Technical information
- Android.HiddenAds.76.origin
- Android.Loki.10.origin
- Android.Loki.15.origin
- Android.Mixi.16.origin
- Android.Mixi.21.origin
- Android.RemoteCode.88.origin
- Android.Xiny.73.origin
- 4####.####.142
- 4####.####.240
- 7j####.####.com
- a####.####.com
- a####.####.com:9090
- a####.####.org
- c####.####.com
- c-h####.####.com
- clinkad####.com
- cu####.com
- g####.####.com
- j####.####.com:8888
- koapk####.com:8081
- l####.####.com
- m####.####.com
- okyes####.com
- okyes####.com:8081
- p####.####.com
- pl####.####.com
- s####.####.com
- t####.####.com
- trac####.####.com
- u####.####.com
- zfr####.com
- 4####.####.142/admin201506/uploadApkFile/20170725/760125331.jpg
- 4####.####.240/admin201506/uploadApkFile/20170725/396125151.jpg
- 7j####.####.com/tdata_Dyc207
- a####.####.com/Api/UnifiedAccess?PBindKey=####&data=ey####
- a####.####.com/click?_type=####&action=####&sdk_redir=####&campid=####&s...
- a####.####.com/index.php?r=####&al=####&l=####&p=####&hp=####&lc=####&sd...
- a####.####.com/wapbill/sale_static_newcp.jsp?uid=####&model=####&plugVer...
- a####.####.com/www/delivery/games.php?poolid=####&zoneid=####&subid2=###...
- a####.####.com:9090/sdkcp/user_visit_appcp.jsp?uid=####&model=####&plugV...
- a####.####.org/op?platform=####&os_version=####&package_name=####&app_ve...
- c####.####.com/tracking/adClick?d=####&clickId=####&prod=####&segId=####...
- clinkad####.com/tracking?camp=####&pubid=####&sid=####&subpubid=####
- cu####.com/20170804144900.ExpDex_5.2.1_201708041447.zip
- g####.####.com/cr/sv/getRltNew?eid=####&estatus=####&appkey=####&pid=###...
- j####.####.com:8888/rule?p=####
- p####.####.com/Api/abroadChannelPay?bid=####&PBindKey=####&operators=###...
- s####.####.com/config/hz-hzv3.conf
- s####.####.com/rtf/6115c9af6b1c30917b41f5c378956f40.slze
- t####.####.com/c/B6hhAcvkl3iN3cPIRE2boLK3DwxyTBaTwQ6sMLRMW0E/CF?subid1=#...
- trac####.####.com/aff_r?offer_id=####&aff_id=####&url=####&urlauth=####
- u####.####.com/setting/grobal_strategy?p=####&hp=####&l=####&c=####&prod...
- c-h####.####.com/api.php?format=####&t=####
- koapk####.com:8081/sm/sr/rt/ry
- l####.####.com/pv.php
- m####.####.com/detail/getOfferListNew?enc=####
- okyes####.com/sdk/nsd.action?b=####&ci=####&ct=####&re=####&sd=####
- okyes####.com:8081/sdk/nsd.action?b=####
- pl####.####.com/ad_dex.php
- s####.####.com/api.php?format=####&t=####
- s####.####.com/cgi-bin-py/ad_sdk.cgi?ty=####&enc=####&bt=####
- zfr####.com/up.do
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/.mbj/####/classes.zip
- <Package Folder>/app_indicators/indicator_d
- <Package Folder>/app_indicators/indicator_p
- <Package Folder>/databases/adblib.db-journal
- <Package Folder>/databases/arrkii.asa.sdk.db-journal
- <Package Folder>/databases/bdownloaders.db-journal
- <Package Folder>/databases/pushext.db-journal
- <Package Folder>/databases/pushg.db-journal
- <Package Folder>/databases/pushsdk.db-journal
- <Package Folder>/databases/swith1014.db-journal
- <Package Folder>/databases/tmpd8.db-journal
- <Package Folder>/databases/xUtils_http_cookie.db-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/####/.md
- <Package Folder>/files/####/14BE9718BBCCD691AE58B43CCBF702D1
- <Package Folder>/files/####/42A8040C2F870B7085901E75CCD80FE2
- <Package Folder>/files/####/4715A525865B6133118D9AC03DAD6B67
- <Package Folder>/files/####/5baidu2<System Property>46
- <Package Folder>/files/####/693E14E486D8CBBCE60B91C86E74621F
- <Package Folder>/files/####/6F48CC5CC346CAA132BB5D70606D2B75
- <Package Folder>/files/####/<Package>12<System Property>2
- <Package Folder>/files/####/A617F6BA33A53FE6EA5627DCC94DECC2
- <Package Folder>/files/####/D820051847D2E7962FD3EFADDDABCA23
- <Package Folder>/files/####/D96DA4E73247E0784211E5B553F3E5EF
- <Package Folder>/files/####/DD98BB0066ED8706CECB476FB1BD2FDD
- <Package Folder>/files/####/gpdu
- <Package Folder>/files/####/ntmp23112419
- <Package Folder>/files/####/test
- <Package Folder>/files/1501849458884_dyV17041701Dj1so32.so
- <Package Folder>/files/1805.jar
- <Package Folder>/files/201708041650.apk
- <Package Folder>/files/408.jar
- <Package Folder>/files/421.jar
- <Package Folder>/files/430.jar
- <Package Folder>/files/610.jar
- <Package Folder>/files/611.jar
- <Package Folder>/files/617.jar
- <Package Folder>/files/640.jar
- <Package Folder>/files/806.jar
- <Package Folder>/files/<Package>z.jar
- <Package Folder>/files/<System Property>112.jar
- <Package Folder>/files/SW01.jar
- <Package Folder>/files/__local_ap_info_cache.json
- <Package Folder>/files/__local_stat_cache.json
- <Package Folder>/files/__send_data_1501849454642
- <Package Folder>/files/c201708041650.apk
- <Package Folder>/files/fvtJnMjmeqSIAyqBdaemon.so
- <Package Folder>/files/gIfjPueBQyJvvggLdynamicloader.jar
- <Package Folder>/files/gdaemon_20161017
- <Package Folder>/files/google.db
- <Package Folder>/files/hftJcw46N.jar
- <Package Folder>/files/init.pid
- <Package Folder>/files/init_c1.pid
- <Package Folder>/files/kk.jar (deleted)
- <Package Folder>/files/kkk.jar
- <Package Folder>/files/libcuid.so
- <Package Folder>/files/liblLHskInykSsQmpoGbootstrap.so
- <Package Folder>/files/ob.zip
- <Package Folder>/files/oleWYEvaUzeGwmApstub.jar
- <Package Folder>/files/push.pid
- <Package Folder>/files/qJewZKOocpjgzNilsa.jar
- <Package Folder>/files/run.pid
- <Package Folder>/files/tdata_Dyc207
- <Package Folder>/files/tdata_Dyc207.jar
- <Package Folder>/files/tdata_Pbw496
- <Package Folder>/files/tdata_Pbw496.jar
- <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s
- <Package Folder>/shared_prefs/20160121.xml
- <Package Folder>/shared_prefs/20160121.xml.bak
- <Package Folder>/shared_prefs/<Package>_preferences.xml
- <Package Folder>/shared_prefs/<Package>_preferences.xml.bak
- <Package Folder>/shared_prefs/AdsBusiness-data.xml
- <Package Folder>/shared_prefs/AdsBusiness-data.xml.bak
- <Package Folder>/shared_prefs/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- <Package Folder>/shared_prefs/SSP.xml
- <Package Folder>/shared_prefs/SSPPrefe.xml
- <Package Folder>/shared_prefs/SSPPrefe.xml.bak
- <Package Folder>/shared_prefs/ZYASDKPOIEJMFKL##@!!!.xml
- <Package Folder>/shared_prefs/ZYASDKPOIEJMFKL##@!!!.xml.bak
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml
- <Package Folder>/shared_prefs/__Baidu_Stat_SDK_SendRem.xml.bak
- <Package Folder>/shared_prefs/ae.xml
- <Package Folder>/shared_prefs/ak.salvia.sdk.xml
- <Package Folder>/shared_prefs/ak.salvia.sdk.xml.bak
- <Package Folder>/shared_prefs/aps.xml
- <Package Folder>/shared_prefs/aps.xml.bak
- <Package Folder>/shared_prefs/apsad.xml
- <Package Folder>/shared_prefs/apscomm.xml
- <Package Folder>/shared_prefs/cn_rs.xml
- <Package Folder>/shared_prefs/com.arrkii.module.offerprobe.xml
- <Package Folder>/shared_prefs/dayupdate.xml
- <Package Folder>/shared_prefs/dee0963f.xml
- <Package Folder>/shared_prefs/duspf6030945.xml
- <Package Folder>/shared_prefs/gx_sp.xml
- <Package Folder>/shared_prefs/m_cfg.xml
- <Package Folder>/shared_prefs/m_cfg.xml.bak
- <Package Folder>/shared_prefs/ops_data.xml
- <Package Folder>/shared_prefs/qihoo_jiagu_crash_report.xml
- <Package Folder>/shared_prefs/settingsLog.xml
- <Package Folder>/shared_prefs/settingsLog.xml.bak
- <Package Folder>/shared_prefs/t_ini.xml
- <Package Folder>/shared_prefs/t_ini.xml.bak
- <SD-Card>/.salvia/<Package>
- <SD-Card>/.salvia/tick
- <SD-Card>/APPMarket/####/396125151.jpg.tmp
- <SD-Card>/backups/####/.confd
- <SD-Card>/backups/####/.confd-journal
- <SD-Card>/backups/####/.cuid2
- <SD-Card>/backups/####/.timestamp
- <SD-Card>/baidu/####/journal
- <SD-Card>/baidu/.cuid
- <SD-Card>/libs/<Package>.db
- <SD-Card>/libs/app.db
- <SD-Card>/libs/com.getui.sdk.deviceId.db
- <SD-Card>/libs/com.igexin.sdk.deviceId.db
- <SD-Card>/system/####/tdata_Dyc207
- <SD-Card>/system/####/tdata_Pbw496
- <SD-Card>/test1501849457883
- .kugua
- .kugua -c id
- <Package Folder>/files/.play/test <Package Folder>/files/.play/ 9d051a7f5ce243ccaa3a5a10e8d24c4e
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.igexin.sdk.PushService 25732 300 0
- <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s -h 9d051a7f5ce243ccaa3a5a10e8d24c4e <Package Folder>/.syslib-
- c201708041650.apk -c <Package>:baidu
- chmod 0771 <Package Folder>/.syslib-
- chmod 6777 <Package Folder>/files/c201708041650.apk
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- chmod 770 <Package Folder>/files/.play/test
- getenforce
- logcat -d -v time
- ps
- rm -f <Package Folder>/files/hftJcw46N.dex
- rm -f <Package Folder>/files/hftJcw46N.jar
- rm -f <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s
- rm <Package Folder>/files/hftJcw46N.dex
- rm <Package Folder>/files/hftJcw46N.jar
- rm <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s
- sh
- sh -c /system/usr/toolbox rm -f <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c /system/usr/toolbox rm -f <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh -c /system/usr/toolbox rm -f <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s > /dev/null 2>&1
- sh -c rm <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c rm <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh -c rm <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s > /dev/null 2>&1
- sh -c rm -f <Package Folder>/files/hftJcw46N.dex > /dev/null 2>&1
- sh -c rm -f <Package Folder>/files/hftJcw46N.jar > /dev/null 2>&1
- sh -c rm -f <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s > /dev/null 2>&1
- sh <Package Folder>/files/.play/test <Package Folder>/files/.play/ 9d051a7f5ce243ccaa3a5a10e8d24c4e
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/com.igexin.sdk.PushService 25732 300 0
- sh <Package Folder>/files/us.908GhK3z1XIE6J7u3B4nRKlfEI88s -h 9d051a7f5ce243ccaa3a5a10e8d24c4e <Package Folder>/.syslib-
- 1501849458884_dyV17041701Dj1so32
- cocos2dcpp
- fvtJnMjmeqSIAyqBdaemon
- getuiext2
- libjiagu
- libjni-comymrefpackagesjrrbaidu
- liblLHskInykSsQmpoGbootstrap
- null
- qidofo
- AES-CBC-PKCS5Padding
- AES-ECB-NoPadding
- AES-ECB-PKCS5Padding
- DES
- DES-CBC-PKCS5Padding
- RSA-ECB-PKCS1Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- DES
- DES-CBC-PKCS5Padding