Technical information
- Adware.Panda.5.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) cd####.md####.cn.####.cn:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) www.md####.cn:80
- TCP(HTTP/1.1) oc.u####.com:80
- a####.u####.co
- a####.u####.com
- au.u####.co
- au.u####.com
- cd####.md####.cn
- oc.u####.com
- www.md####.cn
- cd####.md####.cn.####.cn/resource/gis/45
- www.md####.cn/pservers/loadgis?token=####
- a####.u####.com/app_logs
- oc.u####.com/check_config_update
- /data/data/####/.jg.ic
- /data/data/####/AdJ.zip
- /data/data/####/cc.vb31a6b4.epDere5k.zip
- /data/data/####/cc.vb31a6b4.epDere5k_preferences.xml
- /data/data/####/libjiagu-127906242.so
- /data/data/####/mobclick_agent_cached_cc.vb31a6b4.epDere5k
- /data/data/####/mobclick_agent_online_setting_cc.vb31a6b4.epDere5k.xml
- /data/data/####/mobclick_agent_state_cc.vb31a6b4.epDere5k.xml
- /data/data/####/webview.db-journal
- /data/media/####/huaxue.db
- /data/media/####/huaxue.db-journal
- /system/bin/cat /proc/cpuinfo
- chmod 755 <Package Folder>/.jiagu/libjiagu-127906242.so
- bspatch
- libjiagu-127906242
- AES
- AES-ECB-PKCS5Padding