Codex
https://github.com/Qwanwin/Shell-Encryption
Redownload again
Change logs
- Fixed parse not defined
- Optimal code
Change logs
- Fixed parse not defined
- Optimal code
Cara Kerja Proteksi Ijiami:
1. Deklarasi native method
2. Method
Sebelum manggil native method, dia setup dulu:
1. Di method
2. Di
Flow nya:
1.
2. Manggil
3. Native method
4.
Native code inilah yang kemudian melakukan:
1. Loading dex tambahan
2. Modifikasi ClassLoader
3. Injeksi dex ke runtime
Nah terus Native mana yang di panggil?
"Coba cek smal N"
Metode
Jadi tuh ijiami pertama manggil dari method classdex utama
Smali
Nah dari sini bisa muncul
Smali
Ngak perlu ku kasih banyak" nanti kepanjangan.
Terus kenapa kalo dump jadi nop?
Padahal dalam semua kelas smali ijiam ngak ada nop nya
"Jadi tuh dia manggil al() "
Nah all tuh buat load library
fungsi library itu saat mendeteksi dump. Ntah pakek frida atau yang lain dia akan langsung melempar ke dalam class duplikat yang isi nya nop tuh sampe pusing kalian liat
Method nya? Ngak ada. karena untuk detect dia pakek lib.
jadi decrypt library nya pakek IDA atau yang. Jika ingin mempelajari system Ijiami
"Makan tuh kode bejibun di libπ"
Kenapa ngak di hapus aja bang lib nya? π
Mendinh lu cek fungsi lib di atas pahami kata nya!
Dah ya... Gua capek ngetik
by @Qwanwin
1. Deklarasi native method
al():.method public static native al(Ljava/lang/ClassLoader;Landroid/content/pm/ApplicationInfo;Ljava/lang/String;Ljava/lang/String;)Ljava/lang/ClassLoader;
2. Method
instantiateClassLoader() yang manggil native al():# code yang manggil native method
iget-object v0, p0, Ls/h/e/l/l/A;->packageName:Ljava/lang/String;
iget-object v1, p0, Ls/h/e/l/l/A;->orignAppName:Ljava/lang/String;
invoke-static {p1, p2, v0, v1}, Ls/h/e/l/l/N;->al(Ljava/lang/ClassLoader;Landroid/content/pm/ApplicationInfo;Ljava/lang/String;Ljava/lang/String;)Ljava/lang/ClassLoader;
Sebelum manggil native method, dia setup dulu:
1. Di method
ls():iget-object v0, p1, Landroid/content/pm/ApplicationInfo;->sourceDir:Ljava/lang/String;
sput-object v0, Ls/h/e/l/l/S;->f:Ljava/lang/String;
2. Di
instantiateClassLoader():invoke-static {}, Ls/h/e/l/l/S;->gST()V
invoke-direct {p0, p2}, Ls/h/e/l/l/A;->ls(Landroid/content/pm/ApplicationInfo;)VFlow nya:
1.
instantiateClassLoader() dipanggil 2. Manggil
ls() buat setup path3. Native method
al() dipanggil buat load dex4.
gST() dan gET() buat tracking stateNative code inilah yang kemudian melakukan:
1. Loading dex tambahan
2. Modifikasi ClassLoader
3. Injeksi dex ke runtime
Nah terus Native mana yang di panggil?
"Coba cek smal N"
Ls/h/e/l/l/N:.method public static native al(Ljava/lang/ClassLoader;Landroid/content/pm/ApplicationInfo;Ljava/lang/String;Ljava/lang/String;)Ljava/lang/ClassLoader;
.end method
Metode
al() dideklarasi apa yang dilakukan oleh metode ini, dalam library native yang dipanggil, libexec.so atau libexecmain.so.Jadi tuh ijiami pertama manggil dari method classdex utama
Smali
iput-boolean v0, p0, Ls/h/e/l/l/A;->supportInstantiateClassLoader:Z
iput-object v1, p0, Ls/h/e/l/l/A;->acf:Landroid/app/AppComponentFactory;
return-void
.end method
Nah dari sini bisa muncul
Smali
invoke-virtual {v0}, Ljava/lang/Object;->getClass()Ljava/lang/Class;
invoke-virtual {v2, v3}, Ljava/lang/Class;->getDeclaredField(Ljava/lang/String;)Ljava/lang/reflect/Field;
invoke-virtual {v0}, Landroid/app/LoadedApk;->getApplicationInfo()Landroid/content/pm/ApplicationInfo;
.method public declared-synchronized getACF(Ljava/lang/ClassLoader;)Landroid/app/AppComponentFactory;
.registers 4Ngak perlu ku kasih banyak" nanti kepanjangan.
Terus kenapa kalo dump jadi nop?
Padahal dalam semua kelas smali ijiam ngak ada nop nya
"Jadi tuh dia manggil al() "
Nah all tuh buat load library
fungsi library itu saat mendeteksi dump. Ntah pakek frida atau yang lain dia akan langsung melempar ke dalam class duplikat yang isi nya nop tuh sampe pusing kalian liat
Method nya? Ngak ada. karena untuk detect dia pakek lib.
jadi decrypt library nya pakek IDA atau yang. Jika ingin mempelajari system Ijiami
"Makan tuh kode bejibun di libπ"
Kenapa ngak di hapus aja bang lib nya? π
Mendinh lu cek fungsi lib di atas pahami kata nya!
Dah ya... Gua capek ngetik
by @Qwanwin
π₯4π1
What is the next progress on Lua encryption? you know. this is my favorite programming languageπ
π₯2
LuaEncryption[Strong].lua
151.8 KB
Lua Encryption 1.0
Change Logs:
-osfc
-Encrypt String....
-Encrypt String Offset....
-Encrpt AES
-Validasi Input
-Data Obfuscation
Powered tools by @Qwanwin
Change Logs:
-osfc
-Encrypt String....
-Encrypt String Offset....
-Encrpt AES
-Validasi Input
-Data Obfuscation
Powered tools by @Qwanwin
π₯4πΏ2π1
AntiSplit.py
191.8 KB
# Update & Upgrade
pkg update && pkg upgrade -y
pkg install python -y
pkg install python-pip -y
pip install requests
pip install colorama
python --version
# Reset permission
chmod 644 antisplit.py
chmod +x antisplit.py
How to use? Click Here
https://t.me/setupdex/104
Main Script Feature:
- Convert APKS file to single APK
- Preserve original app signature
- Automatic extraction of APKS files
- Merging of APK components
- Input file verification
Logging feature:
- Automatic file log with timestamp
- Debug mode for troubleshooting
- Conversion statistics logging
- Tracking errors and exceptions
- Detailed process information
Give some credit π
Powered tools by @Qwanwin
β€4π3π₯3πΏ2
PremiumKeyword.py
107.8 KB
NEW TOOLS QWANWIN !!!
#Usage
python PremiumKeyword.py yourapp.apk
# permission
chmod 644 PremiumKeyword.py
chmod +x PremiumKeyword.py
How to use? Click Here
https://t.me/setupdex/108
Main Script Feature:
- Direct search keyword Premium application
- Detailed process information
-Result at same folder
NB " Add apktool.jar at same script location "
Give some credit π
Powered tools by @Qwanwin
#Usage
python PremiumKeyword.py yourapp.apk
# permission
chmod 644 PremiumKeyword.py
chmod +x PremiumKeyword.py
How to use? Click Here
https://t.me/setupdex/108
Main Script Feature:
- Direct search keyword Premium application
- Detailed process information
-Result at same folder
NB " Add apktool.jar at same script location "
Give some credit π
Powered tools by @Qwanwin
π₯5π1π€1π€―1
Let me explain why updates are more frequent these days. Initially, the official C35 features from Mrpcs , official party is still strengthening the verification of anogs, so it has been tested and checked.
If you rely entirely on UE4 offsets in your Bypass and your Bypass does not depend on ANOGS
If you want to turn off C35 without touching the flaws in PUBGM.
You must turn it off
If your bypass is weak you will likely face a 1day ban
Try to solve it yourself!
it will work on all versions of Pubg mobile Trust me π
@Qwanwin
If you rely entirely on UE4 offsets in your Bypass and your Bypass does not depend on ANOGS
If you want to turn off C35 without touching the flaws in PUBGM.
You must turn it off
If your bypass is weak you will likely face a 1day ban
Try to solve it yourself!
it will work on all versions of Pubg mobile Trust me π
@Qwanwin