好友
阅读权限10
听众
最后登录1970-1-1
|
emilt
发表于 2014-10-31 11:03
CrackMe 10.rar
(164.03 KB, 下载次数: 47)
仍然是爆破,
004043F8 /$ 55 push ebp
004043F9 |. 8BEC mov ebp,esp
004043FB |. 81EC 1C000000 sub esp,0x1C
00404401 |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x1 比较
00404408 |. B8 00000000 mov eax,0x0
0040440D 0F95C0 setne al
00404410 |. 8945 FC mov [local.1],eax
00404413 |. 6A 01 push 0x1
00404415 |. FF75 FC push [local.1]
00404418 |. 68 6F534600 push CrackMe.0046536F
0040441D |. 8B0424 mov eax,dword ptr ss:[esp]
00404420 |. 8B00 mov eax,dword ptr ds:[eax]
00404422 |. 8B00 mov eax,dword ptr ds:[eax]
00404424 |. FF50 24 call dword ptr ds:[eax+0x24]
00404427 |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x1 比较
0040442E |. B8 00000000 mov eax,0x0
00404433 0F95C0 setne al
00404436 |. 8945 FC mov [local.1],eax
00404439 |. 6A 01 push 0x1
0040443B |. FF75 FC push [local.1]
0040443E |. 68 73534600 push CrackMe.00465373
00404443 |. 8B0424 mov eax,dword ptr ss:[esp]
00404446 |. 8B00 mov eax,dword ptr ds:[eax]
00404448 |. 8B00 mov eax,dword ptr ds:[eax]
0040444A |. FF50 24 call dword ptr ds:[eax+0x24]
0040444D |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x0 比较
00404454 |. B8 00000000 mov eax,0x0
00404459 0F95C0 setne al
0040445C |. 8945 FC mov [local.1],eax
0040445F |. 6A 01 push 0x1
00404461 |. FF75 FC push [local.1]
00404464 |. C745 F8 00000>mov [local.2],0x0
0040446B |. 6A 00 push 0x0
。。。。。。。。。。。。。。
00404516 |> 8B5D F4 mov ebx,[local.3]
00404519 |. 53 push ebx
0040451A |. E8 068B0300 call CrackMe.0043D025
0040451F |. 83C4 04 add esp,0x4
00404522 |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x0 比较
00404529 |. B8 00000000 mov eax,0x0
0040452E 0F95C0 setne al
00404531 |. 8945 FC mov [local.1],eax
00404534 |. 6A 01 push 0x1
00404536 |. FF75 FC push [local.1]
。。。。。。。。。。。。。。。。。。
004045E8 |. 83C4 04 add esp,0x4
004045EB |> 8B5D F4 mov ebx,[local.3]
004045EE |. 53 push ebx
004045EF |. E8 318A0300 call CrackMe.0043D025
004045F4 |. 83C4 04 add esp,0x4
004045F7 |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x0 比较
004045FE |. B8 00000000 mov eax,0x0
00404603 0F95C0 setne al
00404606 |. 8945 FC mov [local.1],eax
00404609 |. 6A 01 push 0x1
0040460B |. FF75 FC push [local.1]
。。。。。。。。。。。。。。
0040462C |. C703 00000000 mov dword ptr ds:[ebx],0x0
00404632 |. C743 04 00000>mov dword ptr ds:[ebx+0x4],0x0
00404639 |. C743 08 00000>mov dword ptr ds:[ebx+0x8],0x0
00404640 |. C743 0C 00000>mov dword ptr ds:[ebx+0xC],0x0
。。。。。。。。。。。。。
004046C0 |> 8B5D F4 mov ebx,[local.3]
004046C3 |. 53 push ebx
004046C4 |. E8 5C890300 call CrackMe.0043D025
004046C9 |. 83C4 04 add esp,0x4
004046CC |. 803D 8F534600>cmp byte ptr ds:[0x46538F],0x0 比较
004046D3 |. B8 00000000 mov eax,0x0
004046D8 0F95C0 setne al
只要让46538F的值为1就注册成功,所以找到给46538F值的地方,让他的为1就成功
|
|
发帖前要善用【论坛搜索】功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。 |
|
|
|
|