黑客风云——风云网络
设为首页 加入收藏 我要投稿 网站地图
您现在的位置: 黑客风云 >> 黑客文章 >> 黑客进阶 >> 脚本入侵 >> 文章正文
[推荐]灰鸽子[VIP 2006] 破解过程
        ★★★★★
灰鸽子[VIP 2006] 破解过程
文章整理发布:黑客风云 文章来源:www.05112.com 更新时间:2006-11-13

00566C4F . 8D8D 8CFBFFFF lea ecx,dword ptr ss:[ebp-474]
00566C55 . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566C5A . B8 CC7C5600 mov eax,dumped_.00567CCC ; 4657dcf34fd02604ca70ff8dd028b3da6944c1a825c4ecdcbde01ac27dc93cb1f140e92de04487114e5aa17c383359e8
00566C5F . E8 08EBFDFF call dumped_.0054576C
00566C64 . 8B95 8CFBFFFF mov edx,dword ptr ss:[ebp-474]
00566C6A . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566C6F . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566C75 . E8 A653FAFF call dumped_.0050C020
00566C7A . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566C7F . 8B80 4C030000 mov eax,dword ptr ds:[eax+34C]
00566C85 . B2 01 mov dl,1
00566C87 . 8B08 mov ecx,dword ptr ds:[eax]
00566C89 . FF51 64 call dword ptr ds:[ecx+64]
00566C8C . 33C0 xor eax,eax
00566C8E . 5A pop edx
00566C8F . 59 pop ecx
00566C90 . 59 pop ecx
00566C91 . 64:8910 mov dword ptr fs:[eax],edx
00566C94 . E9 A00B0000 jmp dumped_.00567839
00566C99 > 8B45 D8 mov eax,dword ptr ss:[ebp-28]
00566C9C . BA 387D5600 mov edx,dumped_.00567D38 ; dongjie
00566CA1 . E8 B2E1E9FF call dumped_.00404E58
00566CA6 . 75 4A jnz short dumped_.00566CF2 ; 不跳 现实 "你的用户名已经冻结!请与管理员联系!"
00566CA8 . 8D8D 88FBFFFF lea ecx,dword ptr ss:[ebp-478]
00566CAE . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566CB3 . B8 487D5600 mov eax,dumped_.00567D48 ; 447d20fe6542c2ea4086f5bf24f523d29a2ca151eb5f296090e0c93ba07612badd9b980c035451db
00566CB8 . E8 AFEAFDFF call dumped_.0054576C
00566CBD . 8B95 88FBFFFF mov edx,dword ptr ss:[ebp-478]
00566CC3 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566CC8 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566CCE . E8 4D53FAFF call dumped_.0050C020
00566CD3 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566CD8 . 8B80 4C030000 mov eax,dword ptr ds:[eax+34C]
00566CDE . B2 01 mov dl,1
00566CE0 . 8B08 mov ecx,dword ptr ds:[eax]
00566CE2 . FF51 64 call dword ptr ds:[ecx+64]
00566CE5 . 33C0 xor eax,eax
00566CE7 . 5A pop edx
00566CE8 . 59 pop ecx
00566CE9 . 59 pop ecx
00566CEA . 64:8910 mov dword ptr fs:[eax],edx
00566CED . E9 470B0000 jmp dumped_.00567839
00566CF2 > 8B45 D8 mov eax,dword ptr ss:[ebp-28]
00566CF5 . BA A47D5600 mov edx,dumped_.00567DA4 ; nomoney
00566CFA . E8 59E1E9FF call dumped_.00404E58
00566CFF . 75 4A jnz short dumped_.00566D4B ; 不跳 显示 "你的用户名已经欠费到期!请尽快续费!"
00566D01 . 8D8D 84FBFFFF lea ecx,dword ptr ss:[ebp-47C]
00566D07 . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566D0C . B8 B47D5600 mov eax,dumped_.00567DB4 ; 447d20fe6542c2eadd8cd412ebf534c26b97d8424960f3dfd68759b55a5e52f76eb8ddcf81df6625
00566D11 . E8 56EAFDFF call dumped_.0054576C
00566D16 . 8B95 84FBFFFF mov edx,dword ptr ss:[ebp-47C]
00566D1C . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566D21 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566D27 . E8 F452FAFF call dumped_.0050C020
00566D2C . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566D31 . 8B80 4C030000 mov eax,dword ptr ds:[eax+34C]
00566D37 . B2 01 mov dl,1
00566D39 . 8B08 mov ecx,dword ptr ds:[eax]
00566D3B . FF51 64 call dword ptr ds:[ecx+64]
00566D3E . 33C0 xor eax,eax
00566D40 . 5A pop edx
00566D41 . 59 pop ecx
00566D42 . 59 pop ecx
00566D43 . 64:8910 mov dword ptr fs:[eax],edx
00566D46 . E9 EE0A0000 jmp dumped_.00567839
00566D4B > 33C0 xor eax,eax
00566D4D . 55 push ebp
00566D4E . 68 49775600 push dumped_.00567749
00566D53 . 64:FF30 push dword ptr fs:[eax]
00566D56 . 64:8920 mov dword ptr fs:[eax],esp
00566D59 . B2 01 mov dl,1
00566D5B . A1 B48C4100 mov eax,dword ptr ds:[418CB4]
00566D60 . E8 67CEE9FF call dumped_.00403BCC
00566D65 . 8BD8 mov ebx,eax
00566D67 . 8B55 D8 mov edx,dword ptr ss:[ebp-28]
00566D6A . 8BC3 mov eax,ebx
00566D6C . 8B08 mov ecx,dword ptr ds:[eax]
00566D6E . FF51 2C call dword ptr ds:[ecx+2C]
00566D71 . 8D8D 80FBFFFF lea ecx,dword ptr ss:[ebp-480]
00566D77 . 33D2 xor edx,edx
00566D79 . 8BC3 mov eax,ebx
00566D7B . 8B38 mov edi,dword ptr ds:[eax]
00566D7D . FF57 0C call dword ptr ds:[edi+C]
00566D80 . 8B85 80FBFFFF mov eax,dword ptr ss:[ebp-480]
00566D86 . 8B15 E81D5D00 mov edx,dword ptr ds:[5D1DE8]
00566D8C . 8B92 4C040000 mov edx,dword ptr ds:[edx+44C]
00566D92 . E8 C1E0E9FF call dumped_.00404E58
00566D97 . 74 5C je short dumped_.00566DF5 ; 不跳就现实 "签名验证失败!"
00566D99 . 8D8D 7CFBFFFF lea ecx,dword ptr ss:[ebp-484]
00566D9F . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566DA4 . B8 107E5600 mov eax,dumped_.00567E10 ; ae6c843b1906f159b99915b35b861a3b
00566DA9 . E8 BEE9FDFF call dumped_.0054576C
00566DAE . 8B95 7CFBFFFF mov edx,dword ptr ss:[ebp-484]
00566DB4 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566DB9 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566DBF . E8 5C52FAFF call dumped_.0050C020
00566DC4 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566DC9 . 8B80 4C030000 mov eax,dword ptr ds:[eax+34C]
00566DCF . B2 01 mov dl,1
00566DD1 . 8B08 mov ecx,dword ptr ds:[eax]
00566DD3 . FF51 64 call dword ptr ds:[ecx+64]
00566DD6 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566DDB . E8 A4DEF1FF call dumped_.00484C84
00566DE0 . 33C0 xor eax,eax
00566DE2 . 5A pop edx
00566DE3 . 59 pop ecx
00566DE4 . 59 pop ecx
00566DE5 . 64:8910 mov dword ptr fs:[eax],edx
00566DE8 . 33C0 xor eax,eax
00566DEA . 5A pop edx
00566DEB . 59 pop ecx
00566DEC . 59 pop ecx
00566DED . 64:8910 mov dword ptr fs:[eax],edx
00566DF0 . E9 440A0000 jmp dumped_.00567839
00566DF5 > 8D8D 78FBFFFF lea ecx,dword ptr ss:[ebp-488]
00566DFB . BA 01000000 mov edx,1
00566E00 . 8BC3 mov eax,ebx
00566E02 . 8B38 mov edi,dword ptr ds:[eax]
00566E04 . FF57 0C call dword ptr ds:[edi+C]
00566E07 . 83BD 78FBFFFF 0>cmp dword ptr ss:[ebp-488],0
00566E0E . 0F84 D6080000 je dumped_.005676EA
00566E14 . 8D8D 74FBFFFF lea ecx,dword ptr ss:[ebp-48C]
00566E1A . BA 02000000 mov edx,2
00566E1F . 8BC3 mov eax,ebx
00566E21 . 8B38 mov edi,dword ptr ds:[eax]
00566E23 . FF57 0C call dword ptr ds:[edi+C]
00566E26 . 83BD 74FBFFFF 0>cmp dword ptr ss:[ebp-48C],0 ; 比较 下载地质是否为0
00566E2D . 0F84 B7080000 je dumped_.005676EA
00566E33 . 8D8D 70FBFFFF lea ecx,dword ptr ss:[ebp-490]
00566E39 . BA 03000000 mov edx,3
00566E3E . 8BC3 mov eax,ebx
00566E40 . 8B38 mov edi,dword ptr ds:[eax]
00566E42 . FF57 0C call dword ptr ds:[edi+C]
00566E45 . 83BD 70FBFFFF 0>cmp dword ptr ss:[ebp-490],0
00566E4C . 0F84 98080000 je dumped_.005676EA
00566E52 . 8D8D 6CFBFFFF lea ecx,dword ptr ss:[ebp-494]
00566E58 . BA 04000000 mov edx,4
00566E5D . 8BC3 mov eax,ebx
00566E5F . 8B38 mov edi,dword ptr ds:[eax]
00566E61 . FF57 0C call dword ptr ds:[edi+C]
00566E64 . 83BD 6CFBFFFF 0>cmp dword ptr ss:[ebp-494],0
00566E6B . 0F84 79080000 je dumped_.005676EA
00566E71 . 8D8D 68FBFFFF lea ecx,dword ptr ss:[ebp-498]
00566E77 . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566E7C . B8 3C7E5600 mov eax,dumped_.00567E3C ; a5aaa19a1933ecf4868a223f279c557db1fe9350c2b88cf7be173fe9cb452c7b
00566E81 . E8 E6E8FDFF call dumped_.0054576C
00566E86 . 8B95 68FBFFFF mov edx,dword ptr ss:[ebp-498]
00566E8C . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566E91 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566E97 . E8 8451FAFF call dumped_.0050C020
00566E9C . 68 E8030000 push 3E8 ; /Timeout = 1000. ms
00566EA1 . E8 6281EAFF call <jmp.&kernel32.Sleep> ; \Sleep
00566EA6 . 8D8D 64FBFFFF lea ecx,dword ptr ss:[ebp-49C]
00566EAC . BA 03000000 mov edx,3
00566EB1 . 8BC3 mov eax,ebx
00566EB3 . 8B38 mov edi,dword ptr ds:[eax]
00566EB5 . FF57 0C call dword ptr ds:[edi+C]
00566EB8 . 8B95 64FBFFFF mov edx,dword ptr ss:[ebp-49C]
00566EBE . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566EC3 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566EC9 . E8 5251FAFF call dumped_.0050C020
00566ECE . 68 B80B0000 push 0BB8 ; /Timeout = 3000. ms
00566ED3 . E8 3081EAFF call <jmp.&kernel32.Sleep> ; \Sleep
00566ED8 . B2 01 mov dl,1
00566EDA . A1 C88F4100 mov eax,dword ptr ds:[418FC8]
00566EDF . E8 E8CCE9FF call dumped_.00403BCC
00566EE4 . 8945 FC mov dword ptr ss:[ebp-4],eax
00566EE7 . B2 01 mov dl,1
00566EE9 . A1 C88F4100 mov eax,dword ptr ds:[418FC8]
00566EEE . E8 D9CCE9FF call dumped_.00403BCC
00566EF3 . 8945 F8 mov dword ptr ss:[ebp-8],eax
00566EF6 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566EFB . 8B80 B0030000 mov eax,dword ptr ds:[eax+3B0]
00566F01 . 8B10 mov edx,dword ptr ds:[eax]
00566F03 . FF52 58 call dword ptr ds:[edx+58]
00566F06 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566F0B . 8B80 B0030000 mov eax,dword ptr ds:[eax+3B0]
00566F11 . BA 50000000 mov edx,50
00566F16 . 8B08 mov ecx,dword ptr ds:[eax]
00566F18 . FF91 8C000000 call dword ptr ds:[ecx+8C]
00566F1E . 33C0 xor eax,eax
00566F20 . 55 push ebp
00566F21 . 68 646F5600 push dumped_.00566F64
00566F26 . 64:FF30 push dword ptr fs:[eax]
00566F29 . 64:8920 mov dword ptr fs:[eax],esp
00566F2C . 8D8D 60FBFFFF lea ecx,dword ptr ss:[ebp-4A0]
00566F32 . BA 02000000 mov edx,2
00566F37 . 8BC3 mov eax,ebx
00566F39 . 8B38 mov edi,dword ptr ds:[eax]
00566F3B . FF57 0C call dword ptr ds:[edi+C]
00566F3E . 8B95 60FBFFFF mov edx,dword ptr ss:[ebp-4A0] ; 文件地质
00566F44 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566F49 . 8B80 B0030000 mov eax,dword ptr ds:[eax+3B0]
00566F4F . 8B4D FC mov ecx,dword ptr ss:[ebp-4]
00566F52 . E8 AD4AFFFF call dumped_.0055BA04
00566F57 . 33C0 xor eax,eax
00566F59 . 5A pop edx
00566F5A . 59 pop ecx
00566F5B . 59 pop ecx
00566F5C . 64:8910 mov dword ptr fs:[eax],edx
00566F5F . E9 81000000 jmp dumped_.00566FE5
00566F64 .^ E9 73D1E9FF jmp dumped_.004040DC
00566F69 . 8B45 FC mov eax,dword ptr ss:[ebp-4]
00566F6C . E8 8BCCE9FF call dumped_.00403BFC
00566F71 . 8B45 F8 mov eax,dword ptr ss:[ebp-8]
00566F74 . E8 83CCE9FF call dumped_.00403BFC
00566F79 . 8D8D 5CFBFFFF lea ecx,dword ptr ss:[ebp-4A4]
00566F7F . BA FC785600 mov edx,dumped_.005678FC ; 20050101
00566F84 . B8 887E5600 mov eax,dumped_.00567E88 ; 6f792d0eedcc0535197cc225f296292cfcf2f69b5b0a1178
00566F89 . E8 DEE7FDFF call dumped_.0054576C
00566F8E . 8B95 5CFBFFFF mov edx,dword ptr ss:[ebp-4A4]
00566F94 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566F99 . 8B80 94030000 mov eax,dword ptr ds:[eax+394]
00566F9F . E8 7C50FAFF call dumped_.0050C020
00566FA4 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566FA9 . 8B80 B0030000 mov eax,dword ptr ds:[eax+3B0]
00566FAF . 8B10 mov edx,dword ptr ds:[eax]
00566FB1 . FF52 58 call dword ptr ds:[edx+58]
00566FB4 . A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566FB9 . 8B80 4C030000 mov eax,dword ptr ds:[eax+34C]
00566FBF . B2 01 mov dl,1
00566FC1 . 8B08 mov ecx,dword ptr ds:[eax]
00566FC3 . FF51 64 call dword ptr ds:[ecx+64]
00566FC6 . E8 79D4E9FF call dumped_.00404444
00566FCB . 33C0 xor eax,eax
00566FCD . 5A pop edx
00566FCE . 59 pop ecx
00566FCF . 59 pop ecx
00566FD0 . 64:8910 mov dword ptr fs:[eax],edx
00566FD3 . 33C0 xor eax,eax
00566FD5 . 5A pop edx
00566FD6 . 59 pop ecx
00566FD7 . 59 pop ecx
00566FD8 . 64:8910 mov dword ptr fs:[eax],edx
00566FDB . E9 59080000 jmp dumped_.00567839
00566FE0 . E8 5FD4E9FF call dumped_.00404444
00566FE5 > A1 E81D5D00 mov eax,dword ptr ds:[5D1DE8]
00566FEA . 8B80 B0030000 mov eax,dword ptr ds:[eax+3B0]
00566FF0 . 8B10 mov edx,dword ptr ds:[eax]
00566FF2 . FF52 58 call dword ptr ds:[edx+58]
00566FF5 . 6A 00 push 0 ; /Arg2 = 00000000
00566FF7 . 6A 00 push 0 ; |Arg1 = 00000000
00566FF9 . 8B45 FC mov eax,dword ptr ss:[ebp-4] ; |
00566FFC . E8 7F6CEBFF call dumped_.0041DC80 ; \dumped_.0041DC80

上一页  [1] [2] [3] [4] 下一页  

文章录入:cainiaowang    责任编辑:cainiaowang 
【字体: 】【发表评论】【加入收藏】【告诉好友】【打印此文】【关闭窗口
VIP 专 区
Copyright @2006 黑客风云 ●业务联系:QQ 联系怪人 联系奇人 Email:给怪人发邮件 给奇人发邮件
ICP备案:冀06009886