查了一下DLL 壳是:dotnet reactor v4.x-eziriz (dnid v0.12b查的)
之后使用了:
de4dot v1.8
一个ASPX的DLL,使用reflector 加载看到的是:
进行操作:
得到如下:
// Fields
private BasicFun basicFun_0;
protected HtmlInputButton ButOK;
protected HtmlForm myform;
protected HtmlGenericControl spanVerification;
protected HtmlInputText TBName;
protected HtmlInputText TBPassWord;
protected HtmlInputText TBVerification;
// Methods
static Login();
public Login();
private void ABZOkmJ89();
private void ACGZjpchGhKy9s8Dvxo();
private void ButOK_ServerClick(object sender, EventArgs e);
private void Login_Load(object sender, EventArgs e);
protected override void OnInit(EventArgs e);
}
但看内部的字符,就全完了都是:
string strSQL = Class0.AG5igv5dfIF("IABzAGUAbABlAGMAdAAgACoAIABmAHIAbwBtACAAdABiAGwAQQBkAG0AaQBuACAAdwBoAGUAcgBlACAAWQBOAGEAbQBlAD0AQABZAE4AYQBtAGUAIABhAG4AZAAgAFkAUABhAHMAcwBXAG8AcgBkAD0AQABZAFAAYQBzAHMAVwBvAHIAZAA=");
请问,这个要如何处理,请教大牛们指教,DLL附件中有。
****************************
自己用.NET 调用类文件,用正则表达式作了个解密。搞定了。不过还不是很方便。希望有直接解决的办法。
见附件图。
IABzAGUAbABlAGMAdAAgACoAIABmAHIAbwBtACAAdABiAGwAQQBkAG0AaQBuACAAdwBoAGUAcgBlACAAWQBOAGEAbQBlAD0AQABZAE4AYQBtAGUAIABhAG4AZAAgAFkAUABhAHMAcwBXAG8AcgBkAD0AQABZAFAAYQBzAHMAVwBvAHIAZAA=
对应的是:
select * from tblAdmin where YName=@YName and YPassWord=@YPassWord
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课