Technical information
- Adware.Panda.2.origin
- Adware.Panda.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) android####.cos.myqc####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) s####.e.qq.com:80
- TCP(HTTP/1.1) qzones####.g####.cn.####.com:80
- TCP(HTTP/1.1) mi.g####.qq.com:80
- TCP(HTTP/1.1) luna-im####.qq.com.####.com:80
- TCP(TLS/1.0) sett####.crashly####.com:443
- TCP(TLS/1.0) and####.cli####.go####.com:443
- a.appj####.com
- and####.cli####.go####.com
- android####.cos.myqc####.com
- imgc####.qq.com
- mi.g####.qq.com
- qzones####.g####.cn
- s####.e.qq.com
- sett####.crashly####.com
- android####.cos.myqc####.com/zhongzi_search8.json
- luna-im####.qq.com.####.com/qzone/biz/gdt/mod/android/AndroidAllInOne/pr...
- mi.g####.qq.com/gdt_mview.fcg?posw=####&posh=####&count=####&r=####&data...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/banner.a...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/banner.h...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/a...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/b...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/c...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/d...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/g...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/i...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/p...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/s...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/images/t...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/intersti...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/js-relea...
- qzones####.g####.cn.####.com/qzone/biz/gdt/mob/sdk/v2/android01/js/lib/r...
- a.appj####.com/ad-service/ad/mark
- s####.e.qq.com/activate
- s####.e.qq.com/err
- s####.e.qq.com/msg
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/5F2D96930072-0001-0889-0829CC517D08BeginSession.cls_temp
- /data/data/####/5F2D96930072-0001-0889-0829CC517D08SessionApp.cls_temp
- /data/data/####/5F2D96930072-0001-0889-0829CC517D08SessionDevice.cls_temp
- /data/data/####/5F2D96930072-0001-0889-0829CC517D08SessionOS.cls_temp
- /data/data/####/GDTSDK.db
- /data/data/####/GDTSDK.db-journal
- /data/data/####/TwitterAdvertisingInfoPreferences.xml
- /data/data/####/com.crashlytics.prefs.xml
- /data/data/####/com.crashlytics.sdk.android;answers;settings.xml
- /data/data/####/com.crashlytics.settings.json
- /data/data/####/com.google.android.gms.appid-no-backup
- /data/data/####/com.google.android.gms.appid.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml
- /data/data/####/com.google.android.gms.measurement.prefs.xml.bak
- /data/data/####/data_0
- /data/data/####/data_1
- /data/data/####/data_2
- /data/data/####/data_3
- /data/data/####/devCloudSetting.cfg
- /data/data/####/devCloudSetting.sig
- /data/data/####/f_000001
- /data/data/####/f_000002
- /data/data/####/f_000003
- /data/data/####/f_000004
- /data/data/####/gdt_plugin.jar
- /data/data/####/gdt_plugin.jar.sig
- /data/data/####/gdt_plugin.tmp
- /data/data/####/gdt_plugin.tmp.sig
- /data/data/####/gdt_suid
- /data/data/####/index
- /data/data/####/initialization_marker
- /data/data/####/io.fabric.sdk.android;fabric;io.fabric.sdk.andr...ng.xml
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/multidex.version.xml
- /data/data/####/plugin.apk
- /data/data/####/sa_effdbb5e-ab41-4fee-b911-f78abf126956_1596823193353.tap
- /data/data/####/sdkCloudSetting.cfg
- /data/data/####/sdkCloudSetting.sig
- /data/data/####/session_analytics.tap
- /data/data/####/session_analytics.tap.tmp
- /data/data/####/update_lc
- /data/data/####/webview.db-journal
- /data/data/####/webviewCookiesChromium.db-journal
- /data/media/####/ApplicationCache.db
- /data/media/####/ApplicationCache.db-journal
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- AES-ECB-PKCS7Padding
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS7Padding
- RSA-ECB-PKCS1Padding