好友
阅读权限10
听众
最后登录1970-1-1
|
本帖最后由 cirrus 于 2016-6-5 19:45 编辑
00401B39 |. E8 42C20100 CALL CrackMeC.0041DD80
00401B3E |. 83C4 0C ADD ESP,0C
00401B41 |. 6A 1F PUSH 1F ; /Arg2 = 0000001F
00401B43 |. 68 84865E00 PUSH CrackMeC.005E8684 ; |Arg1 = 005E8684 ASCII "admin"
00401B48 |. 68 E9030000 PUSH 3E9 ; |/Arg1 = 000003E9
00401B4D |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4] ; ||
00401B50 |. E8 0C250800 CALL CrackMeC.00484061 ; |\CrackMeC.00484061
00401B55 |. 8BC8 MOV ECX,EAX ; |
00401B57 |. E8 642C0800 CALL CrackMeC.004847C0 ; \CrackMeC.004847C0
00401B5C |. 6A 1F PUSH 1F ; /Arg2 = 0000001F
00401B5E |. 68 A4865E00 PUSH CrackMeC.005E86A4 ; |Arg1 = 005E86A4 ASCII "abcabc"
00401B63 |. 68 E8030000 PUSH 3E8 ; |/Arg1 = 000003E8
00401B68 |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4] ; ||
00401B6B |. E8 F1240800 CALL CrackMeC.00484061 ; |\CrackMeC.00484061
00401B70 |. 8BC8 MOV ECX,EAX ; |
00401B72 |. E8 492C0800 CALL CrackMeC.004847C0 ; \CrackMeC.004847C0
00401B77 |. 68 A4865E00 PUSH CrackMeC.005E86A4 ; ASCII "abcabc"
00401B7C |. E8 7FC10100 CALL CrackMeC.0041DD00
00401B81 |. 83C4 04 ADD ESP,4
00401B84 |. A3 C4865E00 MOV DWORD PTR DS:[5E86C4],EAX
00401B89 |. 833D C4865E00 >CMP DWORD PTR DS:[5E86C4],0
00401B90 |. 74 09 JE SHORT CrackMeC.00401B9B
00401B92 |. 833D C4865E00 >CMP DWORD PTR DS:[5E86C4],5
00401B99 |. 74 0F JE SHORT CrackMeC.00401BAA
00401B9B |> 8B55 FC MOV EDX,DWORD PTR SS:[EBP-4]
00401B9E |. C742 60 020000>MOV DWORD PTR DS:[EDX+60],2
00401BA5 |. E9 91000000 JMP CrackMeC.00401C3B
00401BAA |> 8B45 FC MOV EAX,DWORD PTR SS:[EBP-4]
00401BAD |. 8B48 60 MOV ECX,DWORD PTR DS:[EAX+60]
00401BB0 |. 894D F8 MOV DWORD PTR SS:[EBP-8],ECX
00401BB3 |> 837D F8 05 /CMP DWORD PTR SS:[EBP-8],5
00401BB7 |. 7D 27 |JGE SHORT CrackMeC.00401BE0
00401BB9 |. 8B55 F8 |MOV EDX,DWORD PTR SS:[EBP-8]
00401BBC |. 0FBE82 A4865E0>|MOVSX EAX,BYTE PTR DS:[EDX+5E86A4]
00401BC3 |. 8B4D FC |MOV ECX,DWORD PTR SS:[EBP-4]
00401BC6 |. 2B41 60 |SUB EAX,DWORD PTR DS:[ECX+60]
00401BC9 |. 83E8 01 |SUB EAX,1
00401BCC |. 8B55 F8 |MOV EDX,DWORD PTR SS:[EBP-8]
00401BCF |. 8882 A4865E00 |MOV BYTE PTR DS:[EDX+5E86A4],AL
00401BD5 |. 8B45 F8 |MOV EAX,DWORD PTR SS:[EBP-8]
00401BD8 |. 83C0 02 |ADD EAX,2
00401BDB |. 8945 F8 |MOV DWORD PTR SS:[EBP-8],EAX
00401BDE |.^EB D3 \JMP SHORT CrackMeC.00401BB3
00401BE0 |> EB 59 JMP SHORT CrackMeC.00401C3B
00401BE2 |> 68 A4865E00 PUSH CrackMeC.005E86A4 ; ASCII "abcabc"
00401BE7 |. 68 84865E00 PUSH CrackMeC.005E8684 ; ASCII "admin"
00401BEC |. E8 7FC00100 CALL CrackMeC.0041DC70
00401BF1 |. 83C4 08 ADD ESP,8
00401BF4 |. F7D8 NEG EAX
00401BF6 |. 1BC0 SBB EAX,EAX
00401BF8 |. 40 INC EAX
00401BF9 |. 8845 F4 MOV BYTE PTR SS:[EBP-C],AL
00401BFC |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4]
00401BFF |. 33D2 XOR EDX,EDX
00401C01 |. 8A51 5C MOV DL,BYTE PTR DS:[ECX+5C]
00401C04 |. 8B45 F4 MOV EAX,DWORD PTR SS:[EBP-C]
00401C07 |. 25 FF000000 AND EAX,0FF
00401C0C |. 3BD0 CMP EDX,EAX
00401C0E |. 74 2B JE SHORT CrackMeC.00401C3B
00401C10 |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4]
00401C13 |. 33D2 XOR EDX,EDX
00401C15 |. 8A51 5C MOV DL,BYTE PTR DS:[ECX+5C]
00401C18 |. F7DA NEG EDX
00401C1A |. 1BD2 SBB EDX,EDX
00401C1C |. 42 INC EDX
00401C1D |. 8B45 FC MOV EAX,DWORD PTR SS:[EBP-4]
00401C20 |. 8850 5C MOV BYTE PTR DS:[EAX+5C],DL
00401C23 |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4]
00401C26 |. 33D2 XOR EDX,EDX
00401C28 |. 8A51 5C MOV DL,BYTE PTR DS:[ECX+5C]
00401C2B |. 52 PUSH EDX ; /Arg3
00401C2C |. 6A 00 PUSH 0 ; |Arg2 = 00000000
00401C2E |. 68 01040000 PUSH 401 ; |Arg1 = 00000401
00401C33 |. 8B4D FC MOV ECX,DWORD PTR SS:[EBP-4] ; |
00401C36 |. E8 0E610D00 CALL CrackMeC.004D7D49 ; \CrackMeC.004D7D49
00401C3B |> 8B45 FC MOV EAX,DWORD PTR SS:[EBP-4]
00401C3E |. 8B40 60 MOV EAX,DWORD PTR DS:[EAX+60]
00401C41 |. 83C0 01 ADD EAX,1
00401C44 |. 99 CDQ
00401C45 |. B9 03000000 MOV ECX,3
00401C4A |. F7F9 IDIV ECX
00401C4C |. 8B45 FC MOV EAX,DWORD PTR SS:[EBP-4]
00401C4F |. 8950 60 MOV DWORD PTR DS:[EAX+60],EDX
00401C52 |> 5F POP EDI
00401C53 |. 5E POP ESI
00401C54 |. 5B POP EBX
00401C55 |. 83C4 50 ADD ESP,50
00401C58 |. 3BEC CMP EBP,ESP
00401C5A |. E8 D1B90100 CALL CrackMeC.0041D630
00401C5F |. 8BE5 MOV ESP,EBP
00401C61 |. 5D POP EBP
00401C62 \. C2 0400 RETN 4
|
|