mirror of
https://github.com/mvt-project/mvt.git
synced 2026-05-31 20:21:40 +02:00
Standardized code
This commit is contained in:
@@ -54,16 +54,15 @@ class Packages(AndroidExtraction):
|
||||
self.detected.append(result)
|
||||
if result["package_name"] in self.indicators.ioc_app_ids:
|
||||
self.log.warning("Found a malicious package name: \"%s\"",
|
||||
result["package_name"])
|
||||
result["package_name"])
|
||||
self.detected.append(result)
|
||||
for f in result["files"]:
|
||||
if f["sha256"] in self.indicators.ioc_files_sha256:
|
||||
self.log.warning("Found a malicious app: \"%s\" %s",
|
||||
result["package_name"],
|
||||
f["sha256"])
|
||||
for file in result["files"]:
|
||||
if file["sha256"] in self.indicators.ioc_files_sha256:
|
||||
self.log.warning("Found a malicious APK: \"%s\" %s",
|
||||
result["package_name"],
|
||||
file["sha256"])
|
||||
self.detected.append(result)
|
||||
|
||||
|
||||
def _get_files_for_package(self, package_name):
|
||||
output = self._adb_command(f"pm path {package_name}")
|
||||
output = output.strip().replace("package:", "")
|
||||
|
||||
Reference in New Issue
Block a user