- UID
- 8198
注册时间2006-2-16
阅读权限40
最后登录1970-1-1
独步武林
该用户从未签到
|
楼主 |
发表于 2007-4-10 20:01:48
|
显示全部楼层
关键 CALL
- 004079D0 /$ 83EC 30 sub esp,30
- 004079D3 |. 56 push esi
- 004079D4 |. 8B7424 38 mov esi,dword ptr ss:[esp+38]
- 004079D8 |. 57 push edi
- 004079D9 |. 8A06 mov al,byte ptr ds:[esi]
- 004079DB |. 8A4E 01 mov cl,byte ptr ds:[esi+1]
- 004079DE |. 8A56 0E mov dl,byte ptr ds:[esi+E]
- 004079E1 |. 884424 14 mov byte ptr ss:[esp+14],al
- 004079E5 |. 32C0 xor al,al
- 004079E7 |. 884C24 2C mov byte ptr ss:[esp+2C],cl
- 004079EB |. 8A4E 0F mov cl,byte ptr ds:[esi+F]
- 004079EE |. 884424 15 mov byte ptr ss:[esp+15],al
- 004079F2 |. 884424 2D mov byte ptr ss:[esp+2D],al
- 004079F6 |. 884424 21 mov byte ptr ss:[esp+21],al
- 004079FA |. 884424 09 mov byte ptr ss:[esp+9],al
- 004079FE |. 8A46 02 mov al,byte ptr ds:[esi+2]
- 00407A01 |. 3C 56 cmp al,56
- 00407A03 |. 885424 20 mov byte ptr ss:[esp+20],dl
- 00407A07 |. 884C24 08 mov byte ptr ss:[esp+8],cl
- 00407A0B | 75 57 jnz short pdfedito.00407A64
- 00407A0D |. 8D5424 08 lea edx,dword ptr ss:[esp+8]
- 00407A11 |. 52 push edx
- 00407A12 |. E8 58700100 call pdfedito.0041EA6F
- 00407A17 |. 8BF8 mov edi,eax
- 00407A19 |. 8D4424 18 lea eax,dword ptr ss:[esp+18]
- 00407A1D |. 50 push eax
- 00407A1E |. E8 4C700100 call pdfedito.0041EA6F
- 00407A23 |. 03F8 add edi,eax
- 00407A25 |. 83C4 08 add esp,8
- 00407A28 |. 83FF 0A cmp edi,0A
- 00407A2B |. 75 37 jnz short pdfedito.00407A64
- 00407A2D |. 8D4C24 20 lea ecx,dword ptr ss:[esp+20]
- 00407A31 |. 51 push ecx
- 00407A32 |. E8 38700100 call pdfedito.0041EA6F
- 00407A37 |. 8D5424 30 lea edx,dword ptr ss:[esp+30]
- 00407A3B |. 8BF8 mov edi,eax
- 00407A3D |. 52 push edx
- 00407A3E |. E8 2C700100 call pdfedito.0041EA6F
- 00407A43 |. 03F8 add edi,eax
- 00407A45 |. 83C4 08 add esp,8
- 00407A48 |. 83FF 0A cmp edi,0A
- 00407A4B |. 75 17 jnz short pdfedito.00407A64
- 00407A4D |. 807E 03 45 cmp byte ptr ds:[esi+3],45
- 00407A51 |. 75 11 jnz short pdfedito.00407A64
- 00407A53 | 8A4E 05 mov cl,byte ptr ds:[esi+5]
- 00407A56 |. 33C0 xor eax,eax
- 00407A58 |. 80F9 52 cmp cl,52
- 00407A5B |. 5F pop edi
- 00407A5C |. 0F94C0 sete al
- 00407A5F |. 5E pop esi
- 00407A60 |. 83C4 30 add esp,30
- 00407A63 |. C3 retn
- 00407A64 |> 5F pop edi
- 00407A65 |. 33C0 xor eax,eax
- 00407A67 |. 5E pop esi
- 00407A68 |. 83C4 30 add esp,30
- 00407A6B \. C3 retn
复制代码
破解:
改 00407A0B 处代码为 jmp 00407A53
改 00407A53 处代码为 mov cl,52 |
|