Technical information
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) ssl.ss####.cn:80
- TCP(HTTP/1.1) www.think####.cn:80
- a.appj####.com
- mk.fm####.com
- mk1.fm####.com
- mk2.fm####.com
- ss####.cn
- ssl.ss####.cn
- www.think####.cn
- ssl.ss####.cn/ssllq/ok121realweather.jsp?cid=####
- www.think####.cn/weather/weather.aspx?uid=####&cid=####&l=####&p=####&a=...
- a.appj####.com/ad-service/ad/mark
- ssl.ss####.cn/ssllq/ok121a2.jsp
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/app_rfpclasses.jar
- /data/data/####/com.tqybsscwap_preferences.xml
- /data/data/####/dbvgawr-journal
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/sipdk
- /data/data/####/webview.db-journal
- /data/data/####/wt.db-journal
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- zjoot
- DES-ECB-PKCS5Padding