davinci1012 / pinduoduo_backdoor_unpacker

Samples and Unpacker of malicious backdoors and exploits developed and used by Pinduoduo
1.2k stars 496 forks source link

V6 #19

Open Snipesy opened 1 year ago

Snipesy commented 1 year ago

v6 files do not unpack properly. They are XORing the opcodes.

davinci1012 commented 1 year ago

Can you share a sample file?

------- Original Message ------- On Friday, March 17th, 2023 at 9:28 AM, Snipesy @.***> wrote:

v6 files do not unpack properly. They are XORing the opcodes.

— Reply to this email directly, view it on GitHub, or unsubscribe. You are receiving this because you are subscribed to this thread.Message ID: @.***>

davinci1012 commented 1 year ago

Is this in their current new version of APKs? ------- Original Message ------- On Friday, March 17th, 2023 at 10:21 AM, davinci1011a @.***> wrote:

Can you share a sample file?

------- Original Message ------- On Friday, March 17th, 2023 at 9:28 AM, Snipesy @.***> wrote:

v6 files do not unpack properly. They are XORing the opcodes.

— Reply to this email directly, view it on GitHub, or unsubscribe. You are receiving this because you are subscribed to this thread.Message ID: @.***>

liqihui1 commented 1 year ago

v6 files do not unpack properly. They are XORing the opcodes.

how to unpark v6 files?