Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) q####.c####.l####.####.com:80
- TCP(HTTP/1.1) d.api.quv####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) insta####.com:80
- TCP(TLS/1.0) and####.cli####.go####.com:443
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) redi####.network####.com:443
- TCP(TLS/1.0) dc1.network####.com:443
- TCP(TLS/1.0) regi####.xm####.xi####.com:443
- TCP(TLS/1.0) api.face####.com:443
- TCP(TLS/1.0) d####.fl####.com:443
- TCP(TLS/1.0) insta####.com:443
- TCP(TLS/1.0) www.insta####.com:443
- TCP 43.2####.145.66:5226
- UDP 1####.31.17.108:80
- TCP sdk.o####.t####.####.com:5224
- UDP s.j####.cn:19000
- UDP s.j####.cn:80
- UDP 1####.31.17.108:19000
- UDP easytom####.com:19000
- UDP easytom####.com:80
- TCP 43.2####.145.50:5224
- 7j####.c####.z0.####.com
- a####.u####.com
- a.appj####.com
- and####.cli####.go####.com
- c-h####.g####.com
- d####.fl####.com
- d.api.quv####.com
- dc1.network####.com
- easytom####.com
- g####.face####.com
- insta####.com
- pub-####.qin####.com
- redi####.network####.com
- regi####.xm####.xi####.com
- s.j####.cn
- sdk-ope####.g####.com
- sdk.c####.ig####.com
- sdk.o####.i####.####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- sis.j####.io
- ssl.google-####.com
- t####.nz4.g####.net
- t####.nz4.ge####.com
- www.insta####.com
- insta####.com/slideplus
- q####.c####.l####.####.com/config/bj-bjv7.conf
- q####.c####.l####.####.com/config/hz-bjv8.conf
- q####.c####.l####.####.com/tdata_EDT369
- q####.c####.l####.####.com/tdata_mMz796
- q####.c####.l####.####.com/tdata_pUt878
- q####.c####.l####.####.com/tdata_qHR433
- sdk.o####.p####.####.com/api/addr.htm
- a####.u####.com/app_logs
- a.appj####.com/ad-service/ad/mark
- c-h####.g####.com/api.php?format=####&t=####
- d.api.quv####.com/api/rest/d/dd
- sdk-ope####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####&d=####&k=####
- sdk.o####.p####.####.com/api.php?format=####&t=####&d=####&k=####
- /data/data/####/.YFlurrySenderIndex.info.AnalyticsData_ZS66DXVZ...NW_216
- /data/data/####/.YFlurrySenderIndex.info.AnalyticsMain
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.yflurrydatasenderblock.576a1ef2-0934-45e9-a303...7155ca
- /data/data/####/.yflurrydatasenderblock.cce5dc7d-7fc0-489c-a70f...06ae4f
- /data/data/####/.yflurryreport.-476542aa0177b2eb
- /data/data/####/6ac6c41b971d8a83cab58aab7ef026b6f51feaf3e1c9c17....0.tmp
- /data/data/####/8391ade01fcb
- /data/data/####/FLURRY_SHARED_PREFERENCES.xml
- /data/data/####/JPushSA_Config.xml
- /data/data/####/StackRec.xml
- /data/data/####/cn.jpush.serverconfig.xml
- /data/data/####/com.facebook.internal.preferences.APP_SETTINGS.xml
- /data/data/####/com.google.android.gms.analytics.prefs.xml
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.networkbench.agent.impl.v2_com.quvideo.slideplus.xml
- /data/data/####/com.quvideo.slideplus_preferences.xml
- /data/data/####/fbf13862b582d8bb42c46316fe3a5668388cb7b96a60110....0.tmp
- /data/data/####/gaClientId
- /data/data/####/gdaemon_20161017
- /data/data/####/gkt-journal
- /data/data/####/global.db
- /data/data/####/global.db-journal
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/gx_sp.xml
- /data/data/####/increment.db-journal
- /data/data/####/init.pid
- /data/data/####/init_c.pid
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/journal.tmp
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_stat_cache.json
- /data/data/####/libjiagu.so
- /data/data/####/mipush.xml
- /data/data/####/mipush_extra.xml
- /data/data/####/mobclick_agent_cached_com.quvideo.slideplus28
- /data/data/####/mobclick_agent_online_setting_com.quvideo.slideplus.xml
- /data/data/####/multidex.version.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/rep.db-journal
- /data/data/####/run.pid
- /data/data/####/serverurl.ini
- /data/data/####/slXlPvgvmwljz_user.db-journal
- /data/data/####/statistics_config.xml
- /data/data/####/tdata_mMz796
- /data/data/####/tdata_mMz796.jar
- /data/data/####/tdata_pUt878
- /data/data/####/tdata_pUt878.jar
- /data/data/####/tdata_qHR433
- /data/data/####/tdata_qHR433.jar
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/.nomedia
- /data/media/####/0x00000002.ttf
- /data/media/####/0x00000003.ttf
- /data/media/####/0x00000004.ttf
- /data/media/####/0x00000005.ttf
- /data/media/####/0x00000006.ttf
- /data/media/####/155bea3ce218bf3353c56c94e32515c
- /data/media/####/175327844fa57466095d820bdc9483
- /data/media/####/3fedb33aa192e1ce4d5b50ba1c4fad6
- /data/media/####/513ef948a03351cd8b838c644b83cec
- /data/media/####/58ee58cc49564cdde81ef40b8e02e8d
- /data/media/####/655f6183c8c915d03566ba4f785b17
- /data/media/####/756e32297b22dfce56ab4eefcd9e7e
- /data/media/####/8829801d2e2571b44119bae4eabdcc3
- /data/media/####/8d7ecc69b2647e62dfeb7cb899611da
- /data/media/####/A Happy & Wonderful Life.m4a
- /data/media/####/Be Yourself.m4a
- /data/media/####/Beautiful Life.m4a
- /data/media/####/Better Times Ahead.m4a
- /data/media/####/Bouncy Party.m4a
- /data/media/####/CPUConfig.ini
- /data/media/####/Floating Times.m4a
- /data/media/####/Garden Adventure.m4a
- /data/media/####/Life Is Light.m4a
- /data/media/####/Love The Sky.m4a
- /data/media/####/Loving Everything I Find.m4a
- /data/media/####/Music Box Frolic.m4a
- /data/media/####/Slide.m4a
- /data/media/####/Stones in Still Waters.m4a
- /data/media/####/Sunset.m4a
- /data/media/####/a92ba0e2eba3e2bc95f9d26d9fa84977
- /data/media/####/app.db
- /data/media/####/bcc844ca1977eb57da12dda9886edc
- /data/media/####/c37b56a7e227493e4b2522193b7bc343
- /data/media/####/c99087b42648d564c5a3d978426289f
- /data/media/####/cc9c65b547a654ff0114533a478ed7e
- /data/media/####/cdea41284d2720f034d79e67dd9688c7
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.quvideo.slideplus.db
- /data/media/####/dae236559d1cacdf9662d8ed0cb55
- /data/media/####/db8e9a1d82c63e4b494df47f74fbc52f
- /data/media/####/fbd0104e1e285492ba6646ceb26ea980
- /data/media/####/gkt-journal
- /data/media/####/gktper
- /data/media/####/hw_codec_cap.xml
- /data/media/####/music.m4a
- /data/media/####/serverurl.ini
- /data/media/####/serverurl.p1
- /data/media/####/tdata_mMz796
- /data/media/####/tdata_pUt878
- /data/media/####/tdata_qHR433
- /data/media/####/test.log
- /system/bin/cat /proc/cpuinfo
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.igexin.sdk.PushService 25157 300 0
- cat /sys/class/net/wlan0/address
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/files/libjiagu.so
- mount
- sh
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/com.igexin.sdk.PushService 25157 300 0
- cesliveeditor
- cesmediabase
- cesplatform
- cesplatformutils
- cesrenderengine
- cvface_api
- dtdetector
- ffmpeg
- getuiext2
- jpush181
- libjiagu
- postprocess
- x264
- AES-CFB-NoPadding
- AES-ECB-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- desede-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- desede-CBC-PKCS5Padding