Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(TLS/1.0) ca0cd14####.ibroad####.com:443
- TCP(TLS/1.0) s####.j####.cn:443
- UDP s.j####.cn:19000
- UDP easytom####.com:19000
- TCP 43.2####.88.95:7009
- TCP 1####.230.236.47:7001
- ca0cd14####.ibroad####.com
- ca0cd14####.ibroad####.com
- easytom####.com
- s####.j####.cn
- s.j####.cn
- sis.j####.io
- up####.sdk.jig####.cn
- /data/data/####/.jg.ic
- /data/data/####/CookiePersistence.xml
- /data/data/####/JPushSA_Config.xml
- /data/data/####/UserInfo.xml
- /data/data/####/appPackageNames
- /data/data/####/cn.jpush.android.user.profile.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml
- /data/data/####/cn.jpush.preferences.v2.rid.xml.bak (deleted)
- /data/data/####/cn.jpush.preferences.v2.xml
- /data/data/####/cn.jpush.preferences.v2.xml (deleted)
- /data/data/####/cn.jpush.preferences.v2.xml.bak
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_local_notification.db-wal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/jpush_statistics.db
- /data/data/####/jpush_statistics.db-journal
- /data/data/####/jpush_statistics.db-shm (deleted)
- /data/data/####/jpush_statistics.db-wal
- /data/data/####/libjiagu.so
- /data/data/####/pyramid.db-journal
- /data/data/####/user.xml
- /data/media/####/.nomedia
- /data/media/####/.push_deviceid
- /data/media/####/cordova.js
- /data/media/####/journal.tmp
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- BLIrdaConLib
- NetworkAPI
- jcore115
- libjiagu
- AES-CBC-ZeroBytePadding
- AES-ECB-PKCS7Padding
- AES-ECB-NoPadding