HDKeyDerivation.smali

.class public final Lorg/bitcoinj/crypto/HDKeyDerivation;
.super Ljava/lang/Object;
.source "HDKeyDerivation.java"


# static fields
.field public static final MAX_CHILD_DERIVATION_ATTEMPTS:I = 0x64

.field private static final RAND_INT:Ljava/math/BigInteger;


# direct methods
.method static constructor <clinit>()V
    .registers 3

    .prologue
    .line 37
    invoke-static {}, Lorg/bitcoinj/core/Utils;->isAndroidRuntime()Z

    move-result v0

    if-eqz v0, :cond_b

    .line 38
    new-instance v0, Lorg/bitcoinj/crypto/LinuxSecureRandom;

    invoke-direct {v0}, Lorg/bitcoinj/crypto/LinuxSecureRandom;-><init>()V

    .line 40
    :cond_b
    new-instance v0, Ljava/math/BigInteger;

    const/16 v1, 0x100

    new-instance v2, Ljava/security/SecureRandom;

    invoke-direct {v2}, Ljava/security/SecureRandom;-><init>()V

    invoke-direct {v0, v1, v2}, Ljava/math/BigInteger;-><init>(ILjava/util/Random;)V

    sput-object v0, Lorg/bitcoinj/crypto/HDKeyDerivation;->RAND_INT:Ljava/math/BigInteger;

    .line 41
    return-void
.end method

.method private constructor <init>()V
    .registers 1

    .prologue
    .line 46
    invoke-direct {p0}, Ljava/lang/Object;-><init>()V

    return-void
.end method

.method private static assertLessThanN(Ljava/math/BigInteger;Ljava/lang/String;)V
    .registers 3

    .prologue
    .line 226
    sget-object v0, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    invoke-virtual {v0}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getN()Ljava/math/BigInteger;

    move-result-object v0

    invoke-virtual {p0, v0}, Ljava/math/BigInteger;->compareTo(Ljava/math/BigInteger;)I

    move-result v0

    if-lez v0, :cond_12

    .line 227
    new-instance v0, Lorg/bitcoinj/crypto/HDDerivationException;

    invoke-direct {v0, p1}, Lorg/bitcoinj/crypto/HDDerivationException;-><init>(Ljava/lang/String;)V

    throw v0

    .line 228
    :cond_12
    return-void
.end method

.method private static assertNonInfinity(Lorg/spongycastle/math/ec/ECPoint;Ljava/lang/String;)V
    .registers 3

    .prologue
    .line 221
    sget-object v0, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    invoke-virtual {v0}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getCurve()Lorg/spongycastle/math/ec/ECCurve;

    move-result-object v0

    invoke-virtual {v0}, Lorg/spongycastle/math/ec/ECCurve;->getInfinity()Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    invoke-virtual {p0, v0}, Lorg/spongycastle/math/ec/ECPoint;->equals(Lorg/spongycastle/math/ec/ECPoint;)Z

    move-result v0

    if-eqz v0, :cond_16

    .line 222
    new-instance v0, Lorg/bitcoinj/crypto/HDDerivationException;

    invoke-direct {v0, p1}, Lorg/bitcoinj/crypto/HDDerivationException;-><init>(Ljava/lang/String;)V

    throw v0

    .line 223
    :cond_16
    return-void
.end method

.method private static assertNonZero(Ljava/math/BigInteger;Ljava/lang/String;)V
    .registers 3

    .prologue
    .line 216
    sget-object v0, Ljava/math/BigInteger;->ZERO:Ljava/math/BigInteger;

    invoke-virtual {p0, v0}, Ljava/math/BigInteger;->equals(Ljava/lang/Object;)Z

    move-result v0

    if-eqz v0, :cond_e

    .line 217
    new-instance v0, Lorg/bitcoinj/crypto/HDDerivationException;

    invoke-direct {v0, p1}, Lorg/bitcoinj/crypto/HDDerivationException;-><init>(Ljava/lang/String;)V

    throw v0

    .line 218
    :cond_e
    return-void
.end method

.method public static createMasterPrivKeyFromBytes([B[B)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 6

    .prologue
    .line 85
    new-instance v0, Ljava/math/BigInteger;

    const/4 v1, 0x1

    invoke-direct {v0, v1, p0}, Ljava/math/BigInteger;-><init>(I[B)V

    .line 86
    const-string v1, "Generated master key is invalid."

    invoke-static {v0, v1}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertNonZero(Ljava/math/BigInteger;Ljava/lang/String;)V

    .line 87
    const-string v1, "Generated master key is invalid."

    invoke-static {v0, v1}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertLessThanN(Ljava/math/BigInteger;Ljava/lang/String;)V

    .line 88
    new-instance v1, Lorg/bitcoinj/crypto/DeterministicKey;

    invoke-static {}, Lcom/google/common/collect/ImmutableList;->of()Lcom/google/common/collect/ImmutableList;

    move-result-object v2

    const/4 v3, 0x0

    invoke-direct {v1, v2, p1, v0, v3}, Lorg/bitcoinj/crypto/DeterministicKey;-><init>(Lcom/google/common/collect/ImmutableList;[BLjava/math/BigInteger;Lorg/bitcoinj/crypto/DeterministicKey;)V

    return-object v1
.end method

.method public static createMasterPrivateKey([B)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 7

    .prologue
    const/16 v5, 0x40

    const/16 v4, 0x20

    const/4 v1, 0x1

    const/4 v2, 0x0

    .line 64
    array-length v0, p0

    const/16 v3, 0x8

    if-le v0, v3, :cond_47

    move v0, v1

    :goto_c
    const-string v3, "Seed is too short and could be brute forced"

    invoke-static {v0, v3}, Lcom/google/common/base/n;->checkArgument(ZLjava/lang/Object;)V

    .line 66
    const-string v0, "Bitcoin seed"

    invoke-virtual {v0}, Ljava/lang/String;->getBytes()[B

    move-result-object v0

    invoke-static {v0}, Lorg/bitcoinj/crypto/HDUtils;->createHmacSha512Digest([B)Lorg/spongycastle/crypto/macs/HMac;

    move-result-object v0

    invoke-static {v0, p0}, Lorg/bitcoinj/crypto/HDUtils;->hmacSha512(Lorg/spongycastle/crypto/macs/HMac;[B)[B

    move-result-object v0

    .line 69
    array-length v3, v0

    if-ne v3, v5, :cond_49

    :goto_22
    array-length v3, v0

    invoke-static {v3}, Ljava/lang/Integer;->valueOf(I)Ljava/lang/Integer;

    move-result-object v3

    invoke-static {v1, v3}, Lcom/google/common/base/n;->checkState(ZLjava/lang/Object;)V

    .line 70
    invoke-static {v0, v2, v4}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v1

    .line 71
    invoke-static {v0, v4, v5}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v3

    .line 72
    invoke-static {v0, v2}, Ljava/util/Arrays;->fill([BB)V

    .line 73
    invoke-static {v1, v3}, Lorg/bitcoinj/crypto/HDKeyDerivation;->createMasterPrivKeyFromBytes([B[B)Lorg/bitcoinj/crypto/DeterministicKey;

    move-result-object v0

    .line 74
    invoke-static {v1, v2}, Ljava/util/Arrays;->fill([BB)V

    .line 75
    invoke-static {v3, v2}, Ljava/util/Arrays;->fill([BB)V

    .line 77
    invoke-static {}, Lorg/bitcoinj/core/Utils;->currentTimeSeconds()J

    move-result-wide v2

    invoke-virtual {v0, v2, v3}, Lorg/bitcoinj/crypto/DeterministicKey;->setCreationTimeSeconds(J)V

    .line 78
    return-object v0

    :cond_47
    move v0, v2

    .line 64
    goto :goto_c

    :cond_49
    move v1, v2

    .line 69
    goto :goto_22
.end method

.method public static createMasterPubKeyFromBytes([B[B)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 8

    .prologue
    const/4 v4, 0x0

    .line 92
    new-instance v0, Lorg/bitcoinj/crypto/DeterministicKey;

    invoke-static {}, Lcom/google/common/collect/ImmutableList;->of()Lcom/google/common/collect/ImmutableList;

    move-result-object v1

    new-instance v3, Lorg/bitcoinj/crypto/LazyECPoint;

    sget-object v2, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    invoke-virtual {v2}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getCurve()Lorg/spongycastle/math/ec/ECCurve;

    move-result-object v2

    invoke-direct {v3, v2, p0}, Lorg/bitcoinj/crypto/LazyECPoint;-><init>(Lorg/spongycastle/math/ec/ECCurve;[B)V

    move-object v2, p1

    move-object v5, v4

    invoke-direct/range {v0 .. v5}, Lorg/bitcoinj/crypto/DeterministicKey;-><init>(Lcom/google/common/collect/ImmutableList;[BLorg/bitcoinj/crypto/LazyECPoint;Ljava/math/BigInteger;Lorg/bitcoinj/crypto/DeterministicKey;)V

    return-object v0
.end method

.method public static deriveChildKey(Lorg/bitcoinj/crypto/DeterministicKey;I)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 3

    .prologue
    .line 104
    new-instance v0, Lorg/bitcoinj/crypto/ChildNumber;

    invoke-direct {v0, p1}, Lorg/bitcoinj/crypto/ChildNumber;-><init>(I)V

    invoke-static {p0, v0}, Lorg/bitcoinj/crypto/HDKeyDerivation;->deriveChildKey(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;)Lorg/bitcoinj/crypto/DeterministicKey;

    move-result-object v0

    return-object v0
.end method

.method public static deriveChildKey(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 8

    .prologue
    .line 131
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->hasPrivKey()Z

    move-result v0

    if-nez v0, :cond_2b

    .line 132
    sget-object v0, Lorg/bitcoinj/crypto/HDKeyDerivation$PublicDeriveMode;->NORMAL:Lorg/bitcoinj/crypto/HDKeyDerivation$PublicDeriveMode;

    invoke-static {p0, p1, v0}, Lorg/bitcoinj/crypto/HDKeyDerivation;->deriveChildKeyBytesFromPublic(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;Lorg/bitcoinj/crypto/HDKeyDerivation$PublicDeriveMode;)Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;

    move-result-object v4

    .line 133
    new-instance v0, Lorg/bitcoinj/crypto/DeterministicKey;

    .line 134
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPath()Lcom/google/common/collect/ImmutableList;

    move-result-object v1

    invoke-static {v1, p1}, Lorg/bitcoinj/crypto/HDUtils;->append(Ljava/util/List;Lorg/bitcoinj/crypto/ChildNumber;)Lcom/google/common/collect/ImmutableList;

    move-result-object v1

    iget-object v2, v4, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;->chainCode:[B

    new-instance v3, Lorg/bitcoinj/crypto/LazyECPoint;

    sget-object v5, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    .line 136
    invoke-virtual {v5}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getCurve()Lorg/spongycastle/math/ec/ECCurve;

    move-result-object v5

    iget-object v4, v4, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;->keyBytes:[B

    invoke-direct {v3, v5, v4}, Lorg/bitcoinj/crypto/LazyECPoint;-><init>(Lorg/spongycastle/math/ec/ECCurve;[B)V

    const/4 v4, 0x0

    move-object v5, p0

    invoke-direct/range {v0 .. v5}, Lorg/bitcoinj/crypto/DeterministicKey;-><init>(Lcom/google/common/collect/ImmutableList;[BLorg/bitcoinj/crypto/LazyECPoint;Ljava/math/BigInteger;Lorg/bitcoinj/crypto/DeterministicKey;)V

    .line 141
    :goto_2a
    return-object v0

    .line 140
    :cond_2b
    invoke-static {p0, p1}, Lorg/bitcoinj/crypto/HDKeyDerivation;->deriveChildKeyBytesFromPrivate(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;)Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;

    move-result-object v1

    .line 141
    new-instance v0, Lorg/bitcoinj/crypto/DeterministicKey;

    .line 142
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPath()Lcom/google/common/collect/ImmutableList;

    move-result-object v2

    invoke-static {v2, p1}, Lorg/bitcoinj/crypto/HDUtils;->append(Ljava/util/List;Lorg/bitcoinj/crypto/ChildNumber;)Lcom/google/common/collect/ImmutableList;

    move-result-object v2

    iget-object v3, v1, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;->chainCode:[B

    new-instance v4, Ljava/math/BigInteger;

    const/4 v5, 0x1

    iget-object v1, v1, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;->keyBytes:[B

    invoke-direct {v4, v5, v1}, Ljava/math/BigInteger;-><init>(I[B)V

    invoke-direct {v0, v2, v3, v4, p0}, Lorg/bitcoinj/crypto/DeterministicKey;-><init>(Lcom/google/common/collect/ImmutableList;[BLjava/math/BigInteger;Lorg/bitcoinj/crypto/DeterministicKey;)V

    goto :goto_2a
.end method

.method public static deriveChildKeyBytesFromPrivate(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;)Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;
    .registers 10

    .prologue
    const/16 v7, 0x40

    const/16 v6, 0x20

    const/4 v2, 0x0

    const/4 v1, 0x1

    .line 151
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->hasPrivKey()Z

    move-result v0

    const-string v3, "Parent key must have private key bytes for this method."

    invoke-static {v0, v3}, Lcom/google/common/base/n;->checkArgument(ZLjava/lang/Object;)V

    .line 152
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPubKeyPoint()Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    invoke-virtual {v0, v1}, Lorg/spongycastle/math/ec/ECPoint;->getEncoded(Z)[B

    move-result-object v3

    .line 153
    array-length v0, v3

    const/16 v4, 0x21

    if-ne v0, v4, :cond_95

    move v0, v1

    :goto_1d
    new-instance v4, Ljava/lang/StringBuilder;

    const-string v5, "Parent pubkey must be 33 bytes, but is "

    invoke-direct {v4, v5}, Ljava/lang/StringBuilder;-><init>(Ljava/lang/String;)V

    array-length v5, v3

    invoke-virtual {v4, v5}, Ljava/lang/StringBuilder;->append(I)Ljava/lang/StringBuilder;

    move-result-object v4

    invoke-virtual {v4}, Ljava/lang/StringBuilder;->toString()Ljava/lang/String;

    move-result-object v4

    invoke-static {v0, v4}, Lcom/google/common/base/n;->checkState(ZLjava/lang/Object;)V

    .line 154
    const/16 v0, 0x25

    invoke-static {v0}, Ljava/nio/ByteBuffer;->allocate(I)Ljava/nio/ByteBuffer;

    move-result-object v0

    .line 155
    invoke-virtual {p1}, Lorg/bitcoinj/crypto/ChildNumber;->isHardened()Z

    move-result v4

    if-eqz v4, :cond_97

    .line 156
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPrivKeyBytes33()[B

    move-result-object v3

    invoke-virtual {v0, v3}, Ljava/nio/ByteBuffer;->put([B)Ljava/nio/ByteBuffer;

    .line 160
    :goto_43
    invoke-virtual {p1}, Lorg/bitcoinj/crypto/ChildNumber;->i()I

    move-result v3

    invoke-virtual {v0, v3}, Ljava/nio/ByteBuffer;->putInt(I)Ljava/nio/ByteBuffer;

    .line 161
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getChainCode()[B

    move-result-object v3

    invoke-virtual {v0}, Ljava/nio/ByteBuffer;->array()[B

    move-result-object v0

    invoke-static {v3, v0}, Lorg/bitcoinj/crypto/HDUtils;->hmacSha512([B[B)[B

    move-result-object v3

    .line 162
    array-length v0, v3

    if-ne v0, v7, :cond_9b

    move v0, v1

    :goto_5a
    array-length v4, v3

    invoke-static {v4}, Ljava/lang/Integer;->valueOf(I)Ljava/lang/Integer;

    move-result-object v4

    invoke-static {v0, v4}, Lcom/google/common/base/n;->checkState(ZLjava/lang/Object;)V

    .line 163
    invoke-static {v3, v2, v6}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v0

    .line 164
    invoke-static {v3, v6, v7}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v2

    .line 165
    new-instance v3, Ljava/math/BigInteger;

    invoke-direct {v3, v1, v0}, Ljava/math/BigInteger;-><init>(I[B)V

    .line 166
    const-string v0, "Illegal derived key: I_L >= n"

    invoke-static {v3, v0}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertLessThanN(Ljava/math/BigInteger;Ljava/lang/String;)V

    .line 167
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPrivKey()Ljava/math/BigInteger;

    move-result-object v0

    .line 168
    invoke-virtual {v0, v3}, Ljava/math/BigInteger;->add(Ljava/math/BigInteger;)Ljava/math/BigInteger;

    move-result-object v0

    sget-object v1, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    invoke-virtual {v1}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getN()Ljava/math/BigInteger;

    move-result-object v1

    invoke-virtual {v0, v1}, Ljava/math/BigInteger;->mod(Ljava/math/BigInteger;)Ljava/math/BigInteger;

    move-result-object v0

    .line 169
    const-string v1, "Illegal derived key: derived private key equals 0."

    invoke-static {v0, v1}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertNonZero(Ljava/math/BigInteger;Ljava/lang/String;)V

    .line 170
    new-instance v1, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;

    invoke-virtual {v0}, Ljava/math/BigInteger;->toByteArray()[B

    move-result-object v0

    invoke-direct {v1, v0, v2}, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;-><init>([B[B)V

    return-object v1

    :cond_95
    move v0, v2

    .line 153
    goto :goto_1d

    .line 158
    :cond_97
    invoke-virtual {v0, v3}, Ljava/nio/ByteBuffer;->put([B)Ljava/nio/ByteBuffer;

    goto :goto_43

    :cond_9b
    move v0, v2

    .line 162
    goto :goto_5a
.end method

.method public static deriveChildKeyBytesFromPublic(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;Lorg/bitcoinj/crypto/HDKeyDerivation$PublicDeriveMode;)Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;
    .registers 11

    .prologue
    const/16 v7, 0x40

    const/16 v6, 0x20

    const/4 v2, 0x0

    const/4 v1, 0x1

    .line 179
    invoke-virtual {p1}, Lorg/bitcoinj/crypto/ChildNumber;->isHardened()Z

    move-result v0

    if-nez v0, :cond_84

    move v0, v1

    :goto_d
    const-string v3, "Can\'t use private derivation with public keys only."

    invoke-static {v0, v3}, Lcom/google/common/base/n;->checkArgument(ZLjava/lang/Object;)V

    .line 180
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPubKeyPoint()Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    invoke-virtual {v0, v1}, Lorg/spongycastle/math/ec/ECPoint;->getEncoded(Z)[B

    move-result-object v3

    .line 181
    array-length v0, v3

    const/16 v4, 0x21

    if-ne v0, v4, :cond_86

    move v0, v1

    :goto_20
    new-instance v4, Ljava/lang/StringBuilder;

    const-string v5, "Parent pubkey must be 33 bytes, but is "

    invoke-direct {v4, v5}, Ljava/lang/StringBuilder;-><init>(Ljava/lang/String;)V

    array-length v5, v3

    invoke-virtual {v4, v5}, Ljava/lang/StringBuilder;->append(I)Ljava/lang/StringBuilder;

    move-result-object v4

    invoke-virtual {v4}, Ljava/lang/StringBuilder;->toString()Ljava/lang/String;

    move-result-object v4

    invoke-static {v0, v4}, Lcom/google/common/base/n;->checkState(ZLjava/lang/Object;)V

    .line 182
    const/16 v0, 0x25

    invoke-static {v0}, Ljava/nio/ByteBuffer;->allocate(I)Ljava/nio/ByteBuffer;

    move-result-object v0

    .line 183
    invoke-virtual {v0, v3}, Ljava/nio/ByteBuffer;->put([B)Ljava/nio/ByteBuffer;

    .line 184
    invoke-virtual {p1}, Lorg/bitcoinj/crypto/ChildNumber;->i()I

    move-result v3

    invoke-virtual {v0, v3}, Ljava/nio/ByteBuffer;->putInt(I)Ljava/nio/ByteBuffer;

    .line 185
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getChainCode()[B

    move-result-object v3

    invoke-virtual {v0}, Ljava/nio/ByteBuffer;->array()[B

    move-result-object v0

    invoke-static {v3, v0}, Lorg/bitcoinj/crypto/HDUtils;->hmacSha512([B[B)[B

    move-result-object v3

    .line 186
    array-length v0, v3

    if-ne v0, v7, :cond_88

    move v0, v1

    :goto_53
    array-length v4, v3

    invoke-static {v4}, Ljava/lang/Integer;->valueOf(I)Ljava/lang/Integer;

    move-result-object v4

    invoke-static {v0, v4}, Lcom/google/common/base/n;->checkState(ZLjava/lang/Object;)V

    .line 187
    invoke-static {v3, v2, v6}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v0

    .line 188
    invoke-static {v3, v6, v7}, Ljava/util/Arrays;->copyOfRange([BII)[B

    move-result-object v2

    .line 189
    new-instance v3, Ljava/math/BigInteger;

    invoke-direct {v3, v1, v0}, Ljava/math/BigInteger;-><init>(I[B)V

    .line 190
    const-string v0, "Illegal derived key: I_L >= n"

    invoke-static {v3, v0}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertLessThanN(Ljava/math/BigInteger;Ljava/lang/String;)V

    .line 192
    sget-object v0, Lorg/bitcoinj/core/ECKey;->CURVE:Lorg/spongycastle/crypto/params/ECDomainParameters;

    invoke-virtual {v0}, Lorg/spongycastle/crypto/params/ECDomainParameters;->getN()Ljava/math/BigInteger;

    move-result-object v0

    .line 194
    sget-object v4, Lorg/bitcoinj/crypto/HDKeyDerivation$1;->$SwitchMap$org$bitcoinj$crypto$HDKeyDerivation$PublicDeriveMode:[I

    invoke-virtual {p2}, Lorg/bitcoinj/crypto/HDKeyDerivation$PublicDeriveMode;->ordinal()I

    move-result v5

    aget v4, v4, v5

    packed-switch v4, :pswitch_data_ce

    .line 208
    new-instance v0, Ljava/lang/AssertionError;

    invoke-direct {v0}, Ljava/lang/AssertionError;-><init>()V

    throw v0

    :cond_84
    move v0, v2

    .line 179
    goto :goto_d

    :cond_86
    move v0, v2

    .line 181
    goto :goto_20

    :cond_88
    move v0, v2

    .line 186
    goto :goto_53

    .line 196
    :pswitch_8a
    invoke-static {v3}, Lorg/bitcoinj/core/ECKey;->publicPointFromPrivate(Ljava/math/BigInteger;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPubKeyPoint()Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v3

    invoke-virtual {v0, v3}, Lorg/spongycastle/math/ec/ECPoint;->add(Lorg/spongycastle/math/ec/ECPoint;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    .line 211
    :goto_96
    const-string v3, "Illegal derived key: derived public key equals infinity."

    invoke-static {v0, v3}, Lorg/bitcoinj/crypto/HDKeyDerivation;->assertNonInfinity(Lorg/spongycastle/math/ec/ECPoint;Ljava/lang/String;)V

    .line 212
    new-instance v3, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;

    invoke-virtual {v0, v1}, Lorg/spongycastle/math/ec/ECPoint;->getEncoded(Z)[B

    move-result-object v0

    invoke-direct {v3, v0, v2}, Lorg/bitcoinj/crypto/HDKeyDerivation$RawKeyBytes;-><init>([B[B)V

    return-object v3

    .line 203
    :pswitch_a5
    sget-object v4, Lorg/bitcoinj/crypto/HDKeyDerivation;->RAND_INT:Ljava/math/BigInteger;

    invoke-virtual {v3, v4}, Ljava/math/BigInteger;->add(Ljava/math/BigInteger;)Ljava/math/BigInteger;

    move-result-object v3

    invoke-virtual {v3, v0}, Ljava/math/BigInteger;->mod(Ljava/math/BigInteger;)Ljava/math/BigInteger;

    move-result-object v3

    invoke-static {v3}, Lorg/bitcoinj/core/ECKey;->publicPointFromPrivate(Ljava/math/BigInteger;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v3

    .line 204
    sget-object v4, Lorg/bitcoinj/crypto/HDKeyDerivation;->RAND_INT:Ljava/math/BigInteger;

    invoke-virtual {v4}, Ljava/math/BigInteger;->negate()Ljava/math/BigInteger;

    move-result-object v4

    invoke-virtual {v4, v0}, Ljava/math/BigInteger;->mod(Ljava/math/BigInteger;)Ljava/math/BigInteger;

    move-result-object v0

    .line 205
    invoke-static {v0}, Lorg/bitcoinj/core/ECKey;->publicPointFromPrivate(Ljava/math/BigInteger;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    invoke-virtual {v3, v0}, Lorg/spongycastle/math/ec/ECPoint;->add(Lorg/spongycastle/math/ec/ECPoint;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    .line 206
    invoke-virtual {p0}, Lorg/bitcoinj/crypto/DeterministicKey;->getPubKeyPoint()Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v3

    invoke-virtual {v0, v3}, Lorg/spongycastle/math/ec/ECPoint;->add(Lorg/spongycastle/math/ec/ECPoint;)Lorg/spongycastle/math/ec/ECPoint;

    move-result-object v0

    goto :goto_96

    .line 194
    :pswitch_data_ce
    .packed-switch 0x1
        :pswitch_8a
        :pswitch_a5
    .end packed-switch
.end method

.method public static deriveThisOrNextChildKey(Lorg/bitcoinj/crypto/DeterministicKey;I)Lorg/bitcoinj/crypto/DeterministicKey;
    .registers 7

    .prologue
    .line 112
    const/4 v0, 0x0

    .line 113
    new-instance v1, Lorg/bitcoinj/crypto/ChildNumber;

    invoke-direct {v1, p1}, Lorg/bitcoinj/crypto/ChildNumber;-><init>(I)V

    .line 114
    invoke-virtual {v1}, Lorg/bitcoinj/crypto/ChildNumber;->isHardened()Z

    move-result v3

    move v2, v0

    .line 115
    :goto_b
    const/16 v0, 0x64

    if-ge v2, v0, :cond_25

    .line 117
    :try_start_f
    new-instance v0, Lorg/bitcoinj/crypto/ChildNumber;

    invoke-virtual {v1}, Lorg/bitcoinj/crypto/ChildNumber;->num()I

    move-result v4

    add-int/2addr v4, v2

    invoke-direct {v0, v4, v3}, Lorg/bitcoinj/crypto/ChildNumber;-><init>(IZ)V
    :try_end_19
    .catch Lorg/bitcoinj/crypto/HDDerivationException; {:try_start_f .. :try_end_19} :catch_1e

    .line 118
    :try_start_19
    invoke-static {p0, v0}, Lorg/bitcoinj/crypto/HDKeyDerivation;->deriveChildKey(Lorg/bitcoinj/crypto/DeterministicKey;Lorg/bitcoinj/crypto/ChildNumber;)Lorg/bitcoinj/crypto/DeterministicKey;
    :try_end_1c
    .catch Lorg/bitcoinj/crypto/HDDerivationException; {:try_start_19 .. :try_end_1c} :catch_2d

    move-result-object v0

    return-object v0

    .line 120
    :catch_1e
    move-exception v0

    move-object v0, v1

    :goto_20
    add-int/lit8 v1, v2, 0x1

    move v2, v1

    move-object v1, v0

    goto :goto_b

    .line 122
    :cond_25
    new-instance v0, Lorg/bitcoinj/crypto/HDDerivationException;

    const-string v1, "Maximum number of child derivation attempts reached, this is probably an indication of a bug."

    invoke-direct {v0, v1}, Lorg/bitcoinj/crypto/HDDerivationException;-><init>(Ljava/lang/String;)V

    throw v0

    .line 120
    :catch_2d
    move-exception v1

    goto :goto_20
.end method