|
|
Asprotect 2.XX SKE IAT Fixer v1.02.
确实好用,可就是在2。3 SKE 0626版本下出现错误不能运行了,能否再修改下。 |
|
|
[求助]哪位大哥帮我搞定这个嘛
这个软件菜鸟级的就能搞定,看来你学习真不用心了 |
|
|
[求助]一个没有任何提示的软件
004242ED . E8 B763>call Xyquick.0046A6A9 004242F2 . 68 6823>push Xyquick.004D2368 ; 2006练习 004242F7 . 8D4C24 >lea ecx, [esp+20] 004242FB . E8 E998>call Xyquick.0045DBE9 00424300 . 83F8 FF cmp eax, -1 00424303 . 7F 16 jg short Xyquick.0042431B 00424305 . 8B56 1C mov edx, [esi+1C] 00424308 . 6A 02 push 2 0042430A . 52 push edx 0042430B . FFD7 call near edi 0042430D . 50 push eax 0042430E . E8 9F59>call Xyquick.00469CB2 00424313 . 8BF0 mov esi, eax 00424315 . 85F6 test esi, esi 00424317 .^ 75 CD jnz short Xyquick.004242E6 00424319 . EB 63 jmp short Xyquick.0042437E 0042431B > 8B46 1C mov eax, [esi+1C] 0042431E . 8B3D 7C>mov edi, [<&USER32.FindWindo>; USER32.FindWindowExA 00424324 . 6A 00 push 0 ; /Title = NULL 00424326 . 68 5423>push Xyquick.004D2354 ; |afxmdiframe42s 0042432B . 6A 00 push 0 ; |hAfterWnd = NULL 0042432D . 50 push eax ; |hParent 0042432E . FFD7 call near edi ; \FindWindowExA 00424330 . 85C0 test eax, eax 00424332 . 75 0D jnz short Xyquick.00424341 00424334 . 8B4E 1C mov ecx, [esi+1C] 00424337 . 50 push eax ; /Title 00424338 . 68 4023>push Xyquick.004D2340 ; |afxmdiframe42d 0042433D . 50 push eax ; |hAfterWnd 0042433E . 51 push ecx ; |hParent 0042433F . FFD7 call near edi ; \FindWindowExA 00424341 > 50 push eax 00424342 . E8 6B59>call Xyquick.00469CB2 00424347 . 8BF0 mov esi, eax 00424349 . 6A 00 push 0 0042434B . 68 2823>push Xyquick.004D2328 ; afxframeorview42s 00424350 . 6A 00 push 0 00424352 . 8B56 1C mov edx, [esi+1C] 00424355 . 52 push edx 00424356 . FFD7 call near edi 00424358 . 85C0 test eax, eax 0042435A . 75 0D jnz short Xyquick.00424369 0042435C . 50 push eax 0042435D . 68 1023>push Xyquick.004D2310 ; afxframeorview42d 00424362 . 50 push eax 00424363 . 8B46 1C mov eax, [esi+1C] 00424366 . 50 push eax 00424367 . FFD7 call near edi 00424369 > 50 push eax 0042436A . E8 4359>call Xyquick.00469CB2 0042436F . 8B48 1C mov ecx, [eax+1C] 00424372 . 6A 00 push 0 00424374 . 6A 01 push 1 00424376 . 68 D50B>push 0BD5 0042437B . 51 push ecx 0042437C . FFD3 call near ebx 0042437E > 8D4C24 >lea ecx, [esp+1C] 00424382 . C68424 >mov byte ptr [esp+1A4], 1 0042438A . E8 1598>call Xyquick.0046DBA4 0042438F . 8D8C24 >lea ecx, [esp+88] 00424396 . C68424 >mov byte ptr [esp+1A4], 0 0042439E . E8 2B4B>call Xyquick.00468ECE 004243A3 . C74424 >mov dword ptr [esp+14], Xyqu>; 21i 004243AB . 8D4C24 >lea ecx, [esp+14] 004243AF . C78424 >mov dword ptr [esp+1A4], 6 004243BA . E8 B71B>call Xyquick.00475F76 004243BF . 8B8C24 >mov ecx, [esp+19C] 程序启动时在这里好象有个解压(俺菜),不断循环最后出现程序主窗口和提示注册窗口,对这样的程序要爆破的话应该怎样下手?(俺碰到不少这样的程序了) |
|
|
如何对控件下断
先谢谢了,俺是菜鸟,能说得再详细点吗? |
|
|
菜鸟解狗
软件下载地址088K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6h3y4Z5N6h3q4F1k6%4S2A6L8Y4y4B7i4K6u0W2j5$3!0E0i4K6u0r3M7X3A6^5P5W2)9J5c8W2y4W2N6s2g2H3i4K6u0W2k6i4S2W2 升级包地址685K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6h3y4Z5N6h3q4F1k6%4S2A6L8Y4y4B7i4K6u0W2j5$3!0E0i4K6u0r3M7X3A6^5P5W2)9J5c8W2m8U0g2i4m8V1j5i4c8W2i4K6u0W2k6i4S2W2 不升级是用注册码形式的(俺菜,也看不出是什么加密算法)升级后就是要狗的了,在启动时要两次检狗,第一次必须返回为0,第二次必须返回不为0,晕 |
|
|
菜鸟解狗
00490B74 /$ 53 push ebx 00490B75 |. 83C4 F8 add esp, -8 00490B78 |. 33C0 xor eax, eax 00490B7A |. A3 10214B00 mov [4B2110], eax 00490B7F |. E8 E404F7FF call <jmp.&Vcl50.System::Random> 00490B84 |. B8 00010000 mov eax, 100 00490B89 |. E8 4A05F7FF call <jmp.&Vcl50.System::RandIn> 00490B8E |. 884424 03 mov [esp+3], al 00490B92 |. B8 00010000 mov eax, 100 00490B97 |. E8 3C05F7FF call <jmp.&Vcl50.System::RandIn> 00490B9C |. 884424 04 mov [esp+4], al 00490BA0 |. B8 00010000 mov eax, 100 00490BA5 |. E8 2E05F7FF call <jmp.&Vcl50.System::RandIn> 00490BAA |. 884424 05 mov [esp+5], al 00490BAE |. B8 00010000 mov eax, 100 00490BB3 |. E8 2005F7FF call <jmp.&Vcl50.System::RandIn> 00490BB8 |. 884424 06 mov [esp+6], al 00490BBC |. 8A4424 03 mov al, [esp+3] 00490BC0 |. 880424 mov [esp], al 00490BC3 |. 8A4424 04 mov al, [esp+4] 00490BC7 |. 884424 01 mov [esp+1], al 00490BCB |. 8A4424 05 mov al, [esp+5] 00490BCF |. 884424 02 mov [esp+2], al 00490BD3 |. 8A5C24 06 mov bl, [esp+6] 00490BD7 |. 68 D0070000 push 7D0 00490BDC |. A1 0C214B00 mov eax, [4B210C] 00490BE1 |. E8 BA06F7FF call <jmp.&Vcl50.System::LStrTo> 00490BE6 |. 50 push eax 00490BE7 |. 8D4424 0E lea eax, [esp+E] 00490BEB |. 50 push eax 00490BEC |. 8D4424 11 lea eax, [esp+11] 00490BF0 |. 50 push eax 00490BF1 |. 8D4424 14 lea eax, [esp+14] 00490BF5 |. 50 push eax 00490BF6 |. 8D4424 17 lea eax, [esp+17] 00490BFA |. 50 push eax 00490BFB |. 6A 10 push 10 00490BFD |. 68 10050000 push 510 00490C02 |. 68 780C4900 push cxLogo.00490C78 ; cxedu.exp 00490C07 |. E8 50FBFFFF call <jmp.&my3l_ex.Cal_2> 00490C0C |. 85C0 test eax, eax 00490C0E 74 09 je short cxLogo.00490C19 00490C10 |. 33D2 xor edx, edx 00490C12 |. A3 10214B00 mov [4B2110], eax 00490C17 |. EB 57 jmp short cxLogo.00490C70 00490C19 |> 33C0 xor eax, eax 00490C1B |. 8AC3 mov al, bl 00490C1D |. D1E8 shr eax, 1 00490C1F |. C1E3 07 shl ebx, 7 00490C22 |. 0AC3 or al, bl 00490C24 |. 8BD8 mov ebx, eax 00490C26 |. 301C24 xor [esp], bl 00490C29 |. 8A0424 mov al, [esp] 00490C2C |. 304424 02 xor [esp+2], al 00490C30 |. 8A4424 02 mov al, [esp+2] 00490C34 |. 300424 xor [esp], al 00490C37 |. 325C24 02 xor bl, [esp+2] 00490C3B |. 807424 02 A0 xor byte ptr [esp+2], 0A0 00490C40 |. 325C24 02 xor bl, [esp+2] 00490C44 |. 301C24 xor [esp], bl 00490C47 |. 8A4424 03 mov al, [esp+3] 00490C4B |. 3A0424 cmp al, [esp] 00490C4E |. 75 1A jnz short cxLogo.00490C6A 00490C50 |. 8A4424 04 mov al, [esp+4] 00490C54 |. 3A4424 01 cmp al, [esp+1] 00490C58 |. 75 10 jnz short cxLogo.00490C6A 00490C5A |. 8A4424 05 mov al, [esp+5] 00490C5E |. 3A4424 02 cmp al, [esp+2] 00490C62 |. 75 06 jnz short cxLogo.00490C6A 00490C64 |. 3A5C24 06 cmp bl, [esp+6] 00490C68 |. 74 04 je short cxLogo.00490C6E 00490C6A |> 33D2 xor edx, edx 00490C6C EB 02 jmp short cxLogo.00490C70 00490C6E |> B2 01 mov dl, 1 00490C70 8BC2 mov eax, edx 00490C72 59 pop ecx 00490C73 5A pop edx 00490C74 5B pop ebx 00490C75 \. C3 retn 楼上的帮忙看一下,这个是重点吗,这是在哪个CALL前的,这个软件还有个问题,现在俺跳过狗后可以运行,但是新建、保存都不好用,点新建文件内容还是原来的,一点没清掉原来的内容,点保存的话只是保存个文件名,内容一点都没有,这是什么原因,请高手指点下,为他耗了好几天了。 |
操作理由
RANk
{{ user_info.golds == '' ? 0 : user_info.golds }}
雪币
{{ experience }}
课程经验
{{ score }}
学习收益
{{study_duration_fmt}}
学习时长
基本信息
荣誉称号:
{{ honorary_title }}
勋章
兑换勋章
证书
证书查询 >
能力值