1.Setup Proxifier
-
Profiles - Proxy Servers -Add:
-
Address: 127.0.0.1
-
Port: $PORT
-
Protocol: HTTPS
-
-
Proxification Rules - Add:
-
Name: $CUSTOM
-
Applications: every WeChatApp.exe、every WeChatAppEx.exe
-
Action: Proxy HTTPS 127.0.0.1
-
-
Enable $CUSTOM and set Localhost as Direct
2.Setup Burp Suite
-
Proxy - Options -Proxy Listenners:
-
Bind to port: $PORT
-
Bind to adderss: Loopback only
-
3.Open mini program
4.Burp Suite - Proxy - Intercept - Intercept is on
- Choose the court and time drop-down list respectively
- Fill your token captured in the above steps
- Don't change the numbers if not necessary
- Click the button SURPRISE ME and wait for the result.
path of WeChatApp.exe:
C:\Users\$USERNAME\AppData\Roaming\Tencent\WeChat\XPlugin\Plugins\XWeb\$RANDOM_NUMBER\extracted\wechatapp.exe
- Note: find all WeChatApp.exe in every
$RANDOM_NUMBER
folder.
path of WeChatAppEx.exe:
C:\Users\$USERNAME\AppData\Roaming\Tencent\WeChat\XPlugin\Plugins\WMPFRuntime\$RANDOM_NUMBER\extracted\runtime\WeChatAppEx.exe
- Note: find all WeChatAppEx.exe in every
$RANDOM_NUMBER
folder.