使用Frida的stalker功能跟踪分析Native函数调用

2022/09/27 sec 共 125455 字,约 359 分钟

准备工作

  1. 使用真机设备,root环境,模拟器下不稳定。
  2. App包的AndroidManifest.xmlapplication要设置extractNativeLibstrueandroid:extractNativeLibs="true"
<application
        android:extractNativeLibs="true"
</application>

如果有项目开发环境,可以在AndroidStudiobuild.gradle中设置属性:

  android {
      packagingOptions {
          jniLibs {
              useLegacyPackaging false
          }
      }
  }

否则会出现跟踪的so文件找不到的情况。

  1. 如果仍然为找到so,则可以手动触发一次调用该so函数的功能,然后再试一次。

  2. stalker功能不太稳定

    • 网上有说对arm支持的不太好,64位还行。

    • 有时候会崩溃,需要杀死frida-server重新运行。

    • 每次记录的函数还不一样,每次打印的数据有时候能抓到有时候抓不到,给人不靠谱的感觉。

    • 跟踪某游戏App的call调用,输出几个函数后就黑屏卡死了。

代码模板

/**
功能: 跟踪native函数调用情况。
 */

var TargetLibName = 'libxyz.so';    // 待分析的so库文件名
var TargetFuncOffset = 0x5B50;   	// 待分析的native函数偏移, 先在IDA里找到
var TraceCallNum = 1;          		// 默认只输出调用1次的函数


function hookTargetFunc() {
    var baseAddr = Module.findBaseAddress(TargetLibName)
    console.log(TargetLibName + " Module Base: " + baseAddr);
    if (baseAddr == null) {
        console.log('Please makesure ' + TargetLibName + ' is Loaded, by setting extractNativeLibs true.');
        return;
    }

    // hook指定的函数地址
    Interceptor.attach(baseAddr.add(TargetFuncOffset), {
        onEnter: function (args) {
            console.log('\nCall ' + TargetFuncOffset.toString(16).toUpperCase() + ' In')
            this.tid = Process.getCurrentThreadId();
            Stalker.follow(this.tid, {
                events: {
                    call: true, // CALL instructions: yes please

                    // Other events:
                    ret: false, // RET instructions
                    exec: false, // all instructions: not recommended as it's
                    //                   a lot of data
                    block: false, // block executed: coarse execution trace
                    compile: false // block compiled: useful for coverage
                },

                /* // 这段暂时不开启,不稳定
                onReceive(events) {
                    var all_events = Stalker.parse(events);
                    console.log("onReceive: ", all_events.length);
                    all_events.forEach(function (i) {
                        // console.log(i);
                        try {
                            var addr1 = i[1];
                            var module1 = Process.getModuleByAddress(addr1);
                            if (module1 != null && module1.name == TargetLibName) {
                                var addr2 = i[2];
                                var module2 = Process.getModuleByAddress(addr2);
                                console.log("call: ", module1.name + "!" + addr1.sub(module1.base), module2.name + "!" + addr2.sub(module2.base))
                            }
                        } catch (error) {
                            console.log("error:", error)
                        }
                    })
                },
                */

                onCallSummary(summary) {
                    //console.log(JSON.stringify(summary)); // 调用的所有函数及次数,注意并不是实际调用顺序。
                    for (const target in summary) {
                        const number = summary[target];
                        if (number == TraceCallNum) {
                            var module = Process.findModuleByAddress(target);
                            if (module != null && module.name == TargetLibName) {
                                console.log(module.name + "!" + ptr(target).sub(module.base));
                            }
                        }
                    }
                }

            })
        }, onLeave: function (retVal) {
            console.log('Call ' + TargetFuncOffset.toString(16).toUpperCase() + ' Out\n')
            Stalker.unfollow(this.tid)
        }
    })
}

function hook(addr) {
    Interceptor.attach(addr, {
        onEnter: function (args) {
            var module = Process.findModuleByAddress(addr);
            this.args0 = args[0];
            this.args1 = args[1];
            this.args2 = args[2];
            this.args3 = args[3];
            this.args4 = args[4];
            this.logs = []
            this.logs.push("------------------------\n");
            this.logs.push("call " + module.name + "!" + ptr(addr).sub(module.base) + "\n");
            this.logs.push("onEnter args0: " + print_arg(this.args0));
            this.logs.push("onEnter args1: " + print_arg(this.args1));
            this.logs.push("onEnter args2: " + print_arg(this.args2));
            this.logs.push("onEnter args3: " + print_arg(this.args3));
            this.logs.push("onEnter args4: " + print_arg(this.args4));
        }, onLeave: function (ret) {
            this.logs.push("onLeave args0: " + print_arg(this.args0));
            this.logs.push("onLeave args1:" + print_arg(this.args1));
            this.logs.push("onLeave args2:" + print_arg(this.args2));
            this.logs.push("onLeave args3:" + print_arg(this.args3));
            this.logs.push("onLeave args4:" + print_arg(this.args4));
            this.logs.push("onLeave return: " + print_arg(ret));
            console.log(this.logs)
        }
    })
}

function print_arg(addr) {
    var range = Process.findRangeByAddress(addr);
    console.log(range)
    if (range != null) {
        return hexdump(addr) + "\r\n";
    } else {
        return ptr(addr) + "\r\n";
    }
}


function main() {
    // 需要hook的函数地址列表
    var funcAddr = [
        // 0xbd84,
        // 0x12190,
    ];

    if (funcAddr.length == 0) {
        hookTargetFunc();
    } else {
        var baseAddr = Module.findBaseAddress(TargetLibName);
        console.log(TargetLibName + " Module Base: " + baseAddr);

        for (var i = 0; i < funcAddr.length; i++) {
            hook(baseAddr.add(funcAddr[i]));
        }
    }
}


setImmediate(main)

应用示例1

先运行App,logcat打开,随便点几下查看输出:

E Kanxue  : xyXXlCylYAZLIEcPx -> 1BC1ACBE494CF0F304235CA15D4F32913E5D370312AE7AB58BAAE5F5FED24092
E Kanxue  : HiLXhxkmCTCELiCcMInKTnAYc -> 2FD37BF2A1DF3C8E81E92D25D6AAD6F5E7858DE88CEB980B437390530DCA1CC6
E Kanxue  : xzJdkoAjsuYigMOXxdMjFAb -> E3DB2B7196C0276B47A30726A7323953E90923C0888AB11873035234E895F70B
E Kanxue  : UembiVTfFpPT -> 6CF35798D2A0FC7152949D2953110625

查看顶层信息,找到:com.kanxue.algorithmbase/.MainActivity ,jadx打开查看源码:

package com.kanxue.algorithmbase;

import android.os.Bundle;
import android.util.Log;
import android.view.View;
import android.widget.Button;
import android.widget.TextView;
import androidx.appcompat.app.AppCompatActivity;
import org.apache.commons.lang3.RandomStringUtils;
import org.apache.commons.lang3.RandomUtils;

/* loaded from: classes.dex */
public class MainActivity extends AppCompatActivity {
    public static native String encodeFromJni_13(String str);

    public static native String encodeFromJni_23(String str);

    public static native String encodeFromJni_32(String str);

    public static native String encodeFromJni_43(String str);

    public static native String encodeFromJni_51(String str);

    public static native String encodeFromJni_52(String str);

    public static native String encodeFromJni_60(String str);

    public static native String encodeFromJni_70(String str);

    static {
        System.loadLibrary("native-lib");
    }

    /* JADX INFO: Access modifiers changed from: protected */
    @Override // androidx.appcompat.app.AppCompatActivity, androidx.fragment.app.FragmentActivity, androidx.activity.ComponentActivity, androidx.core.app.ComponentActivity, android.app.Activity
    public void onCreate(Bundle bundle) {
        super.onCreate(bundle);
        setContentView(R.layout.activity_main);
        final TextView textView = (TextView) findViewById(R.id.sample_text);
        ((Button) findViewById(R.id.button)).setOnClickListener(new View.OnClickListener() { // from class: com.kanxue.algorithmbase.MainActivity.1
            @Override // android.view.View.OnClickListener
            public void onClick(View view) {
                String randomAlphabetic = RandomStringUtils.randomAlphabetic(RandomUtils.nextInt(1, 49));
                String encodeFromJni_70 = MainActivity.encodeFromJni_70(randomAlphabetic);
                Log.e("Kanxue", randomAlphabetic + " -> " + encodeFromJni_70);
                textView.setText(encodeFromJni_70);
            }
        });
    }
}

可以对应上日志输出,得知是这个jni函数获取的字符串结果:encodeFromJni_70 ,IDA打开App里lib下的so文件:libnative-lib.so查看获取到该函数的偏移地址:

Java_com_kanxue_algorithmbase_MainActivity_encodeFromJni_170	0000000000014E20	

启用frida的stalker功能,也就是在函数encodeFromJni_70(sub14E20)调用进来的时候启用调用跟踪,注意不要开启onReceive,不稳定非常容易崩。

// stalker
function hook_14E20() {
    var baseAddr = Module.findBaseAddress("libnative-lib.so")
    //var symbols = Module.enumerateSymbolsSync("libart.so"); symbols.forEach(function (item) { console.log(JSON.stringify( item)) })
    Interceptor.attach(baseAddr.add(0x14E20), {
        onEnter: function (args) {
            console.log("Entering 0x14E20...")
            this.tid = Process.getCurrentThreadId();

            Stalker.follow(this.tid, {
                events: {
                    call: true, // CALL instructions: yes please

                    // Other events:
                    ret: false, // RET instructions
                    exec: false, // all instructions: not recommended as it's
                    //                   a lot of data
                    block: false, // block executed: coarse execution stalker
                    compile: false // block compiled: useful for coverage
                },
                // onReceive(events) {
                //     var all_events = Stalker.parse(events);
                //     console.log("onReceive: ", all_events.length);
                //     all_events.forEach(function (i) {
                //         // console.log(i);
                //         try {
                //             var addr1 = i[1];
                //             var module1 = Process.getModuleByAddress(addr1);
                //             if (module1 != null && module1.name == "libnative-lib.so") {
                //                 var addr2 = i[2];
                //                 var module2 = Process.getModuleByAddress(addr2);
                //                 console.log("call: ", module1.name + "!" + addr1.sub(module1.base), module2.name + "!" + addr2.sub(module2.base))
                //             }
                //         } catch (error) {
                //             console.log("error:", error)
                //         }
                //     })
                // },
                onCallSummary(summary) {
                    // console.log(JSON.stringify(summary))
                    for (const target in summary) {
                        const number = summary[target];
                        if(number==1){
                            var module = Process.findModuleByAddress(target);
                            if (module != null && module.name == "libnative-lib.so") {
                                console.log(module.name + "!" + ptr(target).sub(module.base));
                            }
                        }
                    }

                }
            })
        }, onLeave: function (retVal) {
            console.log("Entering 0x14E20...")
            Stalker.unfollow(this.tid)
        }
    })
}

点击依此按钮记录一次日志,找出只执行一次的记录,把几次的统计结果中都被调用的函数全部hook上,大概是这样的形式:

function main() {
    var baseAddr = Module.findBaseAddress("libnative-lib.so");
    hook_native_function(baseAddr.add(0x57514));
    hook_native_function(baseAddr.add(0x5971c));
    hook_native_function(baseAddr.add(0x157fc));
    //hook_native_function(baseAddr.add(0xf6e0));   //free
    hook_native_function(baseAddr.add(0x151a4));
    hook_native_function(baseAddr.add(0x59670));
    //hook_native_function(baseAddr.add(0xf630));   //strlen
    hook_native_function(baseAddr.add(0x19a84));
    hook_native_function(baseAddr.add(0x12580));
    //hook_native_function(baseAddr.add(0xf6a0));   //memset
    hook_native_function(baseAddr.add(0x16a94));
    //hook_native_function(baseAddr.add(0x18540));  //短字符串的时候无
    hook_native_function(baseAddr.add(0xfcac));
    hook_native_function(baseAddr.add(0x12c0c));
    hook_native_function(baseAddr.add(0x5796c));
}

有些不能hook成功的函数直接注释掉,一般是stl的库函数,这些也没必要hook。

HOOK之后,点击,输出:

09-27 14:13:27.487  8117  8117 E Kanxue  : nyDDfvQhposa -> A63D14CFAA74EB59B46EDDAEE2AFE6B9
09-27 14:17:27.775  8117  8117 E Kanxue  : qqCEpKoHjYinvtKbexQBSlRLvT -> 5C6575B8E9A63E824AAB465F761D0E8CF4A7C5D26B6C0357FD5F7AD0451EA280

拦截到的参数信息:

[AOSP on redfin::PID::8117 ]-> ------------------------
,call libnative-lib.so!0x157fc
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c90  00 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onEnter args1: 0xb400007691121a30

,onEnter args2: 0xc

,onEnter args3: 0x61736f70

,onEnter args4: 0x20

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  18 6e 79 44 44 66 76 51 68 70 6f 73 61 00 00 00  .nyDDfvQhposa...
7fc87f1c90  00 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onLeave args1:0xb400007691121a30

,onLeave args2:0xc

,onLeave args3:0x61736f70

,onLeave args4:0x20

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  6e 79 44 44 66 76 51 68 70 6f 73 61 00 00 00 00  nyDDfvQhposa....
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................


------------------------
,call libnative-lib.so!0xfcac
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  9c 52 df 80 76 00 00 00 00 00 00 00 00 00 00 00  .R..v...........
7fc87f1c90  90 d9 d2 12 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onEnter args1: 0xb400007691121a30

,onEnter args2: 0x0

,onEnter args3: 0x10

,onEnter args4: 0x0

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  18 6e 79 44 44 66 76 51 68 70 6f 73 61 00 00 00  .nyDDfvQhposa...
7fc87f1c90  00 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onLeave args1:0xb400007691121a30

,onLeave args2:0x0

,onLeave args3:0x10

,onLeave args4:0x0

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  6e 79 44 44 66 76 51 68 70 6f 73 61 00 00 00 00  nyDDfvQhposa....
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................


------------------------
,call libnative-lib.so!0x19a84
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  18 6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04  .nyDDfvQhposa...
7fc87f1c90  04 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onEnter args1: 0x10

,onEnter args2: 0x4

,onEnter args3:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
1e137626  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137636  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137646  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137656  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137666  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137676  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137686  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137696  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376a6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376b6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376c6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376d6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376e6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376f6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137706  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137716  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args4:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................
7fc87f1d81  b8 e3 12 00 00 00 00 28 f9 4a 71 00 00 00 00 00  .......(.Jq.....

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04   nyDDfvQhposa...
7fc87f1c90  04 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onLeave args1:0x10

,onLeave args2:0x4

,onLeave args3:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
1e137626  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137636  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137646  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137656  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137666  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137676  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137686  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137696  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376a6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376b6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376c6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376d6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376e6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376f6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137706  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137716  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args4:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................
7fc87f1d81  b8 e3 12 00 00 00 00 28 f9 4a 71 00 00 00 00 00  .......(.Jq.....

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04   nyDDfvQhposa...
7fc87f1c90  04 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x151a4
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  18 6e 79 44 44 66 76 51 68 70 6f 73 61 00 00 00  .nyDDfvQhposa...
7fc87f1c90  00 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onEnter args1: 0x4

,onEnter args2: 0x4

,onEnter args3: 0xacf51954

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04   nyDDfvQhposa...
7fc87f1c90  04 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onLeave args1:0x4

,onLeave args2:0x4

,onLeave args3:0xacf51954

,onLeave args4:0xd3966fad

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04   nyDDfvQhposa...
7fc87f1c90  04 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x5971c
,onEnter args0: 0xb4000077311184b0

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2: 0x80

,onEnter args3: 0x10

,onEnter args4: 0x0

,onLeave args0: 0xb4000077311184b0

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:0x80

,onLeave args3:0x10

,onLeave args4:0x0

,onLeave return: 0xa


------------------------
,call libnative-lib.so!0x5796c
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args1: 0x10

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04 04  nyDDfvQhposa....
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................

,onEnter args3: 0x10

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args1:0x10

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04 04  nyDDfvQhposa....
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................

,onLeave args3:0x10

,onLeave args4:0xd3966fad

,onLeave return: 0xb4000077311184b0


------------------------
,call libnative-lib.so!0x59670
,onEnter args0: 0xb4000077311184b0

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6 b9  .=...t.Y.n......
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 81 1c 7f c8 7f 00 00 00  "...............
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  80 d9 d2 12 00 00 00 00 81 1c 7f c8 7f 00 00 00  ................
7fc87f1c68  81 1c 7f c8 7f 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  b0 57 10 f1 77 00 00 b4 20 a6 3d 14 cf aa 74 eb  .W..w... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6 b9  .=...t.Y.n......
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 81 1c 7f c8 7f 00 00 00  "...............
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  80 d9 d2 12 00 00 00 00 81 1c 7f c8 7f 00 00 00  ................
7fc87f1c68  81 1c 7f c8 7f 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  b0 57 10 f1 77 00 00 b4 20 a6 3d 14 cf aa 74 eb  .W..w... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args3: 0xcc25fe49

,onEnter args4:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
84ab78e2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab78f2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7902  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7912  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7922  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7932  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7942  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7952  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7962  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7972  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7982  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7992  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79a2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79b2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79c2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79d2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args0: 0xb4000077311184b0

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6 b9  .=...t.Y.n......
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 81 1c 7f c8 7f 00 00 00  "...............
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  80 d9 d2 12 00 00 00 00 81 1c 7f c8 7f 00 00 00  ................
7fc87f1c68  81 1c 7f c8 7f 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  b0 57 10 f1 77 00 00 b4 20 a6 3d 14 cf aa 74 eb  .W..w... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6 b9  .=...t.Y.n......
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 81 1c 7f c8 7f 00 00 00  "...............
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  80 d9 d2 12 00 00 00 00 81 1c 7f c8 7f 00 00 00  ................
7fc87f1c68  81 1c 7f c8 7f 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  b0 57 10 f1 77 00 00 b4 20 a6 3d 14 cf aa 74 eb  .W..w... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args3:0xcc25fe49

,onLeave args4:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
84ab78e2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab78f2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7902  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7912  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7922  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7932  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7942  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7952  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7962  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7972  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7982  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7992  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79a2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79b2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79c2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79d2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
791315f644  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f654  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f664  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f674  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f684  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f694  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6a4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6b4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6c4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6d4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6e4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6f4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f704  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f714  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f724  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f734  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x57514
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  6e 79 44 44 66 76 51 68 70 6f 73 61 04 04 04 04  nyDDfvQhposa....
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................

,onEnter args3: 0x10

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c81  a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6 b9  .=...t.Y.n......
7fc87f1c91  00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7 0c  .......c...p0...
7fc87f1ca1  12 00 00 00 00 00 00 00 10 82 16 79 00 00 00 28  ...........y...(
7fc87f1cb1  f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00 b8  .Jq.............
7fc87f1cc1  d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00 00  ................
7fc87f1cd1  00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4 60  ........W..w...`
7fc87f1ce1  1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00 c0  ..........ov....
7fc87f1cf1  b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00 02  .j......+.......
7fc87f1d01  00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00 80  ...(.b..........
7fc87f1d11  d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00 00  .......P..p.....
7fc87f1d21  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d31  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d41  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d51  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b0  ................
7fc87f1d61  57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00 e0  W..w............
7fc87f1d71  b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00 e0  ................

,onLeave args3:0x10

,onLeave args4:0xd3966fad

,onLeave return: 0x0


------------------------
,call libnative-lib.so!0x16a94
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 20 a6 3d 14 cf aa 74 eb  ........ .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
77311184b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118500  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118510  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118520  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118530  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118540  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118550  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118560  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118570  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118580  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118590  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311185a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b18  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 8b 80 ad eb 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 8c 80 ad eb 00 00 00 00  ................
7fc87f1b48  00 00 00 00 00 00 00 00 8d 80 ad eb 00 00 00 00  ................
7fc87f1b58  00 00 00 00 00 00 00 00 8e 80 ad eb 00 00 00 00  ................
7fc87f1b68  00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 40 1c 7f c8 7f 00 00 00  ........@.......
7fc87f1b88  d4 56 ba 6f 76 00 00 00 00 00 30 41 00 00 00 00  .V.ov.....0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  68 1c 7f c8 7f 00 00 00 68 1c 7f c8 7f 00 00 00  h.......h.......
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 68 1c 7f c8 7f 00 00 00  ........h.......

,onEnter args3: 0xf4

,onEnter args4: 0x10

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 20 a6 3d 14 cf aa 74 eb  ........ .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
77311184b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118500  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118510  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118520  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118530  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118540  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118550  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118560  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118570  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118580  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118590  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311185a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b18  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 8b 80 ad eb 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 8c 80 ad eb 00 00 00 00  ................
7fc87f1b48  00 00 00 00 00 00 00 00 8d 80 ad eb 00 00 00 00  ................
7fc87f1b58  00 00 00 00 00 00 00 00 8e 80 ad eb 00 00 00 00  ................
7fc87f1b68  00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 d4 56 ba 6f 76 00 00 00  .........V.ov...
7fc87f1b88  0c 6c 30 11 79 00 00 00 00 00 30 41 00 00 00 00  .l0.y.....0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  68 1c 7f c8 7f 00 00 00 68 1c 7f c8 7f 00 00 00  h.......h.......
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 68 1c 7f c8 7f 00 00 00  ........h.......

,onLeave args3:0xf4

,onLeave args4:0x10

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 20 a6 3d 14 cf aa 74 eb  ........ .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...


------------------------
,call libnative-lib.so!0x12c0c
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 20 a6 3d 14 cf aa 74 eb  ........ .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onEnter args1: 0x20

,onEnter args2: 0xa03052c1

,onEnter args3: 0xacf51954

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  1...............
7fc87f1c78  d0 69 14 b1 76 00 00 b4 20 a6 3d 14 cf aa 74 eb  .i..v... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onLeave args1:0x20

,onLeave args2:0xa03052c1

,onLeave args3:0xacf51954

,onLeave args4:0xd3966fad

,onLeave return:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
94332f77  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332f87  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332f97  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fa7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fb7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fc7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fd7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fe7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332ff7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333007  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333017  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333027  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333037  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333047  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333057  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333067  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x12580
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6   .=...t.Y.n.....
7fc87f1c90  b9 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
77311184b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118500  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118510  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118520  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118530  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118540  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118550  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118560  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118570  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118580  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118590  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311185a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 ee 86 35 07 87 51 79 81  ..........5..Qy.
7fc87f1b48  d1 cd 4c 9f ac 34 ba eb da 1d 07 cf 3d cf 68 2e  ..L..4......=.h.
7fc87f1b58  f7 4a 59 39 83 45 e2 49 00 00 00 80 00 00 00 00  .JY9.E.I........
7fc87f1b68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 00 00 30 c1 00 00 00 00  ..........0.....
7fc87f1b88  00 00 00 00 00 00 00 00 00 00 30 41 00 00 00 00  ..........0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................

,onEnter args3: 0xf4

,onEnter args4: 0x10

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  20 a6 3d 14 cf aa 74 eb 59 b4 6e dd ae e2 af e6   .=...t.Y.n.....
7fc87f1c90  b9 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  0c 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  b8 d9 d2 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  ................
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e b8 d9 d2 12 07 00 00 00  ....(.b.........
7fc87f1d10  80 d9 d2 12 00 00 00 00 50 8a 8f 70 00 00 00 00  ........P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
77311184b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311184f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118500  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118510  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118520  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118530  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118540  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118550  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118560  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118570  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118580  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731118590  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311185a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 ee 86 35 07 87 51 79 81  ..........5..Qy.
7fc87f1b48  d1 cd 4c 9f ac 34 ba eb da 1d 07 cf 3d cf 68 2e  ..L..4......=.h.
7fc87f1b58  f7 4a 59 39 83 45 e2 49 00 00 00 80 00 00 00 00  .JY9.E.I........
7fc87f1b68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 00 00 30 c1 00 00 00 00  ..........0.....
7fc87f1b88  00 00 00 00 00 00 00 00 00 00 30 41 00 00 00 00  ..........0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................

,onLeave args3:0xf4

,onLeave args4:0x10

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  31 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  1....... .......
7fc87f1c78  d0 69 14 b1 76 00 00 b4 20 a6 3d 14 cf aa 74 eb  .i..v... .=...t.
7fc87f1c88  59 b4 6e dd ae e2 af e6 b9 00 00 00 00 00 00 00  Y.n.............
7fc87f1c98  63 08 fa 8c 70 30 de e7 0c 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 b8 d9 d2 12 00 00 00 00  ................
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  b8 d9 d2 12 07 00 00 00 80 d9 d2 12 00 00 00 00  ................
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

能找出输入参数中有 nyDDfvQhposa ,输出结果中有 A6 3D 14 CF AA 74 EB 59 B4 6E DD AE E2 AF E6 B9 的函数:0x57514,这是一个关键call,可以在IDA里去分析查看。

测试发现,短字符串能拦截到,长字符串拦截不到,例如上面的那个长字符串的案例就没有拦截到输入参数和输出结果:

------------------------
,call libnative-lib.so!0x157fc
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c90  00 00 00 00 00 00 00 00 63 08 fa 8c 70 30 de e7  ........c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onEnter args1: 0xb4000076a1133c50

,onEnter args2: 0x1a

,onEnter args3: 0x5476

,onEnter args4: 0x10

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  21 00 00 00 00 00 00 00 1a 00 00 00 00 00 00 00  !...............
7fc87f1c90  00 1d 13 a1 76 00 00 b4 63 08 fa 8c 70 30 de e7  ....v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onLeave args1:0xb4000076a1133c50

,onLeave args2:0x1a

,onLeave args3:0x5476

,onLeave args4:0x10

,onLeave return: 0xb4000076a1131d00


------------------------
,call libnative-lib.so!0xfcac
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  9c 52 df 80 76 00 00 00 00 00 00 00 00 00 00 00  .R..v...........
7fc87f1c90  48 26 d3 12 00 00 00 00 63 08 fa 8c 70 30 de e7  H&......c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onEnter args1: 0xb4000076a1133c50

,onEnter args2: 0x0

,onEnter args3: 0x10

,onEnter args4: 0x0

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  21 00 00 00 00 00 00 00 1a 00 00 00 00 00 00 00  !...............
7fc87f1c90  00 1d 13 a1 76 00 00 b4 63 08 fa 8c 70 30 de e7  ....v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onLeave args1:0xb4000076a1133c50

,onLeave args2:0x0

,onLeave args3:0x10

,onLeave args4:0x0

,onLeave return: 0xb4000076a1131d00


------------------------
,call libnative-lib.so!0x19a84
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 1a 00 00 00 00 00 00 00  A...............
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onEnter args1: 0x20

,onEnter args2: 0x6

,onEnter args3:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
1e137626  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137636  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137646  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137656  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137666  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137676  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137686  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137696  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376a6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376b6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376c6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376d6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376e6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376f6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137706  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137716  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args4: 0xb4000076c1124ac0

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onLeave args1:0x20

,onLeave args2:0x6

,onLeave args3:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
1e137626  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137636  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137646  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137656  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137666  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137676  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137686  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137696  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376a6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376b6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376c6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376d6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376e6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e1376f6  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137706  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
1e137716  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args4:0xb4000076c1124ac0

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......


------------------------
,call libnative-lib.so!0x151a4
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  21 00 00 00 00 00 00 00 1a 00 00 00 00 00 00 00  !...............
7fc87f1c90  00 1d 13 a1 76 00 00 b4 63 08 fa 8c 70 30 de e7  ....v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onEnter args1: 0x6

,onEnter args2: 0x6

,onEnter args3: 0xacf51954

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onLeave args1:0x6

,onLeave args2:0x6

,onLeave args3:0xacf51954

,onLeave args4:0xd3966fad

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......


------------------------
,call libnative-lib.so!0x5971c
,onEnter args0: 0xb400007731115690

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2: 0x80

,onEnter args3: 0x10

,onEnter args4: 0x0

,onLeave args0: 0xb400007731115690

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:0x80

,onLeave args3:0x10

,onLeave args4:0x0

,onLeave return: 0xa


------------------------
,call libnative-lib.so!0x5796c
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args1: 0x10

,onEnter args2: 0xb4000076c1124aa0

,onEnter args3: 0x20

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args1:0x10

,onLeave args2:0xb4000076c1124aa0

,onLeave args3:0x20

,onLeave args4:0xd3966fad

,onLeave return: 0xb400007731115690


------------------------
,call libnative-lib.so!0x59670
,onEnter args0: 0xb400007731115690

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  f4 a7 c5 d2 6b 6c 03 57 fd 5f 7a d0 45 1e a2 80  ....kl.W._z.E...
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 a0 4a 12 c1 76 00 00 b4  "........J..v...
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  38 26 d3 12 00 00 00 00 a0 4a 12 c1 76 00 00 b4  8&.......J..v...
7fc87f1c68  a0 4a 12 c1 76 00 00 b4 00 00 00 00 00 00 00 00  .J..v...........
7fc87f1c78  b0 57 10 f1 77 00 00 b4 41 00 00 00 00 00 00 00  .W..w...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  f4 a7 c5 d2 6b 6c 03 57 fd 5f 7a d0 45 1e a2 80  ....kl.W._z.E...
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 a0 4a 12 c1 76 00 00 b4  "........J..v...
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  38 26 d3 12 00 00 00 00 a0 4a 12 c1 76 00 00 b4  8&.......J..v...
7fc87f1c68  a0 4a 12 c1 76 00 00 b4 00 00 00 00 00 00 00 00  .J..v...........
7fc87f1c78  b0 57 10 f1 77 00 00 b4 41 00 00 00 00 00 00 00  .W..w...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args3: 0xcc25fe49

,onEnter args4:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
84ab78e2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab78f2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7902  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7912  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7922  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7932  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7942  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7952  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7962  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7972  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7982  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7992  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79a2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79b2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79c2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79d2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args0: 0xb400007731115690

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  f4 a7 c5 d2 6b 6c 03 57 fd 5f 7a d0 45 1e a2 80  ....kl.W._z.E...
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 a0 4a 12 c1 76 00 00 b4  "........J..v...
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  38 26 d3 12 00 00 00 00 a0 4a 12 c1 76 00 00 b4  8&.......J..v...
7fc87f1c68  a0 4a 12 c1 76 00 00 b4 00 00 00 00 00 00 00 00  .J..v...........
7fc87f1c78  b0 57 10 f1 77 00 00 b4 41 00 00 00 00 00 00 00  .W..w...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1bd8  f4 a7 c5 d2 6b 6c 03 57 fd 5f 7a d0 45 1e a2 80  ....kl.W._z.E...
7fc87f1be8  63 08 fa 8c 70 30 de e7 01 00 00 00 00 00 00 00  c...p0..........
7fc87f1bf8  01 00 00 00 00 00 00 00 00 96 5f 3e 00 00 00 00  .........._>....
7fc87f1c08  43 a3 22 4e 00 00 00 00 00 96 5f 3e 00 00 00 00  C."N......_>....
7fc87f1c18  1e c5 33 86 00 00 00 00 00 10 82 16 79 00 00 00  ..3.........y...
7fc87f1c28  22 c9 89 d1 00 00 00 00 a0 4a 12 c1 76 00 00 b4  "........J..v...
7fc87f1c38  70 03 10 41 77 00 00 b4 e0 1c 7f c8 7f 00 00 00  p..Aw...........
7fc87f1c48  0c 65 30 11 79 00 00 00 00 00 00 00 00 00 00 00  .e0.y...........
7fc87f1c58  38 26 d3 12 00 00 00 00 a0 4a 12 c1 76 00 00 b4  8&.......J..v...
7fc87f1c68  a0 4a 12 c1 76 00 00 b4 00 00 00 00 00 00 00 00  .J..v...........
7fc87f1c78  b0 57 10 f1 77 00 00 b4 41 00 00 00 00 00 00 00  .W..w...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args3:0xcc25fe49

,onLeave args4:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
84ab78e2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab78f2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7902  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7912  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7922  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7932  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7942  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7952  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7962  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7972  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7982  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab7992  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79a2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79b2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79c2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
84ab79d2  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
791315f644  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f654  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f664  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f674  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f684  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f694  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6a4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6b4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6c4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6d4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6e4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f6f4  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f704  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f714  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f724  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
791315f734  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x57514
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2: 0xb4000076c1124aa0

,onEnter args3: 0x20

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
766fc16080  6b 61 6e 78 75 65 5f 69 6d 79 61 6e 67 5f 5f 5f  kanxue_imyang___
766fc16090  00 00 00 00 00 00 00 00 62 61 73 69 63 5f 73 74  ........basic_st
766fc160a0  72 69 6e 67 00 00 00 00 00 00 00 00 00 00 00 00  ring............
766fc160b0  61 6c 6c 6f 63 61 74 6f 72 3c 54 3e 3a 3a 61 6c  allocator<T>::al
766fc160c0  6c 6f 63 61 74 65 28 73 69 7a 65 5f 74 20 6e 29  locate(size_t n)
766fc160d0  20 27 6e 27 20 65 78 63 65 65 64 73 20 6d 61 78   'n' exceeds max
766fc160e0  69 6d 75 6d 20 73 75 70 70 6f 72 74 65 64 20 73  imum supported s
766fc160f0  69 7a 65 00 00 00 00 00 f0 e5 be 6f 76 00 00 00  ize........ov...
766fc16100  41 59 5a 70 71 32 33 49 4a 72 54 46 66 67 68 69  AYZpq23IJrTFfghi
766fc16110  6a 6b 6c 43 44 45 31 4b 4c 4d 6d 42 64 65 73 74  jklCDE1KLMmBdest
766fc16120  55 35 36 37 38 47 48 7a 30 63 75 76 77 61 62 4e  U5678GHz0cuvwabN
766fc16130  39 2b 2f 56 57 58 6e 6f 4f 50 51 52 53 78 79 34  9+/VWXnoOPQRSxy4
766fc16140  00 00 00 00 6b 61 6e 78 75 65 00 00 69 6d 79 61  ....kanxue..imya
766fc16150  6e 67 00 00 00 00 00 00 6f 6c 6c 76 6d 5f 6d 64  ng......ollvm_md
766fc16160  35 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00  5...............
766fc16170  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:0xb4000076c1124aa0

,onLeave args3:0x20

,onLeave args4:0xd3966fad

,onLeave return: 0x0


------------------------
,call libnative-lib.so!0x16a94
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 41 00 00 00 00 00 00 00  ........A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7731115690  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115700  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115710  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115720  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115730  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115740  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115750  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115760  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115770  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115780  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b18  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 8b 80 ad eb 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 8c 80 ad eb 00 00 00 00  ................
7fc87f1b48  00 00 00 00 00 00 00 00 8d 80 ad eb 00 00 00 00  ................
7fc87f1b58  00 00 00 00 00 00 00 00 8e 80 ad eb 00 00 00 00  ................
7fc87f1b68  00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 40 1c 7f c8 7f 00 00 00  ........@.......
7fc87f1b88  d4 56 ba 6f 76 00 00 00 00 00 30 41 00 00 00 00  .V.ov.....0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  68 1c 7f c8 7f 00 00 00 68 1c 7f c8 7f 00 00 00  h.......h.......
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 68 1c 7f c8 7f 00 00 00  ........h.......

,onEnter args3: 0xf4

,onEnter args4: 0x10

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 41 00 00 00 00 00 00 00  ........A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7731115690  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115700  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115710  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115720  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115730  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115740  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115750  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115760  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115770  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115780  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1b18  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 8b 80 ad eb 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 8c 80 ad eb 00 00 00 00  ................
7fc87f1b48  00 00 00 00 00 00 00 00 8d 80 ad eb 00 00 00 00  ................
7fc87f1b58  00 00 00 00 00 00 00 00 8e 80 ad eb 00 00 00 00  ................
7fc87f1b68  00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 d4 56 ba 6f 76 00 00 00  .........V.ov...
7fc87f1b88  0c 6c 30 11 79 00 00 00 00 00 30 41 00 00 00 00  .l0.y.....0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  68 1c 7f c8 7f 00 00 00 68 1c 7f c8 7f 00 00 00  h.......h.......
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 68 1c 7f c8 7f 00 00 00  ........h.......

,onLeave args3:0xf4

,onLeave args4:0x10

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 41 00 00 00 00 00 00 00  ........A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...


------------------------
,call libnative-lib.so!0x12c0c
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1c78  00 00 00 00 00 00 00 00 41 00 00 00 00 00 00 00  ........A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onEnter args1: 0x40

,onEnter args2: 0xa03052c1

,onEnter args3: 0xacf51954

,onEnter args4: 0xd3966fad

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  51 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  Q...............
7fc87f1c78  90 ac 11 d1 76 00 00 b4 41 00 00 00 00 00 00 00  ....v...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

,onLeave args1:0x40

,onLeave args2:0xa03052c1

,onLeave args3:0xacf51954

,onLeave args4:0xd3966fad

,onLeave return:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
94332f77  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332f87  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332f97  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fa7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fb7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fc7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fd7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332fe7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94332ff7  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333007  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333017  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333027  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333037  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333047  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333057  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
94333067  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................


------------------------
,call libnative-lib.so!0x12580
,onEnter args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onEnter args1:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7731115690  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115700  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115710  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115720  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115730  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115740  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115750  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115760  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115770  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115780  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args2:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 49 d4 c4 3d 51 c6 15 e0  ........I..=Q...
7fc87f1b48  a4 9d ba bb 6d bd 7c 68 16 12 f9 93 4a 79 e4 42  ....m.|h....Jy.B
7fc87f1b58  f5 89 6b d3 58 80 51 17 00 00 00 80 00 00 00 00  ..k.X.Q.........
7fc87f1b68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 00 00 30 c1 00 00 00 00  ..........0.....
7fc87f1b88  00 00 00 00 00 00 00 00 00 00 30 41 00 00 00 00  ..........0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................

,onEnter args3: 0xf4

,onEnter args4: 0x10

,onLeave args0:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c80  41 00 00 00 00 00 00 00 20 00 00 00 00 00 00 00  A....... .......
7fc87f1c90  a0 4a 12 c1 76 00 00 b4 63 08 fa 8c 70 30 de e7  .J..v...c...p0..
7fc87f1ca0  de 12 00 00 00 00 00 00 00 10 82 16 79 00 00 00  ............y...
7fc87f1cb0  28 f9 4a 71 00 00 00 00 e0 b8 e3 12 00 00 00 00  (.Jq............
7fc87f1cc0  88 26 d3 12 00 00 00 00 e0 b8 e3 12 00 00 00 00  .&..............
7fc87f1cd0  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...
7fc87f1ce0  60 1e 7f c8 7f 00 00 00 c0 00 c7 6f 76 00 00 00  `..........ov...
7fc87f1cf0  c0 b6 6a 9e 00 00 00 00 a8 2b 7f c8 7f 00 00 00  ..j......+......
7fc87f1d00  02 00 00 00 28 cd 62 9e 88 26 d3 12 07 00 00 00  ....(.b..&......
7fc87f1d10  38 26 d3 12 00 00 00 00 50 8a 8f 70 00 00 00 00  8&......P..p....
7fc87f1d20  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d30  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d40  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d50  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d60  b0 57 10 f1 77 00 00 b4 00 00 00 00 00 00 00 00  .W..w...........
7fc87f1d70  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......

,onLeave args1:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7731115690  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
77311156f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115700  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115710  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115720  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115730  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115740  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115750  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115760  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115770  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7731115780  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args2:             0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1ae8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1af8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b38  00 00 00 00 00 00 00 00 49 d4 c4 3d 51 c6 15 e0  ........I..=Q...
7fc87f1b48  a4 9d ba bb 6d bd 7c 68 16 12 f9 93 4a 79 e4 42  ....m.|h....Jy.B
7fc87f1b58  f5 89 6b d3 58 80 51 17 00 00 00 80 00 00 00 00  ..k.X.Q.........
7fc87f1b68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1b78  00 00 00 00 00 00 00 00 00 00 30 c1 00 00 00 00  ..........0.....
7fc87f1b88  00 00 00 00 00 00 00 00 00 00 30 41 00 00 00 00  ..........0A....
7fc87f1b98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1ba8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bb8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bc8  00 00 00 00 00 00 00 00 00 00 80 35 00 00 00 00  ...........5....
7fc87f1bd8  00 00 00 00 00 00 00 00 8a 80 ad eb 00 00 00 00  ................

,onLeave args3:0xf4

,onLeave args4:0x10

,onLeave return:              0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
7fc87f1c68  51 00 00 00 00 00 00 00 40 00 00 00 00 00 00 00  Q.......@.......
7fc87f1c78  90 ac 11 d1 76 00 00 b4 41 00 00 00 00 00 00 00  ....v...A.......
7fc87f1c88  20 00 00 00 00 00 00 00 a0 4a 12 c1 76 00 00 b4   ........J..v...
7fc87f1c98  63 08 fa 8c 70 30 de e7 de 12 00 00 00 00 00 00  c...p0..........
7fc87f1ca8  00 10 82 16 79 00 00 00 28 f9 4a 71 00 00 00 00  ....y...(.Jq....
7fc87f1cb8  e0 b8 e3 12 00 00 00 00 88 26 d3 12 00 00 00 00  .........&......
7fc87f1cc8  e0 b8 e3 12 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1cd8  b0 57 10 f1 77 00 00 b4 60 1e 7f c8 7f 00 00 00  .W..w...`.......
7fc87f1ce8  c0 00 c7 6f 76 00 00 00 c0 b6 6a 9e 00 00 00 00  ...ov.....j.....
7fc87f1cf8  a8 2b 7f c8 7f 00 00 00 02 00 00 00 28 cd 62 9e  .+..........(.b.
7fc87f1d08  88 26 d3 12 07 00 00 00 38 26 d3 12 00 00 00 00  .&......8&......
7fc87f1d18  50 8a 8f 70 00 00 00 00 00 00 00 00 00 00 00 00  P..p............
7fc87f1d28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
7fc87f1d58  00 00 00 00 00 00 00 00 b0 57 10 f1 77 00 00 b4  .........W..w...

原因可能是:

  • 因为我们在用stalker做函数调用统计的时候,过滤了同样都被调用的函数,很有可能代码逻辑会根据字符串长短不同执行了不同分支,导致有函数被我们遗漏掉了。如果要验证的话,可以取函数并集而不是交集,这块就没有在验证了,有兴趣的可以自己验证下。
  • 其他不稳定的因素。

应用示例2

首先找到想要跟踪的函数,例如是libxyz.so里的0x6B60,修改模板代码:

var TargetLibName = 'libxyz.so';    	// 待分析的so库文件名
var TargetFuncOffset = 0x6B60;          // 待分析的native函数偏移, 先在IDA里找到
var stalkerCallNum = 1;            		// 默认只输出调用1次的函数

回到App解密,点击触发调用。需注意,点击的频次不要太高,否则结果不一,会影响分析。最好多触发几次,选择出现稳定且频率高的结果。例如:

libxyz.so!0xbd84
libxyz.so!0x7254
libxyz.so!0x14093
libxyz.so!0x14015
libxyz.so!0x1381c
libxyz.so!0x13ea1
libxyz.so!0x17e30
libxyz.so!0x12190
libxyz.so!0x12634
libxyz.so!0x17299
libxyz.so!0x17890
libxyz.so!0x13834
libxyz.so!0x15e81

把上述地址偏移赋值给数组变量funcAddr

// 需要hook的函数地址列表
var funcAddr = [
    0xbd84,
    0x7254,
    0x14093,
    0x14015,
    0x1381c,
    0x13ea1,
    0x17e30,
    0x12190,
    0x12634,
    0x17299,
    0x17890,
    0x13834,
    0x15e81,
];

然后再次触发功能,可以拦截函数调用及参数的数据内容,截取部分如下:

[object Object]
null
[object Object]
null
[object Object]
[object Object]
null
[object Object]
null
[object Object]
[object Object]
------------------------
,call libxyz.so!0xbd84
,onEnter args0:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
be900e38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e58  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e78  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e88  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900e98  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ea8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900eb8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ec8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ed8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ee8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ef8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onEnter args1: 0xdf

,onEnter args2:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
9a0c4506  43 53 66 62 4d 41 55 63 6d 46 30 43 45 66 72 56  CSfbMAUcmF0CEfrV
9a0c4516  63 32 59 41 41 41 41 41 47 52 44 59 39 34 64 2d  c2YAAAAAGRDY94d-
9a0c4526  31 62 41 53 49 6d 34 72 75 70 66 4d 5f 74 4b 4c  1bASIm4rupfM_tKL
9a0c4536  78 2d 35 58 54 48 7a 75 65 34 66 41 33 55 73 54  x-5XTHzue4fA3UsT
9a0c4546  6c 42 47 66 76 5f 5a 56 77 65 36 43 79 44 61 6a  lBGfv_ZVwe6CyDaj
9a0c4556  4e 69 55 58 4d 6c 5f 48 76 54 78 6e 6b 55 75 50  NiUXMl_HvTxnkUuP
9a0c4566  67 5a 63 4c 54 41 34 30 68 35 53 74 2d 56 7a 50  gZcLTA40h5St-VzP
9a0c4576  65 59 45 61 74 6f 56 79 67 59 78 44 53 77 6d 5f  eYEatoVygYxDSwm_
9a0c4586  4d 58 75 79 74 4e 4e 52 49 65 30 43 36 36 62 74  MXuytNNRIe0C66bt
9a0c4596  7a 57 6e 71 39 73 30 48 71 47 35 61 43 30 5a 5a  zWnq9s0HqG5aC0ZZ
9a0c45a6  6c 64 30 41 41 59 32 61 64 30 4e 7a 4b 6a 79 62  ld0AAY2ad0NzKjyb
9a0c45b6  63 6c 66 69 59 4c 79 34 4d 6a 44 2d 34 71 48 4c  clfiYLy4MjD-4qHL
9a0c45c6  78 76 6e 44 6a 55 34 36 45 43 76 43 55 61 78 49  xvnDjU46ECvCUaxI
9a0c45d6  6b 63 4e 62 6c 77 78 79 76 4e 5a 31 31 72 6f 22  kcNblwxyvNZ11ro"
9a0c45e6  7d 9e a4 f9 3c 9e 14 fa 3c 9e 84 fa 3c 9e f4 fa  }...<...<...<...
9a0c45f6  3c 9e 64 fb 05 03 03 03 03 00 0c 72 00 00 03 72  <.d........r...r

,onEnter args3: 0xdf

,onEnter args4:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
be8ffa98  df 00 00 00 cc dd 04 12 20 e9 24 b4 d0 fa 8f be  ........ .$.....
be8ffaa8  30 31 c3 32 b9 81 34 b6 12 0c e8 8a b1 e5 bc 80  01.2..4.........
be8ffab8  e5 af 8c e8 68 04 90 be 64 04 90 be 60 04 90 be  ....h...d...`...
be8ffac8  00 00 00 00 28 e9 24 b4 03 20 65 63 37 66 37 66  ....(.$.. ec7f7f
be8ffad8  64 30 30 31 62 38 34 33 62 39 39 32 34 36 32 62  d001b843b992462b
be8ffae8  62 30 37 65 30 32 31 35 64 31 9a 03 01 30 a2 06  b07e0215d1...0..
be8ffaf8  07 0a 05 61 62 63 64 65 00 00 00 00 00 00 00 00  ...abcde........
be8ffb08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb58  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb78  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb88  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args0:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
be900e38  09 27 db 30 05 1c 98 5d 02 11 fa d5 73 66 00 00  .'.0...]....sf..
be900e48  00 00 19 10 d8 f7 87 7e d5 b0 12 22 6e 2b ba 97  .......~..."n+..
be900e58  cc fe d2 8b c7 ee 57 4c 7c ee 7b 87 c0 dd 4b 13  ......WL|.{...K.
be900e68  94 11 9f bf f6 55 c1 ee 82 c8 36 a3 36 25 17 32  .....U....6.6%.2
be900e78  5f c7 bd 3c 67 91 4b 8f 81 97 0b 4c 0e 34 87 94  _..<g.K....L.4..
be900e88  ad f9 5c cf 79 81 1a b6 85 72 81 8c 43 4b 09 bf  ..\.y....r..CK..
be900e98  31 7b b2 b4 d3 51 21 ed 02 eb a6 ed cd 69 ea f6  1{...Q!......i..
be900ea8  cd 07 a8 6e 5a 0b 46 59 95 dd 00 01 8d 9a 77 43  ...nZ.FY......wC
be900eb8  73 2a 3c 9b 72 57 e2 60 bc b8 32 30 fe e2 a1 cb  s*<.rW.`..20....
be900ec8  c6 f9 c3 8d 4e 3a 10 2b c2 51 ac 48 91 c3 5b 97  ....N:.+.Q.H..[.
be900ed8  0c 72 bc d6 75 d6 ba 00 00 00 00 00 00 00 00 00  .r..u...........
be900ee8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900ef8  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be900f28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave args1:0xdf

,onLeave args2:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
9a0c4506  43 53 66 62 4d 41 55 63 6d 46 30 43 45 66 72 56  CSfbMAUcmF0CEfrV
9a0c4516  63 32 59 41 41 41 41 41 47 52 44 59 39 34 64 2d  c2YAAAAAGRDY94d-
9a0c4526  31 62 41 53 49 6d 34 72 75 70 66 4d 5f 74 4b 4c  1bASIm4rupfM_tKL
9a0c4536  78 2d 35 58 54 48 7a 75 65 34 66 41 33 55 73 54  x-5XTHzue4fA3UsT
9a0c4546  6c 42 47 66 76 5f 5a 56 77 65 36 43 79 44 61 6a  lBGfv_ZVwe6CyDaj
9a0c4556  4e 69 55 58 4d 6c 5f 48 76 54 78 6e 6b 55 75 50  NiUXMl_HvTxnkUuP
9a0c4566  67 5a 63 4c 54 41 34 30 68 35 53 74 2d 56 7a 50  gZcLTA40h5St-VzP
9a0c4576  65 59 45 61 74 6f 56 79 67 59 78 44 53 77 6d 5f  eYEatoVygYxDSwm_
9a0c4586  4d 58 75 79 74 4e 4e 52 49 65 30 43 36 36 62 74  MXuytNNRIe0C66bt
9a0c4596  7a 57 6e 71 39 73 30 48 71 47 35 61 43 30 5a 5a  zWnq9s0HqG5aC0ZZ
9a0c45a6  6c 64 30 41 41 59 32 61 64 30 4e 7a 4b 6a 79 62  ld0AAY2ad0NzKjyb
9a0c45b6  63 6c 66 69 59 4c 79 34 4d 6a 44 2d 34 71 48 4c  clfiYLy4MjD-4qHL
9a0c45c6  78 76 6e 44 6a 55 34 36 45 43 76 43 55 61 78 49  xvnDjU46ECvCUaxI
9a0c45d6  6b 63 4e 62 6c 77 78 79 76 4e 5a 31 31 72 6f 22  kcNblwxyvNZ11ro"
9a0c45e6  7d 9e a4 f9 3c 9e 14 fa 3c 9e 84 fa 3c 9e f4 fa  }...<...<...<...
9a0c45f6  3c 9e 64 fb 05 03 03 03 03 00 0c 72 00 00 03 72  <.d........r...r

,onLeave args3:0xdf

,onLeave args4:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
be8ffa98  a7 00 00 00 cc dd 04 12 20 e9 24 b4 d0 fa 8f be  ........ .$.....
be8ffaa8  30 31 c3 32 b9 81 34 b6 12 0c e8 8a b1 e5 bc 80  01.2..4.........
be8ffab8  e5 af 8c e8 68 04 90 be 64 04 90 be 60 04 90 be  ....h...d...`...
be8ffac8  00 00 00 00 28 e9 24 b4 03 20 65 63 37 66 37 66  ....(.$.. ec7f7f
be8ffad8  64 30 30 31 62 38 34 33 62 39 39 32 34 36 32 62  d001b843b992462b
be8ffae8  62 30 37 65 30 32 31 35 64 31 9a 03 01 30 a2 06  b07e0215d1...0..
be8ffaf8  07 0a 05 61 62 63 64 65 00 00 00 00 00 00 00 00  ...abcde........
be8ffb08  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb18  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb28  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb38  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb48  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb58  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb68  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb78  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
be8ffb88  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

,onLeave return:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
9a0c45e5  22 7d 9e a4 f9 3c 9e 14 fa 3c 9e 84 fa 3c 9e f4  "}...<...<...<..
9a0c45f5  fa 3c 9e 64 fb 05 03 03 03 03 00 0c 72 00 00 03  .<.d........r...
9a0c4605  72 28 80 00 00 00 00 00 00 00 00 00 00 00 00 00  r(..............
9a0c4615  00 00 00 00 00 00 00 e8 03 00 00 30 00 00 00 00  ...........0....
9a0c4625  00 00 00 9c d0 f5 99 cc d0 f5 99 34 78 ae 99 34  ...........4x..4
9a0c4635  78 ae 99 4c 78 ae 99 04 46 0c 9a 18 79 ae 99 18  x..Lx...F...y...
9a0c4645  79 ae 99 20 79 ae 99 04 46 0c 9a 28 79 ae 99 28  y.. y...F..(y..(
9a0c4655  79 ae 99 30 79 ae 99 04 46 0c 9a 00 00 00 00 00  y..0y...F.......
9a0c4665  00 00 00 00 00 00 00 04 46 0c 9a 00 00 00 00 00  ........F.......
9a0c4675  00 00 00 00 00 00 00 04 46 0c 9a 00 00 00 00 00  ........F.......
9a0c4685  00 00 00 00 00 00 00 04 46 0c 9a 00 00 00 00 00  ........F.......
9a0c4695  00 00 00 00 00 00 00 04 46 0c 9a 00 00 00 00 00  ........F.......
9a0c46a5  00 00 00 00 00 00 00 04 46 0c 9a 20 79 ae 99 20  ........F.. y.. 
9a0c46b5  79 ae 99 28 79 ae 99 04 46 0c 9a 00 00 00 00 00  y..(y...F.......
9a0c46c5  00 00 00 00 00 00 00 04 46 0c 9a 00 00 00 00 00  ........F.......
9a0c46d5  00 00 00 00 00 00 00 04 46 0c 9a 00 da e9 c2 a7  ........F.......


[object Object]
[object Object]
null
null
[object Object]
[object Object]
[object Object]
null
null
[object Object]
null
------------------------
,call libxyz.so!0x12190
,onEnter args0:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7b90  2b ba 97 cc fe d2 8b c7 ee 57 4c 7c ee 7b 87 c0  +........WL|.{..
966f7ba0  dd 4b 13 94 11 9f bf f6 55 c1 ee 82 c8 36 a3 36  .K......U....6.6
966f7bb0  25 17 32 5f c7 bd 3c 67 91 4b 8f 81 97 0b 4c 0e  %.2_..<g.K....L.
966f7bc0  34 87 94 ad f9 5c cf 79 81 1a b6 85 72 81 8c 43  4....\.y....r..C
966f7bd0  4b 09 bf 31 7b b2 b4 d3 51 21 ed 02 eb a6 ed cd  K..1{...Q!......
966f7be0  69 ea f6 cd 07 a8 6e 5a 0b 46 59 95 dd 00 01 8d  i.....nZ.FY.....
966f7bf0  9a 77 43 73 2a 3c 9b 72 57 e2 60 bc b8 32 00 00  .wCs*<.rW.`..2..
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A

,onEnter args1:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7b90  2b ba 97 cc fe d2 8b c7 ee 57 4c 7c ee 7b 87 c0  +........WL|.{..
966f7ba0  dd 4b 13 94 11 9f bf f6 55 c1 ee 82 c8 36 a3 36  .K......U....6.6
966f7bb0  25 17 32 5f c7 bd 3c 67 91 4b 8f 81 97 0b 4c 0e  %.2_..<g.K....L.
966f7bc0  34 87 94 ad f9 5c cf 79 81 1a b6 85 72 81 8c 43  4....\.y....r..C
966f7bd0  4b 09 bf 31 7b b2 b4 d3 51 21 ed 02 eb a6 ed cd  K..1{...Q!......
966f7be0  69 ea f6 cd 07 a8 6e 5a 0b 46 59 95 dd 00 01 8d  i.....nZ.FY.....
966f7bf0  9a 77 43 73 2a 3c 9b 72 57 e2 60 bc b8 32 00 00  .wCs*<.rW.`..2..
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A

,onEnter args2: 0x6e

,onEnter args3: 0x0

,onEnter args4:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A
966f7c90  00 40 32 44 00 00 64 42 00 00 80 3f 00 00 00 00  .@2D..dB...?....
966f7ca0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 3f  ...............?
966f7cb0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7cc0  00 00 80 3f 00 00 00 00 00 00 60 42 00 00 4c 42  ...?......`B..LB
966f7cd0  00 00 00 00 00 00 80 3f 11 00 00 00 68 7c 6f 96  .......?....h|o.
966f7ce0  a0 d3 01 a9 54 7c 6f 96 58 7c 6f 96 02 00 00 00  ....T|o.X|o.....
966f7cf0  00 c0 18 44 00 00 50 42 84 7b 6f 96 84 7c 6f 96  ...D..PB.{o..|o.

,onLeave args0:            0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7b90  68 00 00 00 f0 59 0a 0f 08 87 cc dd 04 12 05 4a  h....Y.........J
966f7ba0  65 6e 6e 79 1a 01 30 12 16 08 b2 9b cc 02 12 0c  enny..0.........
966f7bb0  e8 8a b1 e5 bc 80 e5 af 8c e8 b4 b5 1a 01 30 1a  ..............0.
966f7bc0  06 08 fa ab cf b3 06 20 03 28 01 30 02 92 03 20  ....... .(.0... 
966f7bd0  65 63 37 66 37 66 64 30 30 31 62 38 34 33 62 39  ec7f7fd001b843b9
966f7be0  39 32 34 36 32 62 62 30 37 65 30 32 31 35 64 31  92462bb07e0215d1
966f7bf0  9a 03 01 30 a2 06 07 0a 05 61 62 63 64 65 00 00  ...0.....abcde..
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A

,onLeave args1:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7b90  68 00 00 00 f0 59 0a 0f 08 87 cc dd 04 12 05 4a  h....Y.........J
966f7ba0  65 6e 6e 79 1a 01 30 12 16 08 b2 9b cc 02 12 0c  enny..0.........
966f7bb0  e8 8a b1 e5 bc 80 e5 af 8c e8 b4 b5 1a 01 30 1a  ..............0.
966f7bc0  06 08 fa ab cf b3 06 20 03 28 01 30 02 92 03 20  ....... .(.0... 
966f7bd0  65 63 37 66 37 66 64 30 30 31 62 38 34 33 62 39  ec7f7fd001b843b9
966f7be0  39 32 34 36 32 62 62 30 37 65 30 32 31 35 64 31  92462bb07e0215d1
966f7bf0  9a 03 01 30 a2 06 07 0a 05 61 62 63 64 65 00 00  ...0.....abcde..
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A

,onLeave args2:0x6e

,onLeave args3:0x0

,onLeave args4:           0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  0123456789ABCDEF
966f7c00  2b c2 51 ac 48 91 c3 5b 97 0c 72 bc d6 75 d6 ba  +.Q.H..[..r..u..
966f7c10  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c20  00 00 80 3f 31 00 00 00 00 00 00 00 60 d2 01 a9  ...?1.......`...
966f7c30  88 7b 6f 96 f0 89 2f b4 d0 7b 6f 96 00 00 00 00  .{o.../..{o.....
966f7c40  01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7c50  00 00 00 00 52 93 99 3e 00 00 00 40 00 00 00 00  ....R..>...@....
966f7c60  00 00 5c 42 00 00 00 00 00 00 00 00 00 00 00 00  ..\B............
966f7c70  00 00 60 42 00 00 00 00 00 00 ad 44 00 00 05 43  ..`B.......D...C
966f7c80  00 00 00 00 1c 00 00 00 00 80 19 44 00 00 20 41  ...........D.. A
966f7c90  00 40 32 44 00 00 64 42 00 00 80 3f 00 00 00 00  .@2D..dB...?....
966f7ca0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 3f  ...............?
966f7cb0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................
966f7cc0  00 00 80 3f 00 00 00 00 00 00 60 42 00 00 4c 42  ...?......`B..LB
966f7cd0  00 00 00 00 00 00 80 3f 11 00 00 00 68 7c 6f 96  .......?....h|o.
966f7ce0  a0 d3 01 a9 54 7c 6f 96 58 7c 6f 96 02 00 00 00  ....T|o.X|o.....
966f7cf0  00 c0 18 44 00 00 50 42 84 7b 6f 96 84 7c 6f 96  ...D..PB.{o..|o.

,onLeave return: 0x0

其他的数据都丢弃了,太多了。经过分析发现这两个函数跟解密相关:0xbd840x12190

0x12190函数的返回时的数据内容看到了明文,再根据输入的数据内容继续跟踪,发现了0xbd84 做过一次解密。

#include <iostream>
#include <windows.h>

typedef unsigned int _DWORD;

_DWORD* __fastcall sub_BD84(
    char* result,
    unsigned int outLen,
    char* encodedData,
    unsigned int inLen,
    unsigned int* a5,
    char* a6) {
    char* v6; // r6
    unsigned int* v8; // r7
    unsigned int v10; // r2
    unsigned int i; // r5
    int v12; // r1
    unsigned int v13; // r0
    int v14; // r0
    int v15; // r1
    unsigned int v16; // r8
    int v17; // r0
    char* v18; // [sp+4h] [bp-34h]
    unsigned int j; // [sp+Ch] [bp-2Ch]
    char* v21; // [sp+10h] [bp-28h]
    unsigned int v22; // [sp+14h] [bp-24h]
    unsigned int v23; // [sp+18h] [bp-20h]

    v6 = a6;
    v8 = a5;
    if (inLen) {
        v18 = result;
        v10 = 0;
        result = 0;
        v22 = 0;
        j = 0;
        while (2) {
            i = (unsigned int)result;
            v23 = v10;
            v21 = result;
            while (1) {
                v12 = (unsigned __int8)encodedData[i];
                v13 = ~(((v12 ^ 0x3FA0u) + 1) >> 8) & 0x3F | ~(((v12 ^ 0x3FD2u) + 1) >> 8) & 0x3E | (unsigned __int8)((v12 - 71) & ~((unsigned __int16)(v12 - 97) >> 8) & ~((unsigned __int16)(122 - v12) >> 8)) | (unsigned __int8)((v12 + 4) & ~((unsigned __int16)(v12 - 48) >> 8) & ~((unsigned __int16)(57 - v12) >> 8)) | (unsigned __int8)(~((unsigned __int16)(90 - v12) >> 8) & ~((unsigned __int16)(v12 - 65) >> 8) & (v12 - 65));
                v14 = (unsigned __int8)(((unsigned __int16)((v12 ^ 0xFFBE) + 1) >> 8) & ~((unsigned __int16)-(__int16)v13 >> 8)) | v13;
                if (v14 != 0xFF)
                    break;
                result = (char*)memchr("\n\r ", v12, 4u);
                v15 = 0;
                if (!result)
                    goto LABEL_18;
                if (++i >= inLen) {
                    result = v21;
                    i = (unsigned int)v21 + 1;
                    if (inLen > (unsigned int)v21 + 1)
                        i = inLen;
                LABEL_18:
                    v8 = a5;
                    v6 = a6;
                    v10 = v23;
                    goto LABEL_19;
                }
            }
            v22 = v14 + (v22 << 6);
            if (v23 + 6 < 8) {
                v10 = v23 + 6;
            } else {
                v10 = v23 - 2;
                if (j >= outLen) {
                    //result = (_DWORD*)_errno(outLen, j);
                    v10 = v23 - 2;
                    *result = 34;
                    v15 = 1;
                    goto LABEL_34;
                }
                *((byte*)v18 + j++) = v22 >> v10;
            }
            result = (char*)(i + 1);
            if (i + 1 < inLen)
                continue;
            break;
        }
        ++i;
        v15 = 0;
    LABEL_34:
        v8 = a5;
        v6 = a6;
    LABEL_19:
        v16 = 0;
        if (v10 <= 4) {
            v17 = v22 & ~(-1 << v10);
            result = (char*)(v15 | (v17 != 0));
            if (!result) {
                if (i < inLen) {
                    while (1) {
                        result = (char*)memchr("\n\r ", (unsigned __int8)encodedData[i], 4u);
                        if (!result)
                            break;
                        if (inLen == ++i) {
                            i = inLen;
                            break;
                        }
                    }
                }
                v16 = j;
            }
        }
        if (v6)
            goto LABEL_27;
        if (i != inLen) {
            //result = (_DWORD*)_errno(result, v15);
            *result = 22;
        }
        goto LABEL_28;
    }
    v16 = 0;
    i = 0;
    if (a6) {
    LABEL_27:
        result = &encodedData[i];
    }
LABEL_28:
    if (v8)
        *v8 = v16;
    return 0;
}

int main() {
    char text[] = "xxxxx...xxxxxxx";
	char text2[1024] = { 0 };

	sub_BD84(text2, sizeof(text), text, sizeof(text), 0, 0);
}

实际上就是base64解密,使用的模式是URL SafeA-Za-z0-9-_)。也可以先做一下字符替换再用标准的base64解密,替换规则为:

- +
_ /
末尾视情况主动补下=
unsigned int __fastcall sub_12190(void *a1, int a2, unsigned int a3, unsigned int a4, int a5, int a6, unsigned int *a7)
{
  int v7; // r9
  unsigned int v8; // r0
  unsigned int v9; // r7
  int v10; // r0
  char v11; // r0
  char v12; // r2
  unsigned int result; // r0
  unsigned int v14; // r0
  unsigned int v15; // r2
  unsigned __int64 v17; // [sp+14h] [bp-1E4h]
  int v19; // [sp+20h] [bp-1D8h]
  __int64 v20[2]; // [sp+28h] [bp-1D0h] BYREF
  __int64 v21; // [sp+38h] [bp-1C0h]
  __int64 v22; // [sp+40h] [bp-1B8h]
  __int64 v23; // [sp+48h] [bp-1B0h]
  __int64 v24; // [sp+50h] [bp-1A8h]
  __int64 v25; // [sp+58h] [bp-1A0h]
  unsigned __int64 v26; // [sp+60h] [bp-198h]
  char v27[16]; // [sp+68h] [bp-190h] BYREF
  int v28; // [sp+78h] [bp-180h] BYREF
  int v29; // [sp+7Ch] [bp-17Ch]
  __int128 v30; // [sp+80h] [bp-178h] BYREF
  __int64 v31; // [sp+90h] [bp-168h]
  __int64 v32; // [sp+98h] [bp-160h]
  __int64 v33; // [sp+A0h] [bp-158h]
  __int64 v34; // [sp+A8h] [bp-150h]
  __int64 v35; // [sp+B0h] [bp-148h]
  __int64 v36; // [sp+B8h] [bp-140h]
  _QWORD v37[32]; // [sp+C0h] [bp-138h] BYREF

  v17 = __PAIR64__(a3, a4);
  v7 = 0;
  v8 = *a7;
  HIDWORD(v26) = a7[1];
  v20[0] = 0x3320646E61707865LL;
  v20[1] = 0x6B20657479622D32LL;
  v30 = 0uLL;
  v21 = *(_QWORD *)asc_1A270;
  v22 = unk_1A278;
  v31 = 0LL;
  v32 = 0LL;
  LODWORD(v26) = v8;
  v23 = unk_1A280;
  v24 = unk_1A288;
  v33 = 0LL;
  v34 = 0LL;
  v35 = 0LL;
  v36 = 0LL;
  v25 = 0LL;
  sub_12A50(v20, &v30, &v30);
  v21 = 0LL;
  v22 = 0LL;
  v25 = 0LL;
  v26 = 0LL;
  memset(v20, 0, sizeof(v20));
  v23 = 0LL;
  v24 = 0LL;
  *(_QWORD *)((char *)&v37[2] + 4) = 0LL;
  *(_QWORD *)((char *)&v37[3] + 4) = 0LL;
  HIDWORD(v37[4]) = 0;
  v37[5] = v31;
  v37[6] = v32;
  v37[7] = 0LL;
  v33 = 0LL;
  v34 = 0LL;
  v35 = 0LL;
  v36 = 0LL;
  v31 = 0LL;
  v32 = 0LL;
  LODWORD(v37[0]) = v30 & 0x3FFFFFF;
  HIDWORD(v37[0]) = (*(_DWORD *)((char *)&v30 + 3) >> 2) & 0x3FFFF03;
  v9 = HIDWORD(v30);
  LODWORD(v37[1]) = (*(_DWORD *)((char *)&v30 + 6) >> 4) & 0x3FFC0FF;
  v10 = (*(_DWORD *)((char *)&v30 + 9) >> 6) & 0x3F03FFF;
  v30 = 0uLL;
  LOBYTE(v37[10]) = 0;
  HIDWORD(v37[1]) = v10;
  LODWORD(v37[2]) = (v9 >> 8) & 0xFFFFF;
  sub_124E0(v37, a6, 8, 0);
  v28 = 8;
  v29 = 0;
  sub_124E0(v37, &v28, 8, 0);
  sub_124E0(v37, a2, HIDWORD(v17), v17);
  v28 = HIDWORD(v17);
  v29 = v17;
  sub_124E0(v37, &v28, 8, 0);
  sub_12634(v37, v27);
  memset(v37, 0, sizeof(v37));
  LODWORD(v20[0]) = v27;
  v19 = 0;
  do
  {
    v11 = *(_BYTE *)(LODWORD(v20[0]) + v7);
    v12 = *(_BYTE *)(a5 + v7++);
    v19 |= (unsigned __int8)(v12 ^ v11);
  }
  while ( v7 != 16 );
  memset(v27, 0, sizeof(v27));
  result = (((unsigned int)(v19 - 1) >> 8) & 1) - 1;
  if ( a1 )
  {
    if ( (((unsigned int)(v19 - 1) >> 8) & 1) == 1 )
    {
      if ( v17 )
      {
        v21 = *(_QWORD *)asc_1A270;
        v22 = unk_1A278;
        v23 = unk_1A280;
        v24 = unk_1A288;
        qmemcpy(v20, "expand 32-byte k", sizeof(v20));
        v14 = *a7;
        v15 = a7[1];
        v25 = 1LL;
        v26 = __PAIR64__(v15, v14);
        sub_12A50(v20, a2, a1);
        memset(v20, 0, sizeof(v20));
        v21 = 0LL;
        v22 = 0LL;
        v25 = 0LL;
        v26 = 0LL;
        v23 = 0LL;
        v24 = 0LL;
      }
      return 0;
    }
    else
    {
      memset(a1, 0, HIDWORD(v17));
      return -1;
    }
  }
  return result;
}

这里面看到了字符串expand 32-byte k,大概了解是跟ChaCha20算法相关的,这个后面去分析下。

没有详细看了,综合下来,解密规则是:使用URL Safe的base64解码,有时直接解密出明文,有时需要进行ChaCha20解密。

文档信息

Search

    Table of Contents