /data/media/####/sdk.18.11.14.02.log
- chmod 755 <Package Folder>/.jiagu/libjiagu-214755050.so
- NativeCrash
- _imcore_jni_gyp
- libjiagu-214755050
- libwtcrypto
- qalcodecwrapper
- qalmsfboot
- AES
- AES-CBC-NoPadding
- AES-CBC-NoPadding