-
-
[旧帖]
[求助]我有一程序是通过读KEY来运行的,如何去掉KEY限制
0.00雪花
-
发表于:
2007-11-20 22:33
4232
-
[旧帖] [求助]我有一程序是通过读KEY来运行的,如何去掉KEY限制
0.00雪花
程序的汇编码如下:
0045F123 mov ecx, 0045F1B8 ;0045F1B8是ascii码:sn.key
0045F128 call 00404D1C ;估计是验证是否合法key
0045F12D mov eax, dword ptr [ebp-4]
0045F130 call 004099D8
0045F135 test al, al
0045F137 jnz short 0045F13E //不等于转移
0045F139 call 00404894
0045F13E mov edx, dword ptr [49AE24]
0045F144 mov eax, dword ptr [ebp-4]
0045F147 call 0045EDB8
0045F14C mov eax, dword ptr [49AE24]
0045F151 call 0045EF68
0045F156 test al, al
0045F158 je short 0045F15C
0045F15A mov bl, 1
0045F15C xor eax, eax
0045F15E pop edx
0045F15F pop ecx
0045F160 pop ecx
0045F161 mov dword ptr fs:[eax], edx
0045F164 push 0045F194
0045F169 lea eax, dword ptr [ebp-120]
0045F16F mov edx, 2
0045F174 call 00404A34
0045F179 lea eax, dword ptr [ebp-108]
0045F17F call 00404A10
0045F184 lea eax, dword ptr [ebp-4]
0045F187 call 00404A10
0045F18C retn
我是新手,看不懂,请高手帮我分析一下
[课程]FART 脱壳王!加量不加价!FART作者讲授!