系统 : Windows xp

程序 : abexcrackme3

程序下载地址 :http://pan.baidu.com/s/1mh3TiqO

要求 : 伪造Keyfile

使用工具 :IDA

可在看雪论坛中查找关于此程序的破文:http://bbs.pediy.com/showthread.php?t=30192

IDA载入程序,找出提示破解成功的字串“Yep, keyfile found!”并定位关键代码:

CODE: ; =============== S U B R O U T I N E =======================================
CODE:
CODE: ; Attributes: noreturn
CODE:
CODE: public start
CODE: start proc near
CODE: push ; uType
CODE: push offset Caption ; "abex' 3rd crackme"
CODE: push offset Text ; "Click OK to check for the keyfile."
CODE:0040100C push ; hWnd
CODE:0040100E call MessageBoxA
CODE: push ; hTemplateFile
CODE: push 80h ; dwFlagsAndAttributes
CODE:0040101A push ; dwCreationDisposition
CODE:0040101C push ; lpSecurityAttributes
CODE:0040101E push ; dwShareMode
CODE: push 80000000h ; dwDesiredAccess
CODE: push offset FileName ; "abex.l2c"
CODE:0040102A call CreateFileA
CODE:0040102F mov ds:hFile, eax
CODE: cmp eax, 0FFFFFFFFh
CODE: jz short loc_401075
CODE: push ; lpFileSizeHigh
CODE:0040103B push ds:hFile ; hFile
CODE: call GetFileSize
CODE: cmp eax, 12h
CODE: jnz short loc_401060
CODE:0040104B push ; uType
CODE:0040104D push offset aWellDone ; "Well done!"
CODE: push offset aYepKeyfileFoun ; "Yep, keyfile found!"
CODE: push ; hWnd
CODE: call MessageBoxA
CODE:0040105E jmp short loc_401088
CODE: ; ---------------------------------------------------------------------------
CODE:
CODE: loc_401060: ; CODE XREF: start+49j
CODE: push ; uType
CODE: push offset aError ; "Error"
CODE: push offset aTheFoundFileIs ; "The found file is not a valid keyfile!"
CODE:0040106C push ; hWnd
CODE:0040106E call MessageBoxA
CODE: jmp short loc_401088
CODE: ; ---------------------------------------------------------------------------
CODE:
CODE: loc_401075: ; CODE XREF: start+37j
CODE: push ; uType
CODE: push offset aError_0 ; "Error"
CODE:0040107C push offset aHmmmmmICanTFin ; "Hmmmmm, I can't find the file!"
CODE: push ; hWnd
CODE: call MessageBoxA
CODE:
CODE: loc_401088: ; CODE XREF: start+5Ej
CODE: ; start+73j
CODE: call ExitProcess
CODE: start endp ; sp-analysis failed
CODE:

程序查找一个Keyfile,文件名为“abex.l2c”,文件长度应为18字节,这样就可以通过验证。在abexcrackme3程序路径下新建文件,文件名为“abex.l2c”,用记事本打开并将内容设置为“012345678901234567”再运行abexcrackme3即可通过验证:

最新文章

  1. 2.0 (1)安装MongoDB
  2. (转)学习使用Jmeter做压力测试(一)--压力测试基本概念
  3. Aurelia – 模块化,简单,可测试的 JS 框架
  4. [BZOJ2438]杀人游戏(缩点+特判)
  5. pause 和 title
  6. Java基础之在窗口中绘图——显示曲线的控制点(CurveApplet 2 displaying control points)
  7. Js_字符串操作
  8. 线性函数拟合R语言示例
  9. Jquery动画效果--地铁站名指示等效果
  10. 【转】使用Auto Layout中的VFL(Visual format language)--代码实现自动布局
  11. adb logcat 查看日志
  12. InnoDB MyISAM区别及优化(摘录)
  13. hadoop 2.0--YARN
  14. swift学习 - 分类(Extensions)
  15. 自制简易Linux系统
  16. stolon cloud native postgresql 高可用方案
  17. [转]GitHub for Windows 安装失败,An error occurred attempting to install github 的解决办法
  18. Excel各种条件求和的公式汇总
  19. 2D and 3D Linear Geometry Kernel ( Geometry Kernels) CGAL 4.13 -User Manual
  20. javaperformanceoptimization

热门文章

  1. 你需要知道的三个 CSS3技巧(转)
  2. BZOJ4007 [JLOI2015]战争调度
  3. php 采集类snoopy http://www.jb51.net/article/27568.htm | cURL、file_get_contents、snoopy.class.php 优缺点
  4. java面向对象编程——第二章 java基础语法
  5. oracle之to_char,to_date用法
  6. C#画线源码
  7. MONGODB 查询
  8. ng-repeat的group
  9. [开发笔记]-Visual Studio 2012中为创建的类添加注释的模板
  10. Hibernate中的一级缓存、二级缓存和懒加载