用OD载入一个名叫火车头的软件,软件却直接运行起来,并且直接跳到KERNEL32模块,来回按ALT+F9怎么也跳不到软件领空。后用ASM打开,开头发现如下代码,
像这样00402050:: F3 ??? 和00402066:: FF ???
是什么意思啊
::00402000:: 90 NOP
::00402001:: 5F POP EDI
::00402002:: 0F0000 SLDT [EAX]
::00402005:: 0000 ADD [EAX],AL
::00402007:: 0048 00 ADD [EAX],CL
::0040200A:: 0000 ADD [EAX],AL
::0040200C:: 0200 ADD AL,[EAX]
::0040200E:: 05 00EC7A04 ADD EAX,47AEC00
::00402013:: 0051 CE ADD [ECX-32],DL
::00402016:: 0200 ADD AL,[EAX]
::00402018:: 0100 ADD [EAX],EAX
::0040201A:: 0000 ADD [EAX],AL
::0040201C:: C9 LEAVE
::0040201D:: 0000 ADD [EAX],AL
::0040201F:: 06 PUSH ES
::00402020:: 3D 49070021 CMP EAX,21000749
::00402025:: 16 PUSH SS
::00402026:: 0800 OR [EAX],AL
::00402028:: 0000 ADD [EAX],AL
::0040202A:: 0000 ADD [EAX],AL
::0040202C:: 0000 ADD [EAX],AL
::0040202E:: 0000 ADD [EAX],AL
::00402030:: 0000 ADD [EAX],AL
::00402032:: 0000 ADD [EAX],AL
::00402034:: 0000 ADD [EAX],AL
::00402036:: 0000 ADD [EAX],AL
::00402038:: 0000 ADD [EAX],AL
::0040203A:: 0000 ADD [EAX],AL
::0040203C:: 0000 ADD [EAX],AL
::0040203E:: 0000 ADD [EAX],AL
::00402040:: 0000 ADD [EAX],AL
::00402042:: 0000 ADD [EAX],AL
::00402044:: 0000 ADD [EAX],AL
::00402046:: 0000 ADD [EAX],AL
::00402048:: 0000 ADD [EAX],AL
::0040204A:: 0000 ADD [EAX],AL
::0040204C:: 0000 ADD [EAX],AL
::0040204E:: 0000 ADD [EAX],AL
::00402050:: F3 ???
::00402051:: FF00 INC DWORD PTR [EAX]
::00402053:: 0000 ADD [EAX],AL
::00402055:: 0000 ADD [EAX],AL
::00402057:: 0050 20 ADD [EAX+20],DL
::0040205A:: 0000 ADD [EAX],AL
::0040205C:: FF ???
::0040205D:: FF ???
::0040205E:: FF ???
::0040205F:: FF ???
::00402060:: FF ???
::00402061:: FF ???
::00402062:: FF ???
::00402063:: FF ???
::00402064:: FF ???
::00402065:: FF ???
::00402066:: FF ???
::00402067:: FF ???
::00402068:: FF ???
::00402069:: FF ???
::0040206A:: FF ???
::0040206B:: FF ???
::0040206C:: FF ???
::0040206D:: FF ???
::0040206E:: FF ???
::0040206F:: FF ???
::00402070:: FF ???
::00402071:: FF ???
::00402072:: FF ???
::00402073:: FF ???
::00402074:: FF ???
::00402075:: FF ???
::00402076:: FF ???
::00402077:: FF ???
::00402078:: FF ???
::00402079:: FF ???
::0040207A:: FF ???
::0040207B:: FF ???
::0040207C:: FF ???
::0040207D:: FF ???
::0040207E:: FF ???
::0040207F:: FF ???
::00402080:: FF ???
::00402081:: FF ???
::00402082:: FF ???
::00402083:: FF ???
::00402084:: FF ???
::00402085:: FF ???
[CTF入门培训]顶尖高校博士及硕士团队亲授《30小时教你玩转CTF》,视频+靶场+题目!助力进入CTF世界