rednaga / APKiD

Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android
Other
1.96k stars 287 forks source link

Add Genuine Anti * #214

Open apkunpacker opened 4 years ago

apkunpacker commented 4 years ago

I would request to add this https://github.com/brevent/genuine.

As this is anti Xposed hook, anti fake signature, anti virtual app (binder proxy), and optional anti odex, anti overlay this may be best choice for malware author to use it on malware for making it as Anti tamper .

1st sample:

https://www.hybrid-analysis.com/sample/70525d2c5576c0efd3f5493f3f18a8587afb335edecf1d16eb5c80fdb1c8205d?environmentId=200

Hash of 1st sample :

70525d2c5576c0efd3f5493f3f18a8587afb335edecf1d16eb5c80fdb1c8205d

2nd Sample :

genuine.apk.zip

Will update post as fast as I grab more samples . Thanks

apkunpacker commented 4 years ago

1st Sample which was on that site . Downloaded From Google

Ice_Box-Premium-v3.13.0_G_build_1022_A2ZAPK.COM.apk.zip

enovella commented 4 years ago

Do we need such images?

apkunpacker commented 4 years ago

Do we need such images?

Not really . Edited post . I was worried that i can not download that sample so posted that . After getting sample i also think no need of image

apkunpacker commented 4 years ago

I am not sure why Arm64-v8a , armeabi-v7a and x86 have libgenuine.so and other architecture dont have Thoptv.apk.zip