一、 smail语法基础学习
在对Android逆向学习前,先对Smail基本知识进行了恶补,基本的有,数据类型、成员变量、函数变量等。实践过程中,特别学习了if语句的各种转换。相关内容都分别记录在另外两个博客里了。
二、实践出真知
提前准备: apktool、Android源代码,
目的:1. 熟悉.smail架构
2. 学习if语句
package com.SmailLearn;
import android.R.integer;
import android.app.Activity;
import android.os.Bundle;
import android.widget.Toast;
public class MainActivity extends Activity {
/** Called when the activity is first created. */
@Override
public void onCreate(Bundle savedInstanceState) {
super.onCreate(savedInstanceState);
setContentView(R.layout.main);
int i = 0;
if(i==1)
{
Toast.makeText(this, "Oups!", Toast.LENGTH_LONG).show();
}
else
{
Toast.makeText(this, "Sorry!", Toast.LENGTH_LONG).show();
}
}
}
反编译如下。。
.class public Lcom/SmailLearn/MainActivity;
.super Landroid/app/Activity;
.source "MainActivity.java"
# direct methods
.method public constructor <init>()V
.locals 0
.prologue
.line 8
invoke-direct {p0}, Landroid/app/Activity;-><init>()V
return-void
.end method
# virtual methods
.method public onCreate(Landroid/os/Bundle;)V
.locals 3
.parameter "savedInstanceState"
.prologue
const/4 v2, 0x1
.line 12
invoke-super {p0, p1}, Landroid/app/Activity;->onCreate(Landroid/os/Bundle;)V
.line 13
const/high16 v1, 0x7f03
invoke-virtual {p0, v1}, Lcom/SmailLearn/MainActivity;->setContentView(I)V
.line 14
const/4 v0, 0x0
.line 16
.local v0, i:I
if-ne v0, v2, :cond_0
.line 18
const-string v1, "Oups!"
invoke-static {p0, v1, v2}, Landroid/widget/Toast;->makeText(Landroid/content/Context;Ljava/lang/CharSequence;I)Landroid/widget/Toast;
move-result-object v1
invoke-virtual {v1}, Landroid/widget/Toast;->show()V
.line 24
:goto_0
return-void
.line 22
:cond_0
const-string v1, "Sorry!"
invoke-static {p0, v1, v2}, Landroid/widget/Toast;->makeText(Landroid/content/Context;Ljava/lang/CharSequence;I)Landroid/widget/Toast;
move-result-object v1
invoke-virtual {v1}, Landroid/widget/Toast;->show()V
goto :goto_0
.end method
一是利用提示信息,即“Oups”及“Sorry”,从而定位关键代码段
if-ne v0, v2, :cond_0
意思为如果v0 与 v2内数值不等则跳转至cond_0代码段,即“Sorry”,那么只要在这做文章就行了
思路一,因为v0内值为0,将v2也存入0x0
思路二,将if-ne改为if-eq
经试验可行。