Ersanli APP Reverse - National Day

Download address Application treasure: https://a.app.qq.com/o/simple.jsp?pkgname=com.hw.okm

insert image description here

Capture the packet and see that the request body has a sign parameter and the response is encrypted

insert image description here

The 360 ​​shell is strengthened, unshelled and repaired~
passed the root detection, the app has many aspects to detect the root~
we directly modify the smali to pass~

The java layer loops to detect root

insert image description here
insert image description here

I directly changed public static final String COMMAND_SU = “su”;
to: public static final String COMMAND_SU = “zhihuijiance”;

A solution to remove root detection has been reached.

package com.hw.okm.g;

Guess you like

Origin blog.csdn.net/weixin_38927522/article/details/127133538