Technical information
- Adware.Plague.1.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 36.1####.213.226:80
- TCP(HTTP/1.1) y####.be:80
- TCP(TLS/1.0) f####.gst####.com:443
- TCP(TLS/1.0) acco####.go####.com:443
- TCP(TLS/1.0) i.y####.com:443
- TCP(TLS/1.0) m.you####.com:443
- TCP(TLS/1.0) www.you####.com:443
- TCP(TLS/1.0) r5---sn####.googlev####.com:443
- TCP(TLS/1.0) googl####.g.doublec####.net:443
- TCP(TLS/1.0) yt3.g####.com:443
- acco####.go####.com
- f####.gst####.com
- googl####.g.doublec####.net
- i.y####.com
- m.you####.com
- r5---sn####.googlev####.com
- s.y####.com
- th.pen####.com
- www.you####.com
- y####.be
- yt3.g####.com
- y####.be/olEmTGwxcss
- /data/data/####/.jg.ic
- /data/data/####/.log.lock
- /data/data/####/.log.ls
- /data/data/####/app_khypeclasses.jar
- /data/data/####/dbgfk-journal
- /data/data/####/jg_app_update_settings_random.xml
- /data/data/####/libjiagu.so
- /data/data/####/webview.db-journal
- /data/data/####/wrgi
- chmod 755 <Package Folder>/.jiagu/libjiagu.so
- exjzf
- libjiagu
- DES-ECB-PKCS5Padding