Skip to content
This repository was archived by the owner on Sep 25, 2022. It is now read-only.

Commit 5db95d7

Browse files
committed
Init
0 parents  commit 5db95d7

File tree

15 files changed

+670
-0
lines changed

15 files changed

+670
-0
lines changed

.gitignore

Lines changed: 56 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,56 @@
1+
### C++ template
2+
# Prerequisites
3+
*.d
4+
5+
# Compiled Object files
6+
*.slo
7+
*.lo
8+
*.o
9+
*.obj
10+
11+
# Precompiled Headers
12+
*.gch
13+
*.pch
14+
15+
# Compiled Dynamic libraries
16+
*.so
17+
*.dylib
18+
*.dll
19+
20+
# Fortran module files
21+
*.mod
22+
*.smod
23+
24+
# Compiled Static libraries
25+
*.lai
26+
*.la
27+
*.a
28+
*.lib
29+
30+
# Executables
31+
*.exe
32+
*.out
33+
*.app
34+
35+
### CMake template
36+
CMakeLists.txt.user
37+
CMakeCache.txt
38+
CMakeFiles
39+
CMakeScripts
40+
Testing
41+
Makefile
42+
cmake_install.cmake
43+
install_manifest.txt
44+
compile_commands.json
45+
CTestTestfile.cmake
46+
_deps
47+
48+
49+
cmake-build*/
50+
.idea
51+
#CMakeLists.txt
52+
53+
*.dex
54+
*.apk
55+
56+
local.properties

.gitmodules

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
[submodule "dexkit/src/main/DexKit"]
2+
path = dexkit/src/main/DexKit
3+
url = https://github.com/LuckyPray/DexKit

LICENSE

Lines changed: 165 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,165 @@
1+
GNU LESSER GENERAL PUBLIC LICENSE
2+
Version 3, 29 June 2007
3+
4+
Copyright (C) 2022 LuckyPray
5+
Everyone is permitted to copy and distribute verbatim copies
6+
of this license document, but changing it is not allowed.
7+
8+
9+
This version of the GNU Lesser General Public License incorporates
10+
the terms and conditions of version 3 of the GNU General Public
11+
License, supplemented by the additional permissions listed below.
12+
13+
0. Additional Definitions.
14+
15+
As used herein, "this License" refers to version 3 of the GNU Lesser
16+
General Public License, and the "GNU GPL" refers to version 3 of the GNU
17+
General Public License.
18+
19+
"The Library" refers to a covered work governed by this License,
20+
other than an Application or a Combined Work as defined below.
21+
22+
An "Application" is any work that makes use of an interface provided
23+
by the Library, but which is not otherwise based on the Library.
24+
Defining a subclass of a class defined by the Library is deemed a mode
25+
of using an interface provided by the Library.
26+
27+
A "Combined Work" is a work produced by combining or linking an
28+
Application with the Library. The particular version of the Library
29+
with which the Combined Work was made is also called the "Linked
30+
Version".
31+
32+
The "Minimal Corresponding Source" for a Combined Work means the
33+
Corresponding Source for the Combined Work, excluding any source code
34+
for portions of the Combined Work that, considered in isolation, are
35+
based on the Application, and not on the Linked Version.
36+
37+
The "Corresponding Application Code" for a Combined Work means the
38+
object code and/or source code for the Application, including any data
39+
and utility programs needed for reproducing the Combined Work from the
40+
Application, but excluding the System Libraries of the Combined Work.
41+
42+
1. Exception to Section 3 of the GNU GPL.
43+
44+
You may convey a covered work under sections 3 and 4 of this License
45+
without being bound by section 3 of the GNU GPL.
46+
47+
2. Conveying Modified Versions.
48+
49+
If you modify a copy of the Library, and, in your modifications, a
50+
facility refers to a function or data to be supplied by an Application
51+
that uses the facility (other than as an argument passed when the
52+
facility is invoked), then you may convey a copy of the modified
53+
version:
54+
55+
a) under this License, provided that you make a good faith effort to
56+
ensure that, in the event an Application does not supply the
57+
function or data, the facility still operates, and performs
58+
whatever part of its purpose remains meaningful, or
59+
60+
b) under the GNU GPL, with none of the additional permissions of
61+
this License applicable to that copy.
62+
63+
3. Object Code Incorporating Material from Library Header Files.
64+
65+
The object code form of an Application may incorporate material from
66+
a header file that is part of the Library. You may convey such object
67+
code under terms of your choice, provided that, if the incorporated
68+
material is not limited to numerical parameters, data structure
69+
layouts and accessors, or small macros, inline functions and templates
70+
(ten or fewer lines in length), you do both of the following:
71+
72+
a) Give prominent notice with each copy of the object code that the
73+
Library is used in it and that the Library and its use are
74+
covered by this License.
75+
76+
b) Accompany the object code with a copy of the GNU GPL and this license
77+
document.
78+
79+
4. Combined Works.
80+
81+
You may convey a Combined Work under terms of your choice that,
82+
taken together, effectively do not restrict modification of the
83+
portions of the Library contained in the Combined Work and reverse
84+
engineering for debugging such modifications, if you also do each of
85+
the following:
86+
87+
a) Give prominent notice with each copy of the Combined Work that
88+
the Library is used in it and that the Library and its use are
89+
covered by this License.
90+
91+
b) Accompany the Combined Work with a copy of the GNU GPL and this license
92+
document.
93+
94+
c) For a Combined Work that displays copyright notices during
95+
execution, include the copyright notice for the Library among
96+
these notices, as well as a reference directing the user to the
97+
copies of the GNU GPL and this license document.
98+
99+
d) Do one of the following:
100+
101+
0) Convey the Minimal Corresponding Source under the terms of this
102+
License, and the Corresponding Application Code in a form
103+
suitable for, and under terms that permit, the user to
104+
recombine or relink the Application with a modified version of
105+
the Linked Version to produce a modified Combined Work, in the
106+
manner specified by section 6 of the GNU GPL for conveying
107+
Corresponding Source.
108+
109+
1) Use a suitable shared library mechanism for linking with the
110+
Library. A suitable mechanism is one that (a) uses at run time
111+
a copy of the Library already present on the user's computer
112+
system, and (b) will operate properly with a modified version
113+
of the Library that is interface-compatible with the Linked
114+
Version.
115+
116+
e) Provide Installation Information, but only if you would otherwise
117+
be required to provide such information under section 6 of the
118+
GNU GPL, and only to the extent that such information is
119+
necessary to install and execute a modified version of the
120+
Combined Work produced by recombining or relinking the
121+
Application with a modified version of the Linked Version. (If
122+
you use option 4d0, the Installation Information must accompany
123+
the Minimal Corresponding Source and Corresponding Application
124+
Code. If you use option 4d1, you must provide the Installation
125+
Information in the manner specified by section 6 of the GNU GPL
126+
for conveying Corresponding Source.)
127+
128+
5. Combined Libraries.
129+
130+
You may place library facilities that are a work based on the
131+
Library side by side in a single library together with other library
132+
facilities that are not Applications and are not covered by this
133+
License, and convey such a combined library under terms of your
134+
choice, if you do both of the following:
135+
136+
a) Accompany the combined library with a copy of the same work based
137+
on the Library, uncombined with any other library facilities,
138+
conveyed under the terms of this License.
139+
140+
b) Give prominent notice with the combined library that part of it
141+
is a work based on the Library, and explaining where to find the
142+
accompanying uncombined form of the same work.
143+
144+
6. Revised Versions of the GNU Lesser General Public License.
145+
146+
The Free Software Foundation may publish revised and/or new versions
147+
of the GNU Lesser General Public License from time to time. Such new
148+
versions will be similar in spirit to the present version, but may
149+
differ in detail to address new problems or concerns.
150+
151+
Each version is given a distinguishing version number. If the
152+
Library as you received it specifies that a certain numbered version
153+
of the GNU Lesser General Public License "or any later version"
154+
applies to it, you have the option of following the terms and
155+
conditions either of that published version or of any later version
156+
published by the Free Software Foundation. If the Library as you
157+
received it does not specify a version number of the GNU Lesser
158+
General Public License, you may choose any version of the GNU Lesser
159+
General Public License ever published by the Free Software Foundation.
160+
161+
If the Library as you received it specifies that a proxy can decide
162+
whether future versions of the GNU Lesser General Public License shall
163+
apply, that proxy's public statement of acceptance of any version is
164+
permanent authorization for you to choose that version for the
165+
Library.

README.md

Lines changed: 72 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,72 @@
1+
DexKit
2+
--
3+
4+
[README](https://github.com/LuckyPray/DexKit/blob/master/README.md)|[中文文档](https://github.com/LuckyPray/DexKit/blob/master/README_zh.md)
5+
6+
A high performance dex deobfuscator library.
7+
8+
## API introduction
9+
10+
These two APIs can meet most of your usage scenarios:
11+
12+
- **`DexKit::LocationClasses`**
13+
- **`DexKit::LocationMethods`**
14+
15+
And there are many other APIs:
16+
17+
- `DexKit::FindMethodInvoked`: Find caller for specified method.
18+
- `DexKit::FindMethodUsedString`
19+
- `DexKit::FindMethod`: Find method with various conditions
20+
- `DexKit::FindSubClasses`: Find sub class of specified class
21+
- `DexKit::FindMethodOpPrefixSeq`: Find method with op prefix
22+
23+
## Integration
24+
25+
Gradle:
26+
27+
`implementation: io.github.LuckyPray:DexKit:<version>`
28+
29+
This library uses [prefab](https://google.github.io/prefab/), you should enable it in gradle (Android Gradle Plugin 4.1+):
30+
31+
```
32+
android {
33+
buildFeatures {
34+
prefab true
35+
}
36+
}
37+
```
38+
39+
## Usage
40+
41+
### CMake
42+
43+
You can use `find_package` in `CMakeLists.txt`:
44+
45+
```
46+
add_library(mylib SHARED main.cpp)
47+
48+
# Add two lines below
49+
find_package(dexkit REQUIRED CONFIG)
50+
target_link_libraries(app dexkit::dex_kit_static z)
51+
```
52+
53+
## Example
54+
55+
- [main.cpp](https://github.com/LuckyPray/DexKit/blob/master/main.cpp)
56+
- [qq-example.cpp](https://github.com/LuckyPray/DexKit/blob/master/qq-example.cpp)
57+
58+
## Benchmark
59+
60+
qq-example.cpp in MacPro M1 to deobfuscate `qq-8.9.3.apk`, the result is:
61+
62+
```txt
63+
findClass count: 47
64+
findMethod count: 29
65+
used time: 207 ms
66+
```
67+
68+
## License
69+
70+
The slicer directory is partially copied from [AOSP](https://cs.android.com/android/platform/superproject/+/master:frameworks/base/startop/view_compiler).
71+
72+
Modified parts are owed by LuckyPray Developers. If you would like to use it in an open source project, please submodule it.

README_zh.md

Lines changed: 70 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,70 @@
1+
DexKit
2+
--
3+
4+
[README](https://github.com/LuckyPray/DexKit/blob/master/README.md)|[中文文档](https://github.com/LuckyPray/DexKit/blob/master/README_zh.md)
5+
6+
一个致力于更好用的dex解析(反混淆)工具。
7+
8+
slicer目录下内容是从 [AOSP](https://cs.android.com/android/platform/superproject/+/master:frameworks/base/startop/view_compiler) 拷贝的.
9+
10+
修改部分归 LuckyPray 所有。如果您想在开源项目中使用,请将其模块化。
11+
12+
## API说明
13+
14+
DexKit应该是目前最快的反混淆工具。
15+
16+
自带多线程执行,配上**双数组Trie树AC自动机**带来的字符串匹配优化,单独增加的搜索复杂度可以忽略不计。
17+
18+
在正常情况下使用 **`DexKit::LocationClasses`****`DexKit::LocationMethods`** 这两个方法即可满足日常的反混淆定位需求。
19+
20+
目前支持以下API:
21+
- **`DexKit::LocationClasses`**: 多字符串综合定位类
22+
- **`DexKit::LocationMethods`**: 多字符串综合定位方法
23+
- `DexKit::FindMethodInvoked`: 查找所有调用指定方法的方法(invoke-kind类别的opcode)
24+
- `DexKit::FindMethodUsedString`: 查找调用了指定字符串的方法(`const-string``const-string/jumbo`)
25+
- `DexKit::FindMethod`: 多条件查找方法
26+
- `DexKit::FindSubClasses`: 查找直系子类
27+
- `DexKit::FindMethodOpPrefixSeq`: 查找满足特定op前缀序列的方法(使用`0x00`-`0xff`)
28+
29+
## 集成
30+
31+
Gradle:
32+
33+
`implementation: io.github.LuckyPray:DexKit:<version>`
34+
35+
这个库使用了 [prefab](https://google.github.io/prefab/),你需要在 gradle (Android Gradle Plugin 4.1+ 版本以上才支持)中开启此特性:
36+
37+
```
38+
android {
39+
buildFeatures {
40+
prefab true
41+
}
42+
}
43+
```
44+
45+
## 使用
46+
47+
### CMake
48+
49+
你可以直接在 `CMakeLists.txt` 中使用 `find_package` 来使用 DexKit:
50+
51+
```
52+
# 假设你的 library 名字为 mylib
53+
add_library(mylib SHARED main.cpp)
54+
55+
# 添加如下两行,注意必须添加 libz,如果你有其他依赖可以放在后面
56+
find_package(dexkit REQUIRED CONFIG)
57+
target_link_libraries(app dexkit::dex_kit_static z)
58+
```
59+
60+
## 使用示例
61+
62+
- [main.cpp](https://github.com/LuckyPray/DexKit/blob/master/main.cpp)
63+
- [qq-example.cpp](https://github.com/LuckyPray/DexKit/blob/master/qq-example.cpp)
64+
65+
qq-example.cpp 在MacPro M1环境下对 `qq-8.9.3.apk` 执行结果如下所示:
66+
```text
67+
findClass count: 47
68+
findMethod count: 29
69+
used time: 207 ms
70+
```

build.gradle

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
// Top-level build file where you can add configuration options common to all sub-projects/modules.
2+
plugins {
3+
id 'com.android.application' version '7.2.2' apply false
4+
id 'com.android.library' version '7.2.2' apply false
5+
}
6+
7+
task clean(type: Delete) {
8+
delete rootProject.buildDir
9+
}

0 commit comments

Comments
 (0)