Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) ser####.dc####.net.cn:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) www.dc####.io:80
- TCP(HTTP/1.1) at.al####.com:80
- TCP(HTTP/1.1) nav.cn.ron####.com:80
- TCP(HTTP/1.1) sni.c####.q####.####.net:80
- TCP(HTTP/1.1) dev.5####.cn:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) st####.dc####.net.cn:80
- TCP(TLS/1.0) ser####.dc####.net.cn:443
- TCP(TLS/1.0) s####.cn.ron####.com:443
- TCP sdk.o####.t####.####.com:5224
- TCP 1####.92.13.27:8623
- TCP c####.g####.ig####.com:5227
- 7j####.c####.z0.####.com
- at.al####.com
- c####.g####.ig####.com
- c-h####.g####.com
- dev.5####.cn
- nav.cn.ron####.com
- s####.cn.ron####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- ser####.dc####.net.cn
- st####.dc####.net.cn
- www.dc####.io
- at.al####.com/t/font_660619_x4zudf2gex8khuxr.css
- dev.5####.cn/static/images/person_shop.png
- sni.c####.q####.####.net/config/hz-hzv3.conf
- t####.c####.q####.####.com/tdata_YYn966
- t####.c####.q####.####.com/tdata_eOt091
- www.dc####.io/urd.json?v=####
- c-h####.g####.com/api.php?format=####&t=####
- nav.cn.ron####.com/navipush.json
- sdk.o####.p####.####.com/api.php?format=####&t=####
- ser####.dc####.net.cn/collect/crash
- st####.dc####.net.cn/device/location
- /data/data/####/.imei.txt
- /data/data/####/.jg.ic
- /data/data/####/COUNTLY_STORE.xml
- /data/data/####/FwLog.xml
- /data/data/####/H53C4437C.xml
- /data/data/####/MultiDex.lock
- /data/data/####/RongPush.xml
- /data/data/####/RongPushAppConfig.xml
- /data/data/####/Statistics.xml
- /data/data/####/_adio.dcloud.feature.ad.a.a.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dc_ad_type_key.xml
- /data/data/####/f_000001
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gx_sp.xml
- /data/data/####/html5Geo.xml
- /data/data/####/index
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/libjiagu-1691839127.so
- /data/data/####/locale.config.xml
- /data/data/####/multidex.version.xml
- /data/data/####/pdr.xml
- /data/data/####/push.pid
- /data/data/####/push_daemon
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/run.pid
- /data/data/####/start_statistics_data.xml
- /data/data/####/stream_permission.xml
- /data/data/####/tdata_YYn966
- /data/data/####/tdata_YYn966.jar
- /data/data/####/tdata_eOt091
- /data/data/####/tdata_eOt091.jar
- /data/data/####/test_app
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/webviewCookiesChromiumPrivate.db-journal
- /data/media/####/.buildPropertiesMD5.data
- /data/media/####/.imei.txt
- /data/media/####/.nomedia
- /data/media/####/100x100.png
- /data/media/####/1024x1024.png
- /data/media/####/1080x1882.png
- /data/media/####/114x114.png
- /data/media/####/120x120.png
- /data/media/####/144x144.png
- /data/media/####/152x152.png
- /data/media/####/167x167.png
- /data/media/####/180x180.png
- /data/media/####/192x192.png
- /data/media/####/20x20.png
- /data/media/####/256x256.png
- /data/media/####/29x29.png
- /data/media/####/40x40.png
- /data/media/####/48x48.png
- /data/media/####/50x50.png
- /data/media/####/57x57.png
- /data/media/####/58x58.png
- /data/media/####/60x60.png
- /data/media/####/72x72.png
- /data/media/####/76x76.png
- /data/media/####/80x80.png
- /data/media/####/87x87.png
- /data/media/####/96x96.png
- /data/media/####/AdEnable.dat
- /data/media/####/Finance.html
- /data/media/####/about_us.html
- /data/media/####/about_us_pic1.png
- /data/media/####/about_us_pic2.png
- /data/media/####/account.html
- /data/media/####/addServicePersonal.html
- /data/media/####/add_conpom.html
- /data/media/####/add_product.css
- /data/media/####/add_product.html
- /data/media/####/admin_class.html
- /data/media/####/all_conmodity.html
- /data/media/####/app.db
- /data/media/####/app.js
- /data/media/####/bg.png
- /data/media/####/bind_bank.html
- /data/media/####/checked.png
- /data/media/####/city.js
- /data/media/####/collection.png
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.phonebu.familylove_merchant.bin
- /data/media/####/com.phonebu.familylove_merchant.db
- /data/media/####/commonSet.html
- /data/media/####/conmodity_sort.html
- /data/media/####/crash_1535129729434_2018-08-24-16-55-29.log
- /data/media/####/crash_1535129735846_2018-08-24-16-55-35.log
- /data/media/####/crash_1535129738255_2018-08-24-16-55-38.log
- /data/media/####/crash_1535129741850_2018-08-24-16-55-41.log
- /data/media/####/crash_1535129747387_2018-08-24-16-55-47.log
- /data/media/####/crash_1535129756064_2018-08-24-16-55-56.log
- /data/media/####/crash_1535129777393_2018-08-24-16-56-17.log
- /data/media/####/crash_1535129784060_2018-08-24-16-56-24.log
- /data/media/####/crash_1535129790316_2018-08-24-16-56-30.log
- /data/media/####/createActivity.html
- /data/media/####/data_0.png
- /data/media/####/data_1.png
- /data/media/####/data_2.png
- /data/media/####/data_3.png
- /data/media/####/eje3cnc
- /data/media/####/error.png
- /data/media/####/fastclick.js
- /data/media/####/file__0.localstorage-journal
- /data/media/####/forget_pwd.html
- /data/media/####/half.png
- /data/media/####/help.html
- /data/media/####/help_1.png
- /data/media/####/help_2.png
- /data/media/####/help_edtail.html
- /data/media/####/help_img1.png
- /data/media/####/help_img2.png
- /data/media/####/help_img3.png
- /data/media/####/help_img4.png
- /data/media/####/home.png
- /data/media/####/home_press.png
- /data/media/####/index.css
- /data/media/####/index.html
- /data/media/####/jquery.js
- /data/media/####/lat.jpg
- /data/media/####/loading.gif
- /data/media/####/loading.png
- /data/media/####/localohost.gif
- /data/media/####/localohost.png
- /data/media/####/localohost1.png
- /data/media/####/login.css
- /data/media/####/login.html
- /data/media/####/logo.jpg
- /data/media/####/manifest.json
- /data/media/####/market.png
- /data/media/####/market_press.png
- /data/media/####/marketing.html
- /data/media/####/md5.js
- /data/media/####/message.html
- /data/media/####/modification.html
- /data/media/####/more.png
- /data/media/####/my.css
- /data/media/####/my.html
- /data/media/####/my.png
- /data/media/####/myActive.html
- /data/media/####/my_press.png
- /data/media/####/nice.png
- /data/media/####/no_data.png
- /data/media/####/no_netdata.png
- /data/media/####/nocollection.png
- /data/media/####/notice.html
- /data/media/####/ok_tips.html
- /data/media/####/open_shop.html
- /data/media/####/open_start.html
- /data/media/####/order.html
- /data/media/####/order.png
- /data/media/####/order_edtail.css
- /data/media/####/order_edtail.html
- /data/media/####/order_press.png
- /data/media/####/order_status.html
- /data/media/####/pic_3.png
- /data/media/####/pulic.css
- /data/media/####/put_forward.html
- /data/media/####/receive.mp3
- /data/media/####/rule_view.html
- /data/media/####/sbg.png
- /data/media/####/sel_map.html
- /data/media/####/sel_map1.html
- /data/media/####/servicePersonal.html
- /data/media/####/serviceScope.html
- /data/media/####/set_login_pwd.html
- /data/media/####/shoopset.html
- /data/media/####/shop_information.html
- /data/media/####/shop_refund.css
- /data/media/####/shop_refund.html
- /data/media/####/shop_setting.css
- /data/media/####/shop_setting.html
- /data/media/####/shop_time.html
- /data/media/####/store.html
- /data/media/####/store_pic1.png
- /data/media/####/store_pic10.png
- /data/media/####/store_pic2.png
- /data/media/####/store_pic3.png
- /data/media/####/store_pic4.png
- /data/media/####/store_pic5.png
- /data/media/####/store_pic6.png
- /data/media/####/store_pic7.png
- /data/media/####/store_pic8.png
- /data/media/####/store_pic9.png
- /data/media/####/tdata_YYn966
- /data/media/####/tdata_eOt091
- /data/media/####/test.log
- /data/media/####/tips_voice.html
- /data/media/####/voucher.html
- /data/media/####/vue-resoure.js
- /data/media/####/vue.min.js
- /data/media/####/ydui.flexible.js
- /data/media/####/ydui.rem.css
- /data/media/####/ydui.rem.js
- /system/bin/chmod 777 <Package Folder>/app_lib/x86/push_daemon
- <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.DemoPushService 26189 300 0
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu-1691839127.so
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.DemoPushService 26189 300 0
- RongIMLib
- getuiext2
- libjiagu-1691839127
- push
- AES-CBC-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding