本帖最后由 冰封溪谷 于 2011-9-25 16:36 编辑
回复 小花匠 的帖子
004016F7 > \6A 01 push 0x1
004016F9 . 8BCE mov ecx,esi
004016FB . E8 5C030000 call <jmp.&MFC42.#6334>
00401700 . 8B17 mov edx,dword ptr ds:[edi]
00401702 . 837A F8 14 cmp dword ptr ds:[edx-0x8],0x14 ; 比较长度大于20是位,小于等于结束
00401706 . 7F 08 jg XCrack.00401710
00401708 . 6A 00 push 0x0 ; /ExitCode = 0
0040170A . FF15 00204000 call dword ptr ds:[<&KERNEL32.ExitProces>; \ExitProcess
00401710 > 57 push edi
00401711 . 8D4C24 10 lea ecx,dword ptr ss:[esp+0x10]
00401715 . E8 3C030000 call <jmp.&MFC42.#535>
0040171A . 8B4424 0C mov eax,dword ptr ss:[esp+0xC]
0040171E . C74424 3C 000>mov dword ptr ss:[esp+0x3C],0x0
00401726 . 8038 58 cmp byte ptr ds:[eax],0x58 ; 比较第1位是否为X,不等结束
00401729 . 74 08 je XCrack.00401733
0040172B . 6A 00 push 0x0 ; /ExitCode = 0
0040172D . FF15 00204000 call dword ptr ds:[<&KERNEL32.ExitProces>; \ExitProcess
00401733 > 8078 04 48 cmp byte ptr ds:[eax+0x4],0x48 ; 比较第5位是否为H,不等结束
00401737 . 74 08 je XCrack.00401741
00401739 . 6A 00 push 0x0 ; /ExitCode = 0
0040173B . FF15 00204000 call dword ptr ds:[<&KERNEL32.ExitProces>; \ExitProcess
00401741 > 8078 08 4A cmp byte ptr ds:[eax+0x8],0x4A ; 比较第9位是否为J,不等结束
00401745 . 74 08 je XCrack.0040174F
00401747 . 6A 00 push 0x0 ; /ExitCode = 0
00401749 . FF15 00204000 call dword ptr ds:[<&KERNEL32.ExitProces>; \ExitProcess
0040174F > B0 6F mov al,0x6F
00401751 . 8BCE mov ecx,esi
00401753 . 884424 11 mov byte ptr ss:[esp+0x11],al
00401757 . 884424 1C mov byte ptr ss:[esp+0x1C],al
小菜膜拜 Shiny josong 小生。。等
话说Shiny好久没玩cm了,爆菊真快
|