Technical information
- Adware.Kyview.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) app.n####.vdon####.cn:80
- TCP(HTTP/1.1) t####.qq.com:14000
- TCP(HTTP/1.1) o####.i####.com:80
- TCP(HTTP/1.1) api.5####.cn:80
- TCP(HTTP/1.1) si####.us####.cdnetw####.net:80
- TCP(HTTP/1.1) nm.a####.com:80
- TCP(HTTP/1.1) t####.qq.com:80
- TCP(TLS/1.0) co####.ad####.cn:443
- TCP t####.qq.com:80
- TCP t####.qq.com:14000
- api.5####.cn
- app.n####.vdon####.cn
- cdn.i####.com
- co####.ad####.cn
- o####.i####.com
- pi####.qq.com
- t####.qq.com
- t####.sin####.cn
- t####.sin####.cn
- tp1.sin####.cn
- tp4.sin####.cn
- ww1.sin####.cn
- ww2.sin####.cn
- ww3.sin####.cn
- wx1.sin####.cn
- wx3.sin####.cn
- api.5####.cn/v1/banner/getlist/1
- api.5####.cn/v1/banner/getlist/99
- api.5####.cn/v1/event/info/
- api.5####.cn/v1/said/getlist/
- api.5####.cn/v1/said/getlist/?order=####
- app.n####.vdon####.cn/v1/ad/list_info/1?size=####
- app.n####.vdon####.cn/v1/param/list_info/1?size=####
- app.n####.vdon####.cn/v1/update/check/1?ver=####
- nm.a####.com/news/word/20180122.jpg
- o####.i####.com/dsapi
- o####.i####.com/dsapi/
- si####.us####.cdnetw####.net/1708242827/50/5630123044/0
- si####.us####.cdnetw####.net/1742987084/50/5634992037/0
- si####.us####.cdnetw####.net/bmiddle/65d1b78bgy1fnoja4dhhcj20j60j63zx.jpg
- si####.us####.cdnetw####.net/bmiddle/67e3df4cgy1fnoklku5xnj20c80b9mxp.jpg
- si####.us####.cdnetw####.net/bmiddle/99116fa9ly1fnpbon21m4j20jg0t575d.jpg
- si####.us####.cdnetw####.net/crop.0.0.180.180.50/65d1b78bjw1e8qgp5bmzyj2...
- si####.us####.cdnetw####.net/crop.0.0.180.180.50/67e3df4cjw1e8qgp5bmzyj2...
- si####.us####.cdnetw####.net/crop.0.0.180.180.50/99116fa9jw1e8qgp5bmzyj2...
- si####.us####.cdnetw####.net/large/006dJFrqjw1f7owm6fy0uj30k007adh5.jpg
- si####.us####.cdnetw####.net/large/006dJFrqjw1f7oz1xcsapj30xa0a6gnt.jpg
- si####.us####.cdnetw####.net/large/006vDpGRgw1f9n486zsfej30dl05sgmh.jpg
- si####.us####.cdnetw####.net/mw690/c32542c0jw1f2n1uu1ldwj20dl05sq36.jpg
- si####.us####.cdnetw####.net/mw690/c32542c0jw1f2riekn1a2j20dl05swf5.jpg
- si####.us####.cdnetw####.net/mw690/c32542c0jw1f30d0y0b9dj20dl05smx9.jpg
- t####.qq.com/203.205.146.122:80/
- t####.qq.com:14000/203.205.146.122:14000/
- <Package Folder>/.jiagu/libjiagu.so
- <Package Folder>/app_jgls/.log.lock
- <Package Folder>/app_jgls/.log.ls
- <Package Folder>/cache/-671907924
- <Package Folder>/cache/1026755919
- <Package Folder>/cache/1223992354
- <Package Folder>/cache/1764662722
- <Package Folder>/databases/####/cc.db
- <Package Folder>/databases/####/cc.db-journal
- <Package Folder>/databases/58is.v1.dat-journal
- <Package Folder>/databases/appdata.dat-journal
- <Package Folder>/files/####/.jg.ic
- <Package Folder>/files/mobclick_agent_cached_<Package>201704280
- <Package Folder>/shared_prefs/.tpns.xml.xml
- <Package Folder>/shared_prefs/cachea.xml
- <Package Folder>/shared_prefs/device_id.xml
- <Package Folder>/shared_prefs/tpush.shareprefs.xml
- <Package Folder>/shared_prefs/umeng_general_config.xml
- <SD-Card>/YueShuo/####/-1205946061.tmp
- <SD-Card>/YueShuo/####/-1315188509.tmp
- <SD-Card>/YueShuo/####/-1585854172.tmp
- <SD-Card>/YueShuo/####/-1619634203.tmp
- <SD-Card>/YueShuo/####/-551524476.tmp
- <SD-Card>/YueShuo/####/-718385033.tmp
- <SD-Card>/YueShuo/####/-771155801.tmp
- <SD-Card>/YueShuo/####/-79732371.tmp
- <SD-Card>/YueShuo/####/-817528301.tmp
- <SD-Card>/YueShuo/####/.nomedia
- <SD-Card>/YueShuo/####/1443865230.tmp
- <SD-Card>/YueShuo/####/1462637957.tmp
- <SD-Card>/YueShuo/####/1586461802.tmp
- <SD-Card>/YueShuo/####/1813899015.tmp
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- sh <Package Folder>/lib/libxguardian.so <Package>,2100188555; 55199 203.205.128.130 [{ idx :0, ts :%d, et :2000, si :0, ui : <IMEI> , ky : Axg%lu , mid : 0 , ev :{ ov : 18 , sr : 600*752 , md : <System Property> , lg : en , sv : 2.46 , mf : unknown , apn : %s }}] 0 18
- libjiagu
- tpnsSecurity