Technical information
- Adware.Waps.5.origin
- UDP(DNS) <Google DNS>
- UDP(DNS) 8####.8.4.4:53
- TCP(HTTP/1.1) kvt####.m####.a####.com:80
- TCP(HTTP/1.1) a####.a####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) a####.m.ta####.com:80
- TCP(HTTP/1.1) na61-####.wagbr####.ali####.####.com:80
- TCP(HTTP/1.1) a####.u####.com.####.com:80
- TCP(HTTP/1.1) x####.a####.com:80
- TCP(HTTP/1.1) hk.wagbr####.non####.####.com:80
- TCP(HTTP/1.1) app.w####.cn:80
- TCP(TLS/1.0) c####.im.ta####.com:443
- TCP(TLS/1.0) na61-####.wagbr####.ali####.####.com:443
- TCP(TLS/1.0) safebro####.google####.com:443
- TCP(TLS/1.0) 2####.58.208.106:443
- TCP(TLS/1.2) 1####.250.179.174:443
- TCP(TLS/1.2) 1####.217.168.195:443
- UDP 2####.0.0.1:9998
- TCP na61-####.wagbr####.ali####.####.com:443
- 7####.nd####.y####.com
- a####.a####.com
- a####.m.ta####.com
- a####.u####.com
- a.appj####.com
- aos.w####.y####.####.8
- aos.w####.y####.net
- app.w####.cn
- c####.im.ta####.com
- i####.ww.ta####.com
- ip.ta####.com
- kvt####.m####.a####.com
- m####.a####.com
- s####.gw.y####.####.8
- s####.gw.y####.net
- s.y####.net
- s.y####.net.####.8
- safebro####.google####.com
- t####.dmp.y####.####.8
- t####.dmp.y####.net
- wb.110.ta####.com
- www.a####.com
- x####.a####.com
- y####.al####.com
- a####.a####.com/atiws/atiappcommon?gameid=####&os=####&appver=####&gamet...
- app.w####.cn/action/connect/active?app_id=####&udid=####&imsi=####&net=#...
- hk.wagbr####.non####.####.com/m/um.htm?c=####
- hk.wagbr####.non####.####.com/m/um.htm?c={"tim####
- kvt####.m####.a####.com/kvinfo.php
- na61-####.wagbr####.ali####.####.com/service/getIpInfo2.php?ip=####
- x####.a####.com/
- x####.a####.com/api/framework/adConf/26?os=####&appver=####&versionCode=...
- x####.a####.com/api/framework/jifen/enter/26?os=####&appver=####&version...
- x####.a####.com/api/hot/bannerItem/499?os=####&appver=####&versionCode=#...
- x####.a####.com/api/hot/titleItem/500?os=####&appver=####&versionCode=##...
- x####.a####.com/api/hot/videos/11140?appId=####&xifenId=####&os=####&app...
- x####.a####.com/api/jifen/firstInstallInit?os=####&appId=####&appver=###...
- x####.a####.com/api/specialTopic/itemList/502?os=####&appver=####&versio...
- x####.a####.com/mobile/apps/apps.php?module=####&func=####&app=####&ver=...
- x####.a####.com/mobile/apps/apps_module-badDomain.html
- a####.m.ta####.com/rest/gc?dd=####&nsgs=####&ak=####&av=####&c=####&v=##...
- a####.m.ta####.com/rest/sur?ak=####&av=####&c=####&v=####&s=####&d=####&...
- a####.u####.com.####.com/app_logs
- a.appj####.com/ad-service/ad/mark
- app.w####.cn/action/user_info
- c####.im.ta####.com:443/fb/to_id_fetch_new
- hk.wagbr####.non####.####.com/saveWb.json
- kvt####.m####.a####.com/i.gif
- na61-####.wagbr####.ali####.####.com:443/openim/getanonymous
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/030e1d086dda2efcb5e9fbdf4b4f160b-journal
- /data/data/####/0a231bd8575dcf72.txt
- /data/data/####/1d77ea041509fe06.lock
- /data/data/####/4011d622258405a99df047ba21a0321f.0.tmp
- /data/data/####/4011d622258405a99df047ba21a0321f.1.tmp
- /data/data/####/49814c4f5ac2f2f9.lock
- /data/data/####/77f6b80a0f05fb12f1bd35be879934a4.0
- /data/data/####/77f6b80a0f05fb12f1bd35be879934a4.0.tmp
- /data/data/####/77f6b80a0f05fb12f1bd35be879934a4.1
- /data/data/####/77f6b80a0f05fb12f1bd35be879934a4.1.tmp
- /data/data/####/8e6fd4c7de7bd23b65827a7cd992e576
- /data/data/####/8e6fd4c7de7bd23b65827a7cd992e576-journal
- /data/data/####/92e0b71c8c824fb7895ec52e1ed81a81
- /data/data/####/92e0b71c8c824fb7895ec52e1ed81a81-journal
- /data/data/####/Alvin2.xml
- /data/data/####/AppSettings.xml
- /data/data/####/AppSettings.xml.bak
- /data/data/####/C0XKJAO3JLZKJPDKJFXLINQCJIOAOD.xml
- /data/data/####/CE94557724F842149D690D0E8CBB1CBD.xml
- /data/data/####/CacheTime.dat
- /data/data/####/ContextData.xml
- /data/data/####/CookiePersistence.xml
- /data/data/####/OFFERSCONFIG1.xml
- /data/data/####/OxgHkj2lz09F
- /data/data/####/OxgHkj2lz09F-journal
- /data/data/####/P15pKIjsm64m
- /data/data/####/P15pKIjsm64m-journal
- /data/data/####/RptKVStrategy.txt
- /data/data/####/SGMANAGER_DATA.xml
- /data/data/####/ShowAdFlag.xml
- /data/data/####/T1oX0rhhuXWt
- /data/data/####/T1oX0rhhuXWt-journal
- /data/data/####/UTCommon.xml
- /data/data/####/UTCommon.xml.bak
- /data/data/####/UTMCConf-96185886.xml
- /data/data/####/UTMCLog-96185886.xml
- /data/data/####/WebViewChromiumPrefs.xml
- /data/data/####/XKwVoK0huy3R
- /data/data/####/XKwVoK0huy3R-journal
- /data/data/####/ad_system_config.xml
- /data/data/####/aipai.btconfig
- /data/data/####/aipai.guid
- /data/data/####/classes.dex
- /data/data/####/classes2.dex
- /data/data/####/classes3.dex
- /data/data/####/e0888850d29ef11a195e5b377efd4265.0
- /data/data/####/e0888850d29ef11a195e5b377efd4265.0.tmp
- /data/data/####/e0888850d29ef11a195e5b377efd4265.1
- /data/data/####/e0888850d29ef11a195e5b377efd4265.1.tmp
- /data/data/####/exchangeIdentity.json
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/journal.tmp
- /data/data/####/jqIqJYOT3JpT
- /data/data/####/jqIqJYOT3JpT-journal
- /data/data/####/libjiagu.so
- /data/data/####/libsecuritysdkx-3.1.27.so
- /data/data/####/proc_auxv
- /data/data/####/profile
- /data/data/####/rx_sf_account.xml
- /data/data/####/rx_sf_account.xml.bak
- /data/data/####/rx_sf_app.xml
- /data/data/####/sp.lock
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_general_config.xml.bak
- /data/data/####/umeng_it.cache
- /data/data/####/wIU6pTyUBYWX
- /data/data/####/wIU6pTyUBYWX-journal
- /data/data/####/wsUL1uCdKvjD
- /data/data/####/wsUL1uCdKvjD-journal
- /data/data/####/ymdex.dex
- /data/data/####/ymdex.dex.flock (deleted)
- /data/data/####/ymdex.jar
- /data/data/####/ywPrefsTools.xml
- /data/media/####/6c709c11d2d46a7b
- /data/media/####/Alvin2.xml
- /data/media/####/AppPackage.dat
- /data/media/####/CacheTime.dat
- /data/media/####/ContextData.xml
- /data/media/####/UnPackage.dat
- /data/media/####/android
- /data/media/####/dd7893586a493dc3
- /data/media/####/i42d45df023jnkdd93la483f9xGFKXI
- /data/media/####/s92TjjdfoP2n3o9dfji2l9s1olkjf0p
- /system/bin/cat /sys/devices/system/cpu/kernel_max
- cat /proc/cpuinfo | grep Serial
- cat /sys/class/net/wlan0/address
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu.so
- ls -l /system/xbin/su
- AES
- AES-CBC-PKCS5Padding
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES
- DES-CBC-PKCS5Padding
- PBEWITHMD5andDES