Falanqaynta Forensic ee kaydinta HiSuite

Falanqaynta Forensic ee kaydinta HiSuite

Soo saarista xogta aaladaha Android ayaa noqonaysa mid aad u adag maalin kasta - mararka qaarkood xitaa aad u adagmarka loo eego iPhone. Igor Mikhailov, oo ku takhasusay kooxda-IB Computer Forensics Laboratory, kuu sheegayaa waxa aad samaynayso haddii aadan ka soo saari karin xogta casriga ah Android adiga oo isticmaalaya hababka caadiga ah.

Dhowr sano ka hor, asxaabteyda iyo aniga waxaan ka wada hadalnay isbeddelada horumarinta hababka amniga ee aaladaha Android waxaana gaadhnay gabagabada in waqtiga uu iman doono markii baaritaankooda dambiilaha uu ka adkaan doono aaladaha iOS. Maantana waxaynu si kalsooni leh u odhan karnaa wakhtigani waa yimid.

Waxaan dhawaan dib u eegay Huawei Honor 20 Pro. Maxaad u maleyneysaa inaan ku guuleysanay inaan ka soo saarno kaydkeeda la helay iyadoo la adeegsanayo utility ADB? Waxba! Qalabka waxaa ka buuxa xog: macluumaadka wac, buugga taleefoonka, SMS, fariimaha degdega ah, iimaylka, faylasha warbaahinta badan, iwm. Taasna midna kama heli kartid. Dareen xun!

Maxaa la sameeyaa marka ay xaaladdu sidaas tahay? Xalka wanaagsani waa in la isticmaalo agabka kaydinta lahaanshaha (Mi PC Suite ee taleefannada casriga ah ee Xiaomi, Samsung Smart Switch for Samsung, HiSuite for Huawei).

Maqaalkan waxaan ku eegi doonaa abuurista iyo soo saarista xogta taleefannada casriga ah ee Huawei iyadoo la adeegsanayo utility HiSuite iyo falanqayntooda xigta iyadoo la adeegsanayo Xarunta Caddaynta Belkasoft.

Waa maxay noocyada xogta ku jira kaydinta HiSuite?

Noocyada soo socda ee xogta ayaa lagu daray kaydinta HiSuite:

  • xogta ku saabsan akoonnada iyo furaha sirta ah (ama calaamadaha)
  • faahfaahinta xiriirka
  • caqabadaha
  • SMS iyo fariimaha MMS
  • e-mail
  • multimedia files
  • Database
  • dukumentiyo
  • kaydadka
  • faylasha codsiga (faylal leh kordhin.odex, .so, .apk)
  • macluumaadka laga helo codsiyada (sida Facebook, Google Drive, Google Photos, Google Mails, Google Maps, Instagram, WhatsApp, YouTube, iwm.)

Aynu si faahfaahsan u eegno sida kaydka noocan ah loo sameeyo iyo sida loo falanqeeyo iyada oo la adeegsanayo Xarunta Caddaynta ee Belkasoft.

Kobcinta taleefanka casriga ah ee Huawei iyadoo la isticmaalayo utility HiSuite

Si aad u abuurto koobi kayd ah oo leh utility gaar ah, waxaad u baahan tahay inaad ka soo dejiso shabakada Huawei oo rakib.

HiSuite soo dejiso bogga shabakadda Huawei:

Falanqaynta Forensic ee kaydinta HiSuite
Si qalabka loogu xidho kombuyuutar, qaabka HDB (Huawei Debug Bridge) ayaa la isticmaalaa. Waxaa jira tilmaamo faahfaahsan oo ku yaal bogga Huawei ama barnaamijka HiSuite laftiisa oo ku saabsan sida loo kiciyo habka HDB ee qalabkaaga gacanta. Ka dib marka aad dhaqaajiso qaabka HDB, ku billow arjiga HiSuite qalabkaaga gacanta oo geli koodka lagu soo bandhigay arjigan daaqada barnaamijka HiSuite ee ku shaqeeya kombayutarkaga.

Daaqadda gelitaanka koodka ee nooca desktop-ka ee HiSuite:

Falanqaynta Forensic ee kaydinta HiSuite
Inta lagu jiro habka kaydinta, waxaa lagu weydiin doonaa inaad geliso erayga sirta ah, kaas oo loo isticmaali doono in lagu ilaaliyo xogta laga soo saaro xusuusta qalabka. Nuqulka kaydka ah ee la abuuray waxa uu ku yaal jidka agtiisa C:/Isticmalayaasha/% Profile User%/Documents/HiSuite/backup/.

Huawei Honor 20 Pro kaabta casriga ah:

Falanqaynta Forensic ee kaydinta HiSuite

Falanqaynta kaydinta HiSuite iyadoo la isticmaalayo Xarunta Caddaynta Belkasoft

Si loo falanqeeyo natiijada kaabta iyadoo la isticmaalayo Xarunta Caddaynta ee Belkasoft abuur ganacsi cusub. Kadib dooro ilaha xogta Sawirka Mobilka. In menu furmo, sheeg jidka loo maro tusaha halkaas oo kaabta casriga ah ku yaalaan oo dooro faylka xog.xml.

Cadaynta dariiqa kaydinta:

Falanqaynta Forensic ee kaydinta HiSuite
Daaqadda soo socota, barnaamijku wuxuu kuu soo jeedin doonaa inaad doorato noocyada farshaxan ee aad u baahan tahay inaad hesho. Ka dib markaad bilowdo iskaanka, tag tab Task Manager oo guji badhanka Habee hawsha, sababtoo ah barnaamijku wuxuu rajaynayaa erayga sirta ah si uu u furto kaydka sir ah.

button Habee hawsha:

Falanqaynta Forensic ee kaydinta HiSuite
Ka dib markii ay furto kaydka, Xarunta Caddaynta Belkasoft waxay ku waydiin doontaa inaad dib u qeexdo noocyada farshaxanimada ee u baahan in la soo saaro. Ka dib marka la dhammeeyo falanqaynta, macluumaadka ku saabsan agabyada la soo saaray ayaa laga eegi karaa tabsyada Kiis Explorer ΠΈ Guudmarka .

Natiijooyinka falanqaynta ee Huawei Honor 20 Pro:

Falanqaynta Forensic ee kaydinta HiSuite

Falanqaynta kaydka HiSuite iyadoo la adeegsanayo barnaamijka Khabiirka Forensic-ka ee Mobilka

Barnaamij kale oo dambi baaris ah oo loo isticmaali karo in xogta laga soo saaro kaydka HiSuite waa "Khubarada Forensic-ka Mobilka".

Si loo habeeyo xogta lagu kaydiyay kaydka HiSuite, dhagsii ikhtiyaarka Soo dejinta kaydka daaqada barnaamijka ugu weyn.

Jajabka daaqadda ugu weyn ee barnaamijka "Khubarada Forensic-ka Mobile-ka":

Falanqaynta Forensic ee kaydinta HiSuite
Ama qaybta Soo dejiso dooro nooca xogta la soo dejinayo Kaabta Huawei:

Falanqaynta Forensic ee kaydinta HiSuite
Daaqadda furmo, sheeg jidka loo maro faylka xog.xml. Markaad bilowdo nidaamka soo saarista, daaqad ayaa soo bixi doonta kaas oo lagu weydiin doono inaad geliso erayga sirta ah ee la yaqaan si aad u furto kaydka HiSuite, ama isticmaal aaladda Passware si aad isku daydo inaad qiyaasto erayga sirta ah haddii aan la garanayn:

Falanqaynta Forensic ee kaydinta HiSuite
Natiijada falanqaynta nuqul ka mid ah nuqul ka mid ah waxay noqon doontaa daaqada barnaamijka "Mobil Forensic Expert", kaas oo muujinaya noocyada artifacts soo saaray: wicitaanada, xiriirada, fariimaha, files, feed dhacdo, xogta codsiga. U fiirso xaddiga xogta laga soo saaray codsiyada kala duwan ee barnaamijkan dambi-baarista. Way weyn tahay uun!

Liiska noocyada xogta laga soo saaray kaydinta HiSuite ee barnaamijka Khabiirka Forensic-ka ee Mobilka:

Falanqaynta Forensic ee kaydinta HiSuite

Dejinta kaydinta HiSuite

Maxaa la sameeyaa haddii aadan haysan barnaamijyadan cajiibka ah? Xaaladdan oo kale, qoraal Python ah oo uu sameeyay oo uu hayo Francesco Picasso, oo ah shaqaale ka tirsan Nidaamka Nidaamka Nidaamka Xaqiiqda, ayaa ku caawin doona. Waxaad ka heli kartaa qoraalkan at GitHub, oo tilmaantiisa faahfaahsan ayaa ku jirta maqaal "Huawei Backup decryptor."

Kaydka HiSuite ee la furay ka dib waa la soo dejin karaa oo la falanqeyn karaa iyada oo la adeegsanayo agabka caaddiga ah (tusaale. Joojinta) ama gacanta.

natiijooyinka

Sidaa darteed, adoo isticmaalaya utility backup HiSuite, waxaad ka soo saari kartaa xog aad u badan oo ka socota taleefannada casriga ah ee Huawei marka loo eego marka xogta laga soo saaro isla qalabyada adoo isticmaalaya utility ADB. In kasta oo tirada badan ee adeegyada lagu shaqeeyo moobilka, Xarunta Caddaynta ee Belkasoft iyo Khabiirka Forensic Mobilka ayaa ka mid ah dhowrka barnaamij ee dambi baarista ee taageera soo saarista iyo falanqaynta kaydinta HiSuite.

Ilaha

  1. Taleefannada Android-ka ayaa la jabsaday si ka adag iPhones-ka marka loo eego Baaraha
  2. Huawei Hi-Suite
  3. Xarunta Caddaynta ee Belkasoft
  4. Khabiirka Forensic Mobile
  5. Kobackupdec
  6. Qalabka kaydiyaha Huawei
  7. Joojinta

Source: www.habr.com

Add a comment