Technical information
- Adware.Egame.1
- Adware.Egame.2.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.96.49.16:80
- TCP(HTTP/1.1) 2####.102.39.23:80
- TCP(HTTP/1.1) pa####.wos####.cn:80
- TCP(HTTP/1.1) cdn.p####.cn.####.com:80
- TCP(HTTP/1.1) m####.vc####.cn:80
- TCP(HTTP/1.1) 1####.29.29.29:80
- TCP(HTTP/1.1) un####.wos####.cn:8061
- TCP(HTTP/1.1) 1####.96.49.15:80
- TCP(HTTP/1.1) o####.p####.cn:80
- TCP(HTTP/1.1) unipa####.wos####.cn:8080
- TCP(HTTP/1.1) se####.wos####.cn:81
- TCP(HTTP/1.1) cdn.vc####.cn.####.com:80
- TCP(HTTP/1.1) pg.x####.com:80
- UDP(NTP) 1.cn.p####.####.org:123
- TCP(TLS/1.0) av1.x####.com:443
- TCP(TLS/1.0) c####.x####.com:443
- TCP(TLS/1.0) api.vu####.com.####.net:443
- TCP(TLS/1.0) cdn.on####.mobi:443
- TCP(TLS/1.0) 2####.32.8.90:443
- TCP(TLS/1.0) cdn.vu####.com.####.net:443
- TCP(TLS/1.0) ads.on####.mobi:443
- TCP(TLS/1.0) wild####.moa####.com.####.net:443
- TCP p####.wos####.cn:8064
- TCP p####.wos####.cn:18090
- 1.cn.p####.####.org
- 15.49.96.####.arpa
- 16.49.96.####.arpa
- 23.39.102.####.arpa
- ads.on####.mobi
- api.vu####.com
- av1.x####.com
- c####.x####.com
- cd####.vu####.com
- cdn.on####.mobi
- cdn.p####.cn
- cdn.vc####.cn
- i####.cn
- m####.vc####.cn
- o####.p####.cn
- p####.wos####.cn
- pa####.wos####.cn
- pg.x####.com
- se####.wos####.cn
- un####.wos####.cn
- unipa####.wos####.cn
- z.moa####.com
- 1####.96.49.15/open.play.cn/api/v2/edu/mobile/config.json
- 1####.96.49.16/open.play.cn/api/v1/user/member/order/get_pay_channel.jso...
- 1####.96.49.16/open.play.cn/api/v1/user/member/order/mark.json?status=####
- 1####.96.49.16/open.play.cn/api/v1/user/member/order/product.json?client...
- 1####.96.49.16/open.play.cn/api/v2/edu/mobile/channel/content.json?&chan...
- 1####.96.49.16/open.play.cn/api/v2/egame/log/config.json?app_key=####
- 1####.96.49.16/open.play.cn/api/v2/mobile/ext/member/game_info.json?game...
- 2####.102.39.23/open.play.cn/api/v2/edu/mobile/game/check_version.json?t...
- cdn.p####.cn.####.com/f/o/eoi/EGAME_134.zip
- cdn.vc####.cn.####.com/f/push/pkg/hall/2018/04/02/1522653237645.zip
- m####.vc####.cn/api/v2/mcore/sdk/cg?ci=D/qj####&gi=NShU####
- m####.vc####.cn/api/v2/mcore/sdk/cv?version_code=####&client_id=####
- o####.p####.cn/api/v1/charge/epay/sdk/41x/get_init_info?app_id=####&game...
- o####.p####.cn/open.play.cn/api/v2/egame/log/config.json?app_key=####
- 1####.96.49.16/open.play.cn/api/v2/egame/log.json
- o####.p####.cn/open.play.cn/api/v2/egame/log.json
- pa####.wos####.cn/secmanager/service/getpolicy
- pg.x####.com/api/q/a/358f2a8d4ef6b0d303a7b3405430d7722
- pg.x####.com/api/statis/358f2a8d4ef6b0d303a7b3405430d7722/app-7E2D24B24A...
- se####.wos####.cn:81/unipay/precheck
- un####.wos####.cn:8061/logserver/unipay/unipayLogin
- unipa####.wos####.cn:8080/sdk_upgrade_server/sdkupdate.action
- /data/data/####/.jg.ic
- /data/data/####/4.1.2L2111B0313_resource_400.apk
- /data/data/####/EGAME_PAY_SDK.xml
- /data/data/####/EGAME_SDK.dat
- /data/data/####/EGAME_SDK.jar
- /data/data/####/OnewaySdkStorage-ow-pri.json
- /data/data/####/OnewaySdkStorage-ow-pub.json
- /data/data/####/OnewaySdkWebApp.html
- /data/data/####/Signature
- /data/data/####/TDCloudSettingsConfig7E2D24B24A5B4BE4A69D07630CE02A09.xml
- /data/data/####/TD_app_pefercen_profile.xml
- /data/data/####/TDpref_longtime.xml
- /data/data/####/TDpref_longtime.xml.bak (deleted)
- /data/data/####/TDpref_shorttime.xml
- /data/data/####/TDtcagent.db
- /data/data/####/TDtcagent.db-journal
- /data/data/####/VUNGLE_PUB_APP_INFO.xml
- /data/data/####/apkInfo
- /data/data/####/classes.dex
- /data/data/####/cn_egame_openapi_opt.xml
- /data/data/####/cn_egame_sdk_log.xml
- /data/data/####/cn_egame_vip_consumer.xml
- /data/data/####/com.gokids.transport2_ch.egame_preferences.xml
- /data/data/####/egame_finger_print.png
- /data/data/####/egame_psh_temp.jar
- /data/data/####/egame_psh_temp_.jar
- /data/data/####/egame_s-1555994469.tmp
- /data/data/####/egame_s628312612.tmp
- /data/data/####/egame_sdk_1.png
- /data/data/####/egame_sdk_16.png
- /data/data/####/egame_sdk_25.png
- /data/data/####/egame_sdk_4.png
- /data/data/####/egame_sdk_9.png
- /data/data/####/egame_sdk_bg.9.png
- /data/data/####/egame_sdk_bg_pay.9.png
- /data/data/####/egame_sdk_bg_ticket_left.9.png
- /data/data/####/egame_sdk_bg_ticket_right.9.png
- /data/data/####/egame_sdk_btn_back_normal.9.png
- /data/data/####/egame_sdk_btn_back_pressed.9.png
- /data/data/####/egame_sdk_btn_gold_store.png
- /data/data/####/egame_sdk_btn_green_normal.9.png
- /data/data/####/egame_sdk_btn_green_pressed.9.png
- /data/data/####/egame_sdk_game_icon_default.png
- /data/data/####/egame_sdk_ico_bag.png
- /data/data/####/egame_sdk_ico_forum.png
- /data/data/####/egame_sdk_ico_list.png
- /data/data/####/egame_sdk_ico_question.png
- /data/data/####/egame_sdk_ico_raiders.png
- /data/data/####/egame_sdk_icon_back.png
- /data/data/####/egame_sdk_icon_close.png
- /data/data/####/egame_sdk_icon_loading.png
- /data/data/####/egame_sdk_icon_pack_up.png
- /data/data/####/egame_sdk_icon_password.png
- /data/data/####/egame_sdk_icon_rmb.png
- /data/data/####/egame_sdk_icon_selected.png
- /data/data/####/egame_sdk_icon_spread_out.png
- /data/data/####/egame_sdk_icon_ticket_more.png
- /data/data/####/egame_sdk_icon_unselected.png
- /data/data/####/egame_sdk_input_box.9.png
- /data/data/####/egame_sdk_logo_aibei.png
- /data/data/####/egame_sdk_logo_chongzhika.png
- /data/data/####/egame_sdk_logo_dianka.png
- /data/data/####/egame_sdk_logo_huafei.png
- /data/data/####/egame_sdk_logo_jdzhifu.png
- /data/data/####/egame_sdk_logo_more.png
- /data/data/####/egame_sdk_logo_weixin.png
- /data/data/####/egame_sdk_logo_yinlian.png
- /data/data/####/egame_sdk_logo_yizhifu.png
- /data/data/####/egame_sdk_logo_zhifubao.png
- /data/data/####/egame_sdk_password_input_box_left.9.png
- /data/data/####/egame_sdk_password_input_box_mid.9.png
- /data/data/####/egame_sdk_password_input_box_right.9.png
- /data/data/####/egame_sdk_popup_btn_blue_normal.9.png
- /data/data/####/egame_sdk_popup_btn_blue_pressed.9.png
- /data/data/####/egame_sdk_pressed.9.png
- /data/data/####/egame_sdk_tag_selected.9.png
- /data/data/####/egame_sdk_tag_unselected.9.png
- /data/data/####/egame_temp.jar
- /data/data/####/egame_temp_.jar
- /data/data/####/kxqpplatform2.jar
- /data/data/####/kxqpplatform2.jar.lock
- /data/data/####/lb_amcfg
- /data/data/####/lb_packages
- /data/data/####/libAppDataSearch.so
- /data/data/####/libegamepay_private_dr2.so
- /data/data/####/libepsh_private_ar1.so
- /data/data/####/libgames_rtmp_jni.so
- /data/data/####/libjiagu-759503316.so
- /data/data/####/libjiagu626209258.so
- /data/data/####/libkxqpplatform.sinfo
- /data/data/####/libzvmhelper.so
- /data/data/####/login
- /data/data/####/main.jar
- /data/data/####/mcore_dat.xml
- /data/data/####/msg_store.xml
- /data/data/####/platform.xml
- /data/data/####/sdk_load_info.xml
- /data/data/####/sig_0.key
- /data/data/####/talkingdata_app.db-journal
- /data/data/####/talkingdata_app_process_preferences_file
- /data/data/####/talkingdata_app_version_preferences_file
- /data/data/####/td.lock
- /data/data/####/tdid.xml
- /data/data/####/tdlock.txt
- /data/data/####/tmp-1912824922tmp
- /data/data/####/tmp.Fj2124
- /data/data/####/tmp.HJ2124
- /data/data/####/tmp.Rb2149
- /data/data/####/tmp.TN2386
- /data/data/####/tmp.hr2124
- /data/data/####/tmp.lo2124
- /data/data/####/tmp.nF2124
- /data/data/####/tmp.vO2149
- /data/data/####/tmp.wm2386
- /data/data/####/tmp628312612tmp
- /data/data/####/unicom_cl.xml
- /data/data/####/unicom_cl.xml.bak
- /data/data/####/vungle-journal
- /data/data/####/webview.db-journal
- /data/media/####/.nomedia
- /data/media/####/.tcookieid
- /data/media/####/Dimbo_TR.ttf
- /data/media/####/EGAME_134.zip.temp
- /data/media/####/EPSH_149.zip.temp
- /data/media/####/UserID.dat
- /data/media/####/am
- /data/media/####/amj
- /data/media/####/amy-hat.png
- /data/media/####/amy.png
- /data/media/####/awesome.png
- /data/media/####/bar-above.png
- /data/media/####/bar-left.png
- /data/media/####/bar-middle.png
- /data/media/####/bar-right.png
- /data/media/####/bg-rainbow.png
- /data/media/####/bg.jpg
- /data/media/####/blast.png
- /data/media/####/blue-particle.png
- /data/media/####/blue-rubic.json
- /data/media/####/blue-rubic.png
- /data/media/####/bundle.min.js
- /data/media/####/com.ltayx.pay.ltplugin.apk
- /data/media/####/combine.png
- /data/media/####/compVersion
- /data/media/####/cta.png
- /data/media/####/data0.dat
- /data/media/####/data1.dat
- /data/media/####/data111.dat
- /data/media/####/destroy-tile.png
- /data/media/####/e3e8baa8280c718e9054264058d51c31.png
- /data/media/####/fantastic.png
- /data/media/####/finger.png
- /data/media/####/generate-game-piece.png
- /data/media/####/girl.png
- /data/media/####/green-particle.png
- /data/media/####/green-rubic.json
- /data/media/####/green-rubic.png
- /data/media/####/green_l.png
- /data/media/####/icons.png
- /data/media/####/index.html
- /data/media/####/level-12.png
- /data/media/####/level-24.png
- /data/media/####/level-35.png
- /data/media/####/level-completed-text.png
- /data/media/####/level-completed.png
- /data/media/####/localVideo.mp4
- /data/media/####/logo.png
- /data/media/####/lovely.png
- /data/media/####/main.css
- /data/media/####/mistletoe.png
- /data/media/####/mistletoe_2.png
- /data/media/####/orange-particle.png
- /data/media/####/pa
- /data/media/####/phaser-plugin-isometric.min.js
- /data/media/####/phaser.min.js
- /data/media/####/postRoll.zip
- /data/media/####/preloader.gif
- /data/media/####/purple-particle.png
- /data/media/####/purple-rubic.json
- /data/media/####/purple-rubic.png
- /data/media/####/purple_l.png
- /data/media/####/red-particle.png
- /data/media/####/rocket.png
- /data/media/####/s1.png
- /data/media/####/s2.png
- /data/media/####/s3.png
- /data/media/####/sdata21.dat
- /data/media/####/settings-grid-presets.js
- /data/media/####/settings-swipe.js
- /data/media/####/settings-tap.js
- /data/media/####/settings.js
- /data/media/####/sparkle.png
- /data/media/####/sparkle2.png
- /data/media/####/sparkle3.png
- /data/media/####/star.png
- /data/media/####/tick.png
- /data/media/####/tnt-explode.json
- /data/media/####/tnt-explode.png
- /data/media/####/tnt-explode2.json
- /data/media/####/tnt-explode2.png
- /data/media/####/tooltip.png
- /data/media/####/top-bar.png
- /data/media/####/underscore-min.js
- /data/media/####/unicom_bn
- /data/media/####/verinfo.cfg
- /data/media/####/vungle-fonticon.eot
- /data/media/####/vungle-fonticon.svg
- /data/media/####/vungle-fonticon.ttf
- /data/media/####/vungle-fonticon.woff
- /data/media/####/yellow-particle.png
- /data/media/####/yellow-rubic.json
- /data/media/####/yellow-rubic.png
- /data/media/####/yellow_l.png
- /data/media/####/zidkLiRk
- /system/bin/cat /proc/cpuinfo
- chmod 755 /data/user/0/<Package>/.jiagu/libjiagu-759503316.so
- chmod 755 <Package Folder>/.jiagu/libjiagu626209258.so
- chmod 755 <Package Folder>/.platformcache/kxqpplatform2.jar
- chmod 755 <Package Folder>/.platformcache/main.jar
- egamepay_dr2
- libegamepay_private_dr2
- libepsh_private_ar1
- libjiagu-759503316
- libjiagu626209258
- libkxqpplatform
- libzvmhelper
- me_unipay
- AES
- AES-CBC-PKCS5Padding
- AES-CBC-PKCS7Padding
- DESede-CBC-NoPadding
- AES
- AES-CBC-PKCS7Padding
- DESede-CBC-NoPadding
- RSA-ECB-PKCS1Padding