Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) sdk.c####.g####.####.cn:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(TLS/1.0) connect####.gst####.com:443
- TCP(TLS/1.0) 2####.239.36.223:443
- TCP(TLS/1.0) and####.a####.go####.com:443
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) 1####.177.14.113:443
- TCP(TLS/1.0) rr2---s####.g####.com:443
- TCP(TLS/1.0) 1####.177.14.94:443
- TCP(TLS/1.0) gmscomp####.google####.com:443
- TCP(TLS/1.0) rr9---s####.g####.com:443
- TCP(TLS/1.0) www.ih####.com:443
- TCP(TLS/1.0) api.map.b####.com:443
- TCP(TLS/1.0) pay.ih####.com:443
- TCP(TLS/1.2) 1####.177.14.113:443
- TCP(TLS/1.2) gmscomp####.google####.com:443
- TCP(TLS/1.2) 1####.177.14.94:443
- TCP(TLS/1.2) 1####.177.14.106:443
- TCP cm-10####.g####.com:5226
- TCP sdk.o####.t####.####.com:5224
- and####.a####.go####.com
- and####.cli####.go####.com
- and####.google####.com
- api.map.b####.com
- c-h####.g####.com
- cdn-sdk####.g####.com
- cm-10####.g####.com
- connect####.gst####.com
- digital####.google####.com
- f####.gst####.com
- gmscomp####.google####.com
- pay.ih####.com
- pla####.googleu####.com
- rr10---####.g####.com
- rr2---s####.g####.com
- rr9---s####.g####.com
- sdk.c####.g####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- sett####.crashly####.com
- www.ih####.com
- sdk.c####.g####.####.cn/config/hzv9.conf
- api.map.b####.com:443/sdkcs/verify
- c-h####.g####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- /data/data/####/.jg.ic
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966BeginSession.cls
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966BeginSession.cls_temp
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966SessionApp.cls
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966SessionDevice.cls
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966SessionDevice.cls_temp
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966SessionOS.cls
- /data/data/####/668DDBFA02BF-0001-0F84-179B7A89C966SessionOS.cls_temp
- /data/data/####/668DDBFD0333-0001-1023-179B7A89C966BeginSession.cls
- /data/data/####/668DDBFD0333-0001-1023-179B7A89C966SessionApp.cls
- /data/data/####/668DDBFD0333-0001-1023-179B7A89C966SessionDevice.cls
- /data/data/####/668DDBFD0333-0001-1023-179B7A89C966SessionOS.cls
- /data/data/####/668DDBFF031F-0001-1046-179B7A89C966BeginSession.cls
- /data/data/####/668DDBFF031F-0001-1046-179B7A89C966SessionApp.cls
- /data/data/####/668DDBFF031F-0001-1046-179B7A89C966SessionDevice.cls
- /data/data/####/668DDBFF031F-0001-1046-179B7A89C966SessionOS.cls
- /data/data/####/668DDBFF0387-0001-105E-179B7A89C966BeginSession.cls
- /data/data/####/668DDBFF0387-0001-105E-179B7A89C966SessionApp.cls
- /data/data/####/668DDBFF0387-0001-105E-179B7A89C966SessionDevice.cls_temp
- /data/data/####/668DDBFF0387-0001-105E-179B7A89C966SessionOS.cls
- /data/data/####/QALConfigStore.dat
- /data/data/####/TLS_DEVICE_INFO.xml
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/WLOGIN_DEVICE_INFO.xml
- /data/data/####/authStatus_com.irenshi.personneltreasure.xml
- /data/data/####/authStatus_com.irenshi.personneltreasure;QALSERVICE.xml
- /data/data/####/authStatus_com.irenshi.personneltreasure;pushservice.xml
- /data/data/####/classes.dex
- /data/data/####/classes.oat
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/classes4.dex
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.irenshi.personneltreasure.xml
- /data/data/####/getui_sp.xml
- /data/data/####/imei
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/initialization_marker
- /data/data/####/irenshi_db-journal
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/mac.xml
- /data/data/####/proc_auxv
- /data/data/####/pull_msf_succcom.irenshi.personneltreasure.xml
- /data/data/####/push.pid
- /data/data/####/pushsdk.db-journal
- /data/data/####/report_v5.msgstore-journal (deleted)
- /data/data/####/run.pid
- /data/data/####/sa_3948bf5b-7cb3-4802-acf6-193671806dde_1720572923155.tap
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/tls_device.dat
- /data/data/####/tls_sdk.db-journal
- /data/data/####/wlogin_device.dat
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/app.24.07.10.03.log
- /data/media/####/app.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.irenshi.personneltreasure.bin
- /data/media/####/com.irenshi.personneltreasure.db
- /data/media/####/imsdk_20240710.log
- /data/media/####/sdk.24.07.10.03.log
- /data/misc/####/primary.prof
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu.so
- libBaiduMapSDK_base_v4_2_0
- lib_imcore_jni_gyp
- libgetuiext2
- libjiagu
- libqalcodecwrapper
- libqalmsfboot
- AES-CBC-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding