Technical information
- Adware.Dowgin.14.origin
- Adware.Dowgin.3.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) h####.b####.com:80
- TCP(HTTP/1.1) wi.ai.wangw####.cn:80
- TCP(HTTP/1.1) ip.ta####.com:80
- TCP(HTTP/1.1) a####.cq####.com:80
- TCP(TLS/1.0) ssl.gst####.com:443
- TCP(TLS/1.0) www.go####.com:443
- TCP(TLS/1.0) h5.q####.qq.com:443
- TCP(TLS/1.0) www.gst####.com:443
- TCP(TLS/1.0) adser####.go####.com:443
- TCP(TLS/1.0) www.go####.nl:443
- a####.cq####.com
- adser####.go####.com
- h####.b####.com
- h5.q####.qq.com
- ip.ta####.com
- ssl.gst####.com
- wi.ai.wangw####.cn
- www.go####.com
- www.go####.nl
- www.gst####.com
- a####.cq####.com/Version/danxiangversion.txt
- ip.ta####.com/service/getIpInfo.php?ip=####
- h####.b####.com/app.gif
- wi.ai.wangw####.cn/353/g90
- wi.ai.wangw####.cn/353/h53
- wi.ai.wangw####.cn/353/l03
- wi.ai.wangw####.cn/353/x74
- wi.ai.wangw####.cn/353/z74
- /data/data/####/.jg.ic
- /data/data/####/MyPrefsFile.xml
- /data/data/####/__Baidu_Stat_SDK_SendRem.xml
- /data/data/####/__local_ap_info_cache.json
- /data/data/####/__local_last_session.json
- /data/data/####/__local_stat_cache.json
- /data/data/####/__send_data_1527260554589
- /data/data/####/_csdanxiangjiance_.xml
- /data/data/####/_vsdanxiangjiance_.xml
- /data/data/####/a5a42.xml
- /data/data/####/com.cqyapp.danxiangjiancex.jar
- /data/data/####/com.zz.alq.jar
- /data/data/####/libcuid.so
- /data/data/####/libjiagu.so
- /data/data/####/webview.db-journal
- /data/media/####/.confd
- /data/media/####/.confd-journal
- /data/media/####/.cuid
- /data/media/####/.cuid2
- /data/media/####/.nomedia
- /data/media/####/.timestamp
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- crash_analysis
- libjiagu
- AES-CBC-PKCS5Padding
- AES-ECB-PKCS5Padding
- DES
- DES