Fast dex dump base-on frida.
Project description
FRIDA-DEXDump
Fast search and dump dex on memory.
Features
- support fuzzy search no-magic dex.
- auto fill magic into dex-header.
- compatible with all android version(frida supported).
- support python 2 and 3.
- support loading as objection plugin~
Requires
Usage
-
Run
python main.py
to attach current frontmost application and dump dexs. -
Or, use command arguments:
-n: [Optional] Specify target process name, when spawn mode, it requires an application package name. If not specified, use frontmost application. -p: [Optional] Specify pid when multiprocess. If not specified, dump all. -f: [Optional] Use spawn mode, default is disable. -s: [Optional] When spawn mode, start dump work after sleep few seconds. default is 10s. -d: [Optional] Enable deep search maybe detected more dex, but speed will be slower. -h: show help.
-
Or, loading as objection plugin
- clone this repo to your plugins folder, eg:
git clone https://github.com/hluwa/FRIDA-DEXDump ~/.objection/plugins/dexdump
- start objection with
-P
or--plugin-folder
your plugins folder, eg:objection -g com.app.name explore -P ~/.objection/plugins
- run command:
plugin dexdump search
to search and print all dexplugin dexdump dump
to dump all found dex.
- clone this repo to your plugins folder, eg:
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
frida-dexdump-1.0.tar.gz
(6.0 kB
view hashes)
Built Distributions
Close
Hashes for frida_dexdump-1.0-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | a928d3275ae89abdfd90d4d6a9097dfdbd8956a7a3ed9a4b55e48588752e32b4 |
|
MD5 | 4e24c52bda051ec0fd6861de65bbd609 |
|
BLAKE2b-256 | c7acc6935a589b508dee2637602d7a766b6ed31d653b50af72776f81150c0d5d |
Close
Hashes for frida_dexdump-1.0-py2-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 3bfbf71b298a21acff37c50a0c3ffc4311758949210300d9e36042288fbce821 |
|
MD5 | b2c1295e17f59e83451522608e63e818 |
|
BLAKE2b-256 | ac4d461b03fc64b52b915bebc653b2e022018a8dda1c5644033fd2858d33b5f3 |