Download address Application treasure: https://a.app.qq.com/o/simple.jsp?pkgname=com.hw.okm
Capture the packet and see that the request body has a sign parameter and the response is encrypted
The 360 shell is strengthened, unshelled and repaired~
passed the root detection, the app has many aspects to detect the root~
we directly modify the smali to pass~
The java layer loops to detect root
I directly changed public static final String COMMAND_SU = “su”;
to: public static final String COMMAND_SU = “zhihuijiance”;
A solution to remove root detection has been reached.
package com.hw.okm.g;