Техническая информация
- Adware.Gexin.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) q####.c####.l####.####.com:80
- TCP(HTTP/1.1) ti####.c####.l####.####.com:80
- TCP(HTTP/1.1) ada####.m.ta####.com:80
- TCP(HTTP/1.1) hk.wagbr####.non####.####.com:80
- TCP(HTTP/1.1) p6.q####.com:80
- TCP(HTTP/1.1) ucm.kuaisha####.cc:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(HTTP/1.1) a.appj####.com:80
- TCP(HTTP/1.1) ad####.m.ta####.com:80
- TCP(HTTP/1.1) c-h####.g####.com:80
- TCP(HTTP/1.1) p1.q####.com:80
- TCP(HTTP/1.1) sdk.l####.360.cn:80
- TCP(HTTP/1.1) a####.u####.com:80
- TCP(HTTP/1.1) sdk-ope####.g####.com:80
- TCP(HTTP/1.1) sdk.s.360.####.com:80
- TCP(TLS/1.0) nbsdk-b####.al####.com:443
- TCP(TLS/1.0) eco####.me####.com.####.com:443
- TCP(TLS/1.0) api.o####.hua####.com:443
- TCP cm-1####.ig####.com:5225
- TCP sdk.o####.t####.####.com:5224
- TCP c####.hua####.com:80
- 7j####.c####.z0.####.com
- a####.u####.com
- a.appj####.com
- ad####.m.ta####.com
- ada####.m.ta####.com
- api.kuaisha####.cc
- api.o####.hua####.com
- c####.hua####.com
- c-h####.g####.com
- c.appj####.com
- cm-1####.ig####.com
- eco####.me####.com
- nbsdk-b####.al####.com
- p0.q####.com
- p1.q####.com
- p2.q####.com
- p3.q####.com
- p4.q####.com
- p5.q####.com
- p6.q####.com
- p7.q####.com
- p8.q####.com
- p9.q####.com
- pub-####.qin####.com
- s####.s.360.cn
- sdk-ope####.g####.com
- sdk.c####.ig####.com
- sdk.l####.360.cn
- sdk.o####.t####.####.com
- sdk.o####.t####.####.com
- sdk.o####.t####.####.net
- ucm.kuaisha####.cc
- v####.ma####.kuaisha####.cc
- y####.al####.com
- ad####.m.ta####.com/rest/gc2?ak=####&av=####&c=####&d=####&sv=####&t=###...
- p1.q####.com/d/inn/07bb78b9/live_interact_qiubite_arrow.png?userid=####&...
- p1.q####.com/d/inn/17613149/live_interact_bujiadi_car.png?userid=####&de...
- p1.q####.com/d/inn/1a6306ec/live_interact_lunzi_0.png?userid=####&device...
- p1.q####.com/d/inn/250042e2/live_interact_qiubite_heart.png?userid=####&...
- p1.q####.com/d/inn/356dc2b2/hj_ui_car_in.png?userid=####&deviceid=####&p...
- p1.q####.com/d/inn/382d8ae6/live_interact_car_3.png?userid=####&deviceid...
- p1.q####.com/d/inn/3eb2baf7/live_interact_xiongche_weixin.png?userid=###...
- p1.q####.com/d/inn/4567226c/hj_ui_avatar_11.png?userid=####&deviceid=###...
- p1.q####.com/d/inn/476cf21e/live_interact_tuhao_building.png?userid=####...
- p1.q####.com/d/inn/4d29ed5b/live_interact_airplain_2.png?userid=####&dev...
- p1.q####.com/d/inn/5175ce49/hj_ui_avatar_10.png?userid=####&deviceid=###...
- p1.q####.com/d/inn/5fc26162/hj_ui_avatar_1.png?userid=####&deviceid=####...
- p1.q####.com/d/inn/7067d4e0/hj_ui_avatar_4.png?userid=####&deviceid=####...
- p1.q####.com/d/inn/79e06862/live_interact_airplain_1.png?userid=####&dev...
- p1.q####.com/d/inn/7b9eb7e3/live_interact_tuhao_tiaofu_juanzhou.png?user...
- p1.q####.com/d/inn/7ea1f4c5/live_interact_xiongche_in.png?userid=####&de...
- p1.q####.com/d/inn/8eeb39a7/live_interact_car_7.png?userid=####&deviceid...
- p1.q####.com/d/inn/8f080acb/live_interact_lunzi_3.png?userid=####&device...
- p1.q####.com/d/inn/9233c488/live_interact_lunzi_6.png?userid=####&device...
- p1.q####.com/d/inn/9272e49e/live_interact_tuhao_tiaofu.png?userid=####&d...
- p1.q####.com/d/inn/a3496e91/hj_ui_avatar_8.png?userid=####&deviceid=####...
- p1.q####.com/d/inn/a4c196e4/live_interact_qiubite_smoke.png?userid=####&...
- p1.q####.com/d/inn/c2f6eca4/hj_ui_avatar_2.png?userid=####&deviceid=####...
- p1.q####.com/d/inn/cb237c6f/live_interact_xiongche_out.png?userid=####&d...
- p1.q####.com/d/inn/cda7b986/hj_ui_avatar_5.png?userid=####&deviceid=####...
- p1.q####.com/d/inn/ea956402/live_interact_qiubite.png?userid=####&device...
- p1.q####.com/d/inn/ed007161/live_interact_qiubite_flower.png?userid=####...
- p1.q####.com/d/inn/ef9eb0b7/live_interact_tuhao_plane.png?userid=####&de...
- p1.q####.com/d/inn/fda75de4/hj_ui_car_out.png?userid=####&deviceid=####&...
- p6.q####.com/d/inn/02515022/live_interact_tuhao_cloud.png?userid=####&de...
- p6.q####.com/d/inn/0f4703a1/hj_ui_avatar_12.png?userid=####&deviceid=###...
- p6.q####.com/d/inn/299ea142/live_interact_bujiadi_light.png?userid=####&...
- p6.q####.com/d/inn/33547277/live_interact_car_8.png?userid=####&deviceid...
- p6.q####.com/d/inn/34e49136/live_interact_xiongche_weiyan.png?userid=###...
- p6.q####.com/d/inn/43e73140/live_interact_car_1.png?userid=####&deviceid...
- p6.q####.com/d/inn/80e2b494/hj_ui_avatar_6.png?userid=####&deviceid=####...
- p6.q####.com/d/inn/891e9b33/hj_ui_avatar_7.png?userid=####&deviceid=####...
- p6.q####.com/d/inn/b9c216af/hj_ui_avatar_3.png?userid=####&deviceid=####...
- p6.q####.com/d/inn/d468af35/hj_ui_avatar_9.png?userid=####&deviceid=####...
- p6.q####.com/d/inn/dfa7476e/live_interact_car_5.png?userid=####&deviceid...
- q####.c####.l####.####.com/config/hz-hzv6.conf
- sdk.l####.360.cn/codec?model=####&pid=####&mid=####&ver=####&bid=####&sd...
- sdk.s.360.####.com/ak/55a7cf9c71f1c9c495413f934dd1a158.html?m2=####
- ti####.c####.l####.####.com/tdata_BAI450
- ti####.c####.l####.####.com/tdata_Cye094
- ti####.c####.l####.####.com/tdata_vGW305
- a####.u####.com/app_logs
- a.appj####.com/jiagu/check/upgrade
- ada####.m.ta####.com/rest/sur?ak=####&av=####&c=####&v=####&s=####&d=###...
- c-h####.g####.com/api.php?format=####&t=####
- c.appj####.com/ad/splash/stats.html
- hk.wagbr####.non####.####.com/saveWb.json
- sdk-ope####.g####.com/api.php?format=####&t=####
- sdk-ope####.g####.com/api.php?format=####&t=####&d=####&k=####
- ucm.kuaisha####.cc/service/rest?api=####&game=####&userId=####&platformV...
- /data/anr/traces.txt
- /data/data/####/.imprint
- /data/data/####/.jg.ic
- /data/data/####/0a231bd8575dcf72.txt
- /data/data/####/155652094-1163269921
- /data/data/####/155652094-1163269921 (deleted)
- /data/data/####/21c22f492aba3de8.lock
- /data/data/####/5577c9243d2fc14843f2afb53eeb6b68.0.tmp
- /data/data/####/5577c9243d2fc14843f2afb53eeb6b68.1.tmp
- /data/data/####/8ef9c457b3bbb403.lock
- /data/data/####/930a31b34bd52c08.lock
- /data/data/####/AlibcLinkPartner.xml
- /data/data/####/Alvin2.xml
- /data/data/####/BuglySdkInfos.xml
- /data/data/####/ContextData.xml
- /data/data/####/GeTui.xml
- /data/data/####/Meiqia.xml
- /data/data/####/Q0VSVC5SU0EK.txt868
- /data/data/####/QH_DeviceSDK.xml
- /data/data/####/QH_SDK_M2.xml
- /data/data/####/QH_SDK_UserData.xml
- /data/data/####/QH_SDK_UserData55a7cf9c71f1c9c495413f934dd1a158.xml
- /data/data/####/SGMANAGER_DATA2
- /data/data/####/SGMANAGER_DATA2.tmp
- /data/data/####/USER_TAG.xml
- /data/data/####/UTCommon.xml
- /data/data/####/ad_show_time.xml
- /data/data/####/aliTradeConfigSP.xml
- /data/data/####/ap.Lock
- /data/data/####/auth_sdk_device.xml
- /data/data/####/cc.db
- /data/data/####/cc.db-journal
- /data/data/####/com.ningkegame.bus_preferences.xml
- /data/data/####/delete_file.xml
- /data/data/####/exchangeIdentity.json
- /data/data/####/exid.dat
- /data/data/####/gdaemon_20161017
- /data/data/####/getui_sp.xml
- /data/data/####/gkt-journal
- /data/data/####/init.pid
- /data/data/####/init_c1.pid
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/journal.tmp
- /data/data/####/libjiagu.so
- /data/data/####/libsgmainso-5.1.96.so.tmp
- /data/data/####/libsgsecuritybodyso-5.1.25.so.tmp
- /data/data/####/living.db-journal
- /data/data/####/lock.lock
- /data/data/####/meiqia.db
- /data/data/####/meiqia.db-journal
- /data/data/####/multidex.version.xml
- /data/data/####/ph_llc.xml
- /data/data/####/push.pid
- /data/data/####/pushext.db-journal
- /data/data/####/pushg.db-journal
- /data/data/####/pushsdk.db-journal
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/run.pid
- /data/data/####/script.spp
- /data/data/####/sp.lock
- /data/data/####/tdata_BAI450
- /data/data/####/tdata_BAI450.jar
- /data/data/####/tdata_Cye094
- /data/data/####/tdata_Cye094.jar
- /data/data/####/tdata_vGW305
- /data/data/####/tdata_vGW305.jar
- /data/data/####/timestamp
- /data/data/####/ua.db
- /data/data/####/ua.db-journal
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/ut.db
- /data/data/####/ut.db-journal
- /data/data/####/video_default_parser.zip
- /data/media/####/-1030261265.tmp
- /data/media/####/-1157692967.tmp
- /data/media/####/-1323613056.tmp
- /data/media/####/-1339545799.tmp
- /data/media/####/-1405806190.tmp
- /data/media/####/-1470785901.tmp
- /data/media/####/-1729213187.tmp
- /data/media/####/-1841570305.tmp
- /data/media/####/-265915128
- /data/media/####/-265915128.tmp
- /data/media/####/-29606121.tmp
- /data/media/####/-301722047.tmp
- /data/media/####/-323050950.tmp
- /data/media/####/-48359220.tmp
- /data/media/####/-542277938.tmp
- /data/media/####/-591596594.tmp
- /data/media/####/-774938572.tmp
- /data/media/####/-840810768
- /data/media/####/-840810768.tmp
- /data/media/####/.cuid
- /data/media/####/.deviceId
- /data/media/####/.nomedia
- /data/media/####/1038656416.tmp
- /data/media/####/1041082191.tmp
- /data/media/####/1080899709
- /data/media/####/1080899709.tmp
- /data/media/####/1124127929.tmp
- /data/media/####/1251694618.tmp
- /data/media/####/1296205543.tmp
- /data/media/####/13521730.tmp
- /data/media/####/1364304343.tmp
- /data/media/####/1441864797.tmp
- /data/media/####/1576303190.tmp
- /data/media/####/1591998983.tmp
- /data/media/####/1610035587.tmp
- /data/media/####/1622073705.tmp
- /data/media/####/1818344955.tmp
- /data/media/####/1861947644.tmp
- /data/media/####/2112128350.tmp
- /data/media/####/370264079.tmp
- /data/media/####/58052448.tmp
- /data/media/####/6c709c11d2d46a7b
- /data/media/####/740558118.tmp
- /data/media/####/819940764.tmp
- /data/media/####/892380089.tmp
- /data/media/####/966313209.tmp
- /data/media/####/975921926.tmp
- /data/media/####/Alvin2.xml
- /data/media/####/BG_2019_08_10.log
- /data/media/####/CR_2019_08_10.log
- /data/media/####/ContextData.xml
- /data/media/####/GCQ
- /data/media/####/GCQ (deleted)
- /data/media/####/dd7893586a493dc3
- /data/media/####/device_id_self
- /data/media/####/hid.dat
- /data/media/####/huajiao.log
- /data/media/####/tdata_BAI450
- /data/media/####/tdata_Cye094
- /data/media/####/tdata_vGW305
- <Package Folder>/files/gdaemon_20161017 0 <Package>/com.anzogame.push.GetuiPushService 24787 300 0
- chmod 700 <Package Folder>/files/gdaemon_20161017
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- api-sign
- getuiext2
- ijkffmpeg
- libjiagu
- luajava
- lzma
- security
- sgmainso-5.1
- sgsecuritybodyso-5.1
- siteparser
- transcore
- ut_c_api
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding
- RSA
- RSA-ECB-NoPadding
- RSA-NONE-OAEPWithSHA1AndMGF1Padding
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- AES-ECB-PKCS5Padding