通达信伪娘暴力工具修改 源代码
-
相关简介:通达信伪娘暴力工具修改 附件: 伪娘暴力工具修改.rar (5.23 KB) 本贴作为技术探讨,下面内容如对你或你公司造成影响。请你第一时间联系管理员删除本贴。 因为功夫版有文件校验放弃,我们以 2014 伪 X 版为例: 首先 od 载人,然后中文搜索字符串【用户名:】,找到后双击他下面一行来到代码处: 00408745|.83C4 04 add esp,0x4 00408748|C1E0 03 shl eax,0x3 0040874B|.03D8 add ebx,eax 0040874
-
文章来源:股海网作者:股海网发布时间:2017-11-05浏览次数:
通达信伪娘暴力工具修改
附件:
伪娘暴力工具修改.rar (5.23 KB)
本贴作为技术探讨,下面内容如对你或你公司造成影响。请你第一时间联系管理员删除本贴。
因为功夫版有文件校验放弃,我们以2014伪X版为例:
首先od载人,然后中文搜索字符串【用户名:】,找到后双击他下面一行来到代码处:
00408745 |. 83C4 04 add esp,0x4
00408748 |> C1E0 03 shl eax,0x3
0040874B |. 03D8 add ebx,eax
0040874D |. 895D FC mov [local.1],ebx
00408750 68 72584900 push 优化版.00495872 ; 00 35 32 74 64 78 00 00 00 00 00 00 00 00 00 00 00 00
00408755 FF35 D4335000 push dword ptr ds:[0x5033D4]
0040875B 68 A9584900 push 优化版.004958A9 ; 0C 01 18 7B 00 01 20 00 20 00 1E 00
00408760 |. B9 03000000 mov ecx,0x3
00408765 |. E8 4E91FFFF call 优化版.004018B8
然后修改成如下
00408745 |. 83C4 04 add esp,0x4
00408748 |> C1E0 03 shl eax,0x3
0040874B |. 03D8 add ebx,eax
0040874D |. 895D FC mov [local.1],ebx
00408750 68 402C4900 push 优化版.00492C40 ; 0C 01 18 7B 00 01 1A 01 1A 01 0B 00 88 60 33
00408755 6A 00 push 0x0
00408757 6A 00 push 0x0
00408759 90 nop
0040875A 90 nop
0040875B 90 nop ; 0C 01 18 7B 00 01 20 00 20 00 1E 00
0040875C 90 nop
0040875D 90 nop
0040875E 90 nop
0040875F 90 nop
00408760 |. B9 03000000 mov ecx,0x3
00408765 |. E8 4E91FFFF call 优化版.004018B8
0040876A |. 83C4 0C add esp,0xC
看到第1个push地址吗?
00492C40这个就是我们尾部要加代码的地方。这个地方加1个292大的封包,注意加入代码的格式和完整性.
00492C3D 00 db 00
00492C3E 00 db 00
00492C3F 00 db 00
00492C40 . 30 43 20 30 3>ascii "
00492C50 . 31 20 31 41 2>ascii "1 1A 01 1A 01 0B"
00492C60 . 20 30 30 20 3>ascii " 00 88 60 33
00492C70 . 33 35 20 35 3>ascii "35 58 F7 26 ED B"
00492C80 . 35 20 30 32 2>ascii "5 02 DA 87
00492C90 . 20 44 31 20 3>ascii " D1 74 99 33 AE "
00492CA0 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492CB0 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492CC0 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492CD0 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492CE0 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492CF0 . 20 35 37 20 4>ascii " 57 CB B2 1A
00492D00 . 35 35 20 44 3>ascii "55 D8 AA FC 74 9"
00492D10 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492D20 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492D30 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492D40 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492D50 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492D60 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492D70 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492D80 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492D90 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492DA0 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492DB0 . 20 35 37 20 3>ascii " 57 27 1B 3B 22 "
00492DC0 . 35 32 20 32 4>ascii "52 2A 87 F5 04 1"
00492DD0 . 46 20 35 43 2>ascii "F
00492DE0 . 20 46 38 20 3>ascii " F8 74 99 33 AE "
00492DF0 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492E00 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492E10 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492E20 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492E30 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492E40 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492E50 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492E60 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492E70 . 20 35 37 20 3>ascii " 57 4A
00492E80 . 36 37 20 30 4>ascii "67 0E 41 36 DC 8"
00492E90 . 32 20 32 46 2>ascii "2
00492EA0 . 20 36 35 20 3>ascii " 65 74 99 33 AE "
00492EB0 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492EC0 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492ED0 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492EE0 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492EF0 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492F00 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492F10 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492F20 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492F30 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492F40 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492F50 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492F60 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492F70 . 32 37 20 37 3>ascii "27 70 03 57 74 9"
00492F80 . 39 20 33 33 2>ascii "9 33 AE 27 70 03"
00492F90 . 20 35 37 20 3>ascii " 57 74 99 33 AE "
00492FA0 . 32 37 20 37 3>ascii "27 70 03 57",0
00492FAC 00 db 00
|