Technical information
- Adware.Gexin.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) gm.mm####.com:80
- TCP(HTTP/1.1) hm.b####.com:80
- TCP(HTTP/1.1) box.18t####.com:80
- TCP(HTTP/1.1) c.c####.com:80
- TCP(HTTP/1.1) api.j####.360.cn:80
- TCP(HTTP/1.1) pco####.ta####.com:80
- UDP s.j####.cn:19000
- TCP 43.2####.88.85:3002
- TCP 43.2####.88.85:3010
- a####.u####.com
- api.j####.360.cn
- box.18t####.com
- c####.mm####.com
- c.c####.com
- h####.c####.com
- hm.b####.com
- pco####.c####.com
- s.j####.cn
- s11.c####.com
- api.j####.360.cn/s.html?t=####&r=####&im=####&md=####&ov=####&pn=####&vn...
- box.18t####.com/api2/clienthomepage?dk=####&ak=####
- box.18t####.com/api2/info?tag=####&dk=####&ak=####
- c.c####.com/core.php?web_id=####&t=####
- c.c####.com/stat.php?id=####&web_id=####
- gm.mm####.com/9.gif?abc=####&rnd=####
- hm.b####.com/hm.gif?cc=####&ck=####&cl=####&ds=####&vl=####&et=####&ja=#...
- hm.b####.com/hm.js?ca01a95####
- pco####.ta####.com/app.gif?&cna=####
- a####.u####.com/app_logs
- box.18t####.com/api2/magic?dk=####&ak=####
- /data/data/####/cn.jpush.serverconfig.xml
- /data/data/####/cn.jpush.serverconfig.xml.bak
- /data/data/####/com.touch18.player_preferences.xml
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/index
- /data/data/####/jiagu.lock
- /data/data/####/jpush_device_info.xml
- /data/data/####/jpush_local_notification.db
- /data/data/####/jpush_local_notification.db-journal
- /data/data/####/jpush_stat_cache_history.json
- /data/data/####/libjiagu.so
- /data/data/####/libjiagu_art.so
- /data/data/####/mobclick_agent_state_com.touch18.player.xml
- /data/data/####/openudid_prefs.xml
- /data/data/####/rep.db
- /data/data/####/rep.db-journal
- /data/data/####/statistics_config.xml
- /data/data/####/touch18_player.db
- /data/data/####/touch18_player.db-journal
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/.nomedia
- /data/media/####/.push_deviceid
- /data/media/####/phoneInfo.dat
- chmod 755 <Package Folder>/files/libjiagu_art.so
- sh
- su
- jpush170
- libjiagu