Technical information
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) sdk.o####.p####.####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) www.juxing####.cn:9000
- TCP(HTTP/1.1) t####.c####.q####.####.com:80
- TCP(HTTP/1.1) 39.1####.210.28:8081
- TCP(HTTP/1.1) app.quron####.shop:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP sdk.o####.t####.####.com:5224
- TCP c####.g####.ig####.com:5227
- 7j####.c####.z0.####.com
- a####.u####.com
- app.quron####.shop
- c####.g####.ig####.com
- c-h####.g####.com
- sdk.c####.ig####.com
- sdk.o####.p####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- www.juxing####.cn
- app.quron####.shop/api/broad-cast
- app.quron####.shop/api/business/get-category-list
- app.quron####.shop/api/business/get-product-list?page=####&pagesize=####...
- app.quron####.shop/api/imglogo/get-imglogo-list?category=####
- app.quron####.shop/uploads/business/20190217/1063cc8265a0e174e02d57ad05d...
- app.quron####.shop/uploads/business/20190217/af2874efba39393e15e936e0dda...
- app.quron####.shop/uploads/business/20190217/e8e0d056353e1e53d837a552a55...
- app.quron####.shop/uploads/business/20190217/f0e17dfd1788fe1364f3dfd9a00...
- app.quron####.shop/uploads/business/20190218/b26d66f0e6b2ec280dc9f9790a1...
- app.quron####.shop/uploads/imglogo/20181210/a088e296667ed6305c6e287e409c...
- app.quron####.shop/uploads/imglogo/20181210/c2770b8e30f886c5eb72a7fdec5f...
- t####.c####.q####.####.com/tdata_Jga153
- t####.c####.q####.####.com/tdata_Wqf010
- t####.c####.q####.####.com/tdata_bca864
- t####.c####.q####.####.com/tdata_ynp969
- ti####.c####.l####.####.com/config/hz-hzv3.conf
- a####.u####.com/app_logs
- c-h####.g####.com/api.php?format=####&t=####
- sdk.o####.p####.####.com/api.php?format=####&t=####
- www.juxing####.cn:9000/api/logout
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/297c7f1107ec56c960fd832ffd6e0bec2deaade37694491....0.tmp
- /data/data/####/60f8a6c51102472f891849598833055c.0.tmp
- /data/data/####/60f8a6c51102472f891849598833055c.1.tmp
- /data/data/####/9106a49b7c0ba2069bd3d1def85d368601f9c6862ab28e9....0.tmp
- /data/data/####/95f4c6402fac3fd2c084f13bdf5946f1c0184d31ae7fc90....0.tmp
- /data/data/####/9f37acaa8e6aaae8607f7865a947edce47176894950309d....0.tmp
- /data/data/####/MultiDex.lock
- /data/data/####/a61f4717008b4e832d249c7b63a355e573e3440b5f78ced....0.tmp
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/fd060f03e22d8f9d1bedd711769357b84bf0af4f13d3dc9....0.tmp
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/gx_sp.xml
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/journal.tmp
- /data/data/####/libjiagu-157161982.so
- /data/data/####/loan.xml
- /data/data/####/multidex.version.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushk.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/run.pid
- /data/data/####/tdata_Jga153
- /data/data/####/tdata_Jga153.jar
- /data/data/####/tdata_Wqf010
- /data/data/####/tdata_Wqf010.jar
- /data/data/####/tdata_bca864
- /data/data/####/tdata_bca864.jar
- /data/data/####/tdata_ynp969
- /data/data/####/tdata_ynp969.jar
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/media/####/app.db
- /data/media/####/com.getui.sdk.deviceId.db
- /data/media/####/com.igexin.sdk.deviceId.db
- /data/media/####/com.qurongbei.sincere.bin
- /data/media/####/com.qurongbei.sincere.db
- /data/media/####/gkt-journal
- /data/media/####/gktper
- /data/media/####/tdata_Jga153
- /data/media/####/tdata_Wqf010
- /data/media/####/tdata_bca864
- /data/media/####/tdata_ynp969
- /data/media/####/test.log
- <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.DemoPushService 25128 300 0
- chmod 700 <Package Folder>/files/gdaemon_20161017
- sh <Package Folder>/files/gdaemon_20161017 0 <Package>/<Package>.getui.DemoPushService 25128 300 0
- getuiext3
- libjiagu-157161982
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding