Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[DETECTION] Improve zShield ELF rule #399

Open
enovella opened this issue Sep 25, 2024 · 1 comment
Open

[DETECTION] Improve zShield ELF rule #399

enovella opened this issue Sep 25, 2024 · 1 comment
Labels
detection-issue Bad detection or no detection

Comments

@enovella
Copy link
Collaborator

libuuwhvrmbma.zip

@enovella enovella added the detection-issue Bad detection or no detection label Sep 25, 2024
@enovella enovella self-assigned this Sep 30, 2024
@enovella
Copy link
Collaborator Author

> unzip -l config.arm64_v8a.apk
Archive:  config.arm64_v8a.apk
  Length      Date    Time    Name
---------  ---------- -----   ----
     1032  01-01-1981 01:01   AndroidManifest.xml
  6572776  01-01-1981 01:01   lib/arm64-v8a/libakA0jnGfGh.so.  //zDefend
     5896  01-01-1981 01:01   lib/arm64-v8a/libanti-debug.so
     6480  01-01-1981 01:01   lib/arm64-v8a/libmgsk-lib.so
    10504  01-01-1981 01:01   lib/arm64-v8a/libnative-lib.so
  8540600  01-01-1981 01:01   lib/arm64-v8a/libsvppgidpra.so.   // zShield
       32  01-01-1981 01:01   stamp-cert-sha256
      688  01-01-1981 01:01   META-INF/BNDLTOOL.SF
     2174  01-01-1981 01:01   META-INF/BNDLTOOL.RSA
      580  01-01-1981 01:01   META-INF/MANIFEST.MF
---------                     -------
 15140762                     10 files

config.arm64_v8a.apk.zip

@enovella enovella removed their assignment Nov 13, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
detection-issue Bad detection or no detection
Projects
None yet
Development

No branches or pull requests

1 participant