Technical information
- Adware.Plague.1.origin
- Android.MulDrop.1026
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) f2.doodlem####.com:80
- TCP(HTTP/1.1) d3jhh8v####.cloudf####.net:80
- TCP(HTTP/1.1) googl####.g.doublec####.net:80
- TCP(HTTP/1.1) feat####.perfect####.com:8080
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) www.google-####.com:80
- TCP(HTTP/1.1) d239g0z####.cloudf####.net:80
- TCP(HTTP/1.1) newfeat####.perfect####.com:80
- TCP(TLS/1.0) h.online-####.net:443
- TCP(TLS/1.0) con####.ta####.com:443
- TCP(TLS/1.0) d####.fl####.com:443
- TCP(TLS/1.0) ws.tapjo####.com:443
- TCP(TLS/1.0) 2####.58.211.110:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- a.appj####.com
- ch.bo####.com
- ch1bo####.com
- ch2.bo####.com
- con####.ta####.com
- con####.ta####.com
- d####.fl####.com
- d239g0z####.cloudf####.net
- d3jhh8v####.cloudf####.net
- f2.doodlem####.com
- feat####.perfect####.com
- googl####.g.doublec####.net
- h.online-####.net
- newfeat####.perfect####.com
- rrx68gi####.d.aa.####.net
- ssl.google-####.com
- ws.tapjo####.com
- www.google-####.com
- d239g0z####.cloudf####.net/featurescreen/3DBowling.jpg
- d239g0z####.cloudf####.net/icons/icon_WestGunfighter.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_3dbowling.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_amazingrun.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_archerymaster3d.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_autotheftgangsters.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_bikeracing3d.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_explorationcraft.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_fanaticalbasketball.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_fanaticalfootball.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_gunshipstrike.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_prisonescape.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_punchboxing3d.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_realbikeracing.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_realdiving.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_rocketcarball.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_skyfighters.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_snipershot.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_surgerymaster.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_tattoomaster.png
- d3jhh8v####.cloudf####.net/moregames_files/icon_zombiesmasher.png
- feat####.perfect####.com:8080/moregames/bg.png
- feat####.perfect####.com:8080/moregames/free_button.png
- feat####.perfect####.com:8080/moregames/index.html
- googl####.g.doublec####.net/mads/static/sdk/native/sdk-core-v40.js
- www.google-####.com/analytics.js
- www.google-####.com/collect?v=####&_v=####&a=####&t=####&_s=####&dl=####...
- www.google-####.com/r/collect?v=####&_v=####&a=####&t=####&_s=####&dl=##...
- a.appj####.com/ad-service/ad/mark
- f2.doodlem####.com/feature_server/fullScreen/get.php
- f2.doodlem####.com/feature_server/geo-ip/test.php
- newfeat####.perfect####.com/featureview/getfeatureview/
- /data/data/####/.FlurrySenderIndex.info.AnalyticsData_PCF77GFBQ...BY_172
- /data/data/####/.FlurrySenderIndex.info.AnalyticsMain
- /data/data/####/.dmgames_prefs.xml
- /data/data/####/.dmgames_prefs.xml.bak
- /data/data/####/.flurryagent.30e08fbd
- /data/data/####/.flurrydatasenderblock.516392bd-0c11-4625-808b-...5750c7
- /data/data/####/.flurrydatasenderblock.b43591e5-a6a5-4191-befc-...6e5b4a
- /data/data/####/.flurrydatasenderblock.f78857cb-7bac-4887-ae84-...341436
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/1525036825518.log
- /data/data/####/1525036840552.log
- /data/data/####/ThreatMetrixMobileSDK.xml
- /data/data/####/ads1046060167.jar
- /data/data/####/classes.jar
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/dbjvlt-journal
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/index
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/settingFile.xml
- /data/data/####/tjcPrefrences.xml
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/data/####/yaxwp
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...IucG5n
- /data/media/####/aHR0cDovL2QyMzlnMHo2N2pjdGVkLmNsb3VkZnJvbnQubm...pwZw==
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- trustdefender-jni
- DES-ECB-PKCS5Padding
- AES-CBC-PKCS5Padding