Technical information
- Adware.Panda.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) req####.a####.cn:80
- TCP(HTTP/1.1) cd####.md####.cn.####.cn:80
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) d####.fl####.com:443
- TCP(TLS/1.0) sett####.crashly####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- cd####.md####.cn
- d####.fl####.com
- g####.face####.com
- req####.a####.cn
- sett####.crashly####.com
- ssl.google-####.com
- cd####.md####.cn.####.cn/resource/gis/45
- req####.a####.cn/pservers/loadgis?token=####
- /data/data/####/.YFlurrySenderIndex.info.AnalyticsData_TB5TJBW8...CH_216
- /data/data/####/.YFlurrySenderIndex.info.AnalyticsMain
- /data/data/####/.jg.ic
- /data/data/####/.yflurrydatasenderblock.2c8cd170-a035-48eb-b8cc...b9f343
- /data/data/####/.yflurrydatasenderblock.8b0fd77b-16fe-46b4-b83b...61bd85
- /data/data/####/.yflurrydatasenderblock.c6554618-6f31-4eb7-b1f0...d8ea18
- /data/data/####/.yflurryreport.-64124e1b2c51b8f8
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BA.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BABeginSession.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BASessionApp.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BASessionCrash.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BASessionDevice.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BASessionOS.cls_temp
- /data/data/####/5C68BEA200C8-0001-08F9-8052EC2501BASessionUser.cls_temp
- /data/data/####/5C68BEAC012E-0002-08F9-8052EC2501BABeginSession.cls_temp
- /data/data/####/5C68BEAC012E-0002-08F9-8052EC2501BASessionApp.cls_temp
- /data/data/####/5C68BEAC012E-0002-08F9-8052EC2501BASessionDevice.cls_temp
- /data/data/####/5C68BEAC012E-0002-08F9-8052EC2501BASessionOS.cls_temp
- /data/data/####/5C68BEAD03CF-0001-098C-8052EC2501BABeginSession.cls_temp
- /data/data/####/5C68BEAD03CF-0001-098C-8052EC2501BASessionApp.cls_temp
- /data/data/####/5C68BEAD03CF-0001-098C-8052EC2501BASessionDevice.cls_temp
- /data/data/####/5C68BEAD03CF-0001-098C-8052EC2501BASessionOS.cls_temp
- /data/data/####/AppEventsLogger.persistedevents
- /data/data/####/DeviceTestSharedPreferences.xml
- /data/data/####/FLURRY_SHARED_PREFERENCES.xml
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/camera_basic_info.xml
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.sdk.android.crashlytics-core;co...re.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.facebook.sdk.appEventPreferences.xml
- /data/data/####/com.facebook.sdk.attributionTracking.xml
- /data/data/####/com.fotoable.zl.hk.zip
- /data/data/####/com.fotoable.zl.hk_preferences.xml
- /data/data/####/com.google.android.gms.analytics.prefs.xml
- /data/data/####/crash_marker
- /data/data/####/fHWVS.zip
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/initialization_marker
- /data/data/####/io.fabric.sdk.android;fabric;vi.xml
- /data/data/####/libjiagu538158086.so
- /data/data/####/multidex.version.xml
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/sa_bf154273-8274-4875-bc32-020030b75238_1550368418443.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/signOfIcon.xml
- /data/data/####/sysconfig.xml
- /system/bin/cat /proc/cpuinfo
- chmod 755 <Package Folder>/.jiagu/libjiagu538158086.so
- libjiagu538158086
- ulsTracker_native
- AES
- AES-ECB-PKCS5Padding