Technical information
- Android.DownLoader.3394
- Android.DownLoader.635.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) a####.ws.pho.to:80
- TCP(HTTP/1.1) op####.ws.pho.to:80
- TCP(HTTP/1.1) worker-####.ws.pho.####.com:80
- TCP(HTTP/1.1) 60.2####.13.58:80
- TCP(TLS/1.0) ssl.google-####.com:443
- TCP(TLS/1.0) t.appsf####.com:443
- a####.ws.pho.to
- op####.ws.pho.to
- ssl.google-####.com
- t####.appsf####.com
- worker-####.ws.pho.to
- a####.ws.pho.to/en/xy
- op####.ws.pho.to/getresult?request_id=####
- worker-####.ws.pho.####.com/i1/46DD7007-FDF4-4B68-8E33-B3B314630EAF.jpg
- op####.ws.pho.to/addtask
- /data/data/####/.jg.ic
- /data/data/####/AF_INSTALLATION
- /data/data/####/app_first_run_show_drawer.xml
- /data/data/####/com.apps.icam.bd.apk
- /data/data/####/firstrun.xml
- /data/data/####/gaClientId
- /data/data/####/google_analytics_v4.db-journal
- /data/data/####/libjiagu.so
- /data/data/####/photolab.db-journal
- /data/data/####/seasonal.xml
- /data/media/####/.nomedia
- /data/media/####/cache.jpg
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- libjiagu
- AES-ECB-PKCS5Padding