如题:【求助】求大大告知怎么在OD中将二进制代码复制成"\x\x"的形式
我是一名新手,现在正在学习0DAY安全
但是书中复制OD中的二进制代码都是直接带有
“” 和
\ 的
如:
"\x66\x81\xEC\x40\x04" SUB SP,440
"\x33\xDB" XOR EBX,EBX
"\x53" PUSH EBX
"\x68\x77\x65\x73\x74" PUSH 74736577
"\x68\x66\x61\x69\x6C" PUSH 6C696166
"\x8B\xC4" MOV EAX,ESP
"\x53" PUSH EBX
"\x50" PUSH EAX
"\x50" PUSH EAX
"\x53" PUSH EBX
"\xB8\xEA\x04\xD8\x77" MOV EAX,user32.MessageBoxA
"\xFF\xD0" CALL EAX
"\x53" PUSH EBX ; /ExitCode
"\xB8\xDA\xCD\x81\x7C" MOV EAX,kernel32.ExitProcess
"\xFF\xD0" CALL EAX ; \ExitProcess
而我们从OD中复制为:
00401079 |. 66:81EC 4004 sub sp,0x440
0040107E |. 33DB xor ebx,ebx
00401080 |. 53 push ebx
00401081 |. 68 77657374 push 0x74736577
00401086 |. 68 6661696C push 0x6C696166
0040108B |. 8BC4 mov eax,esp
0040108D |. 53 push ebx
0040108E |. 50 push eax
0040108F |. 50 push eax
00401090 |. 53 push ebx
00401091 |. B8 EA07D577 mov eax,user32.MessageBoxA
00401096 |. FFD0 call eax
00401098 |. 53 push ebx ; /ExitCode
00401099 |. B8 12CB817C mov eax,kernel32.ExitProcess ; |
0040109E |. FFD0 call eax ; \ExitProcess
或者二进制:
66 81 EC 40 04 33 DB 53 68 77 65 73 74 68 66 61 69 6C 8B C4 53 50 50 53 B8 EA 07 D5 77 FF D0 53
B8 12 CB 81 7C FF D0
难道我们要慢慢的打出“\”吗?
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课