首页
社区
课程
招聘
[讨论]不是吧....网站未备案
发表于: 2007-1-23 09:50 3502

[讨论]不是吧....网站未备案

2007-1-23 09:50
3502
我用百度搜的。.




再问下.

用Stripper 2.11 RC2
脱Version: ASProtect 1.31 build 05.18 RC
脱掉后不能运行

脱壳日志..
stripper v2.11 rc2..
(c) by syd, 2002-2004..

21:52:30 - open vey.exe..
21:52:31 - starting d:\vey.exe..
Victim ImageBase - 00400000
Victim EntryPoint - 00001000
21:52:31 - unhandled break at 00ecc111..
21:52:32 - asprotect detected..
21:52:32 - loading modules..
21:52:32 - hooking modules..
0x00e80000 - module kernel32.dll export hooked..
0x00e90000 - module msvbvm60.dll export hooked..
0x00ea0000 - module user32.dll export hooked..
0x01130000 - module gdi32.dll export hooked..
0x01140000 - module advapi32.dll export hooked..
0x01150000 - module rpcrt4.dll export hooked..
0x01160000 - module ole32.dll export hooked..
0x01170000 - module msvcrt.dll export hooked..
0x01180000 - module oleaut32.dll export hooked..
0x01190000 - module imm32.dll export hooked..
0x011a0000 - module lpk.dll export hooked..
0x011b0000 - module usp10.dll export hooked..
0x011c0000 - module version.dll export hooked..
0x011d0000 - module wsock32.dll export hooked..
0x011e0000 - module ws2_32.dll export hooked..
0x011f0000 - module ws2help.dll export hooked..
0x01200000 - module uxtheme.dll export hooked..
21:52:32 - unhandled break at 00ecc111..
21:52:32 - unhandled break at 00ecc173..
21:52:32 - tracing..
21:52:32 - processing relocation..
21:52:32 - processing import..
Unrecognized function at address: 00ec3fbc
21:52:33 - comparing sections..
Difference at RVA: 000010e8 (.text), unpacked - 19 a0 00 66
Difference at RVA: 000010e8 (.text), presented - bc 3f ec 00
Original EntryPoint :00002520
21:52:33 - saving D:\_vey.exe..
21:52:33 - done..


听论坛里的skylly说
把RVA 10E8处改一下就可以了。

还有..
最初由 笨笨雄 发布
自己调试。。。。

改RVA可以用WINHEX。。


但。.具体怎么操作呢...
可不可以说的清楚点~~~.
我是个新手..不太懂.

[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课

收藏
免费 0
支持
分享
最新回复 (2)
雪    币: 200
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
2
2007-1-23 12:15
0
雪    币: 58782
活跃值: (21926)
能力值: (RANK:350 )
在线值:
发帖
回帖
粉丝
3
前天服务器维护,将bbs.pediy.com转向498K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4m8W2k6r3W2&6i4K6u0W2j5$3!0E0i4@1g2r3i4@1u0o6i4K6S2o6i4@1f1@1i4@1t1^5i4@1q4p5i4@1f1&6i4K6V1%4i4@1t1@1i4@1f1#2i4K6R3^5i4@1p5&6i4@1f1%4i4K6V1@1i4@1p5^5i4@1f1@1i4@1u0m8i4K6R3$3i4@1f1@1i4@1t1^5i4K6R3H3i4@1f1#2i4K6W2r3i4K6W2r3i4@1f1#2i4K6V1H3i4K6S2p5i4@1f1@1i4@1t1^5i4@1q4p5i4@1f1^5i4@1u0p5i4@1q4o6i4@1f1$3i4K6W2o6i4K6S2p5i4@1f1#2i4K6S2m8i4@1p5I4i4@1f1#2i4K6V1&6i4@1p5^5i4@1g2r3i4@1u0o6i4K6S2o6i4@1f1#2i4K6V1H3i4K6S2q4i4@1f1$3i4K6W2p5i4@1p5#2i4@1f1$3i4K6R3I4i4@1p5J5i4@1f1#2i4@1p5@1i4K6S2p5i4@1f1$3i4K6V1%4i4@1t1$3i4@1g2r3i4@1u0o6i4K6S2o6i4@1f1%4i4K6V1@1i4@1t1I4i4@1f1@1i4@1u0m8i4K6S2q4c8p5&6e0i4@1f1^5i4@1p5%4i4@1p5K6i4@1f1$3i4K6W2q4i4K6V1H3i4@1f1#2i4@1u0n7i4@1t1$3i4@1f1$3i4K6V1%4i4@1t1$3i4@1g2r3i4@1u0o6i4K6S2o6i4@1f1&6i4K6R3K6i4@1p5^5i4@1f1#2i4K6R3^5i4K6R3$3i4@1f1%4i4K6V1@1i4@1p5^5i4@1f1$3i4K6R3^5i4@1t1%4i4@1f1#2i4@1t1H3i4@1t1I4i4@1f1%4i4K6W2n7i4@1t1@1i4@1f1$3i4K6S2q4i4@1p5#2i4@1f1^5i4@1q4q4i4@1u0r3i4@1f1&6i4K6V1%4i4@1q4q4i4@1f1#2i4K6R3^5i4@1t1H3i4@1f1^5i4@1u0r3i4K6V1&6i4@1f1@1i4@1t1^5i4@1q4m8i4@1f1@1i4@1t1^5i4@1q4p5i4@1f1^5i4@1u0p5i4@1q4o6i4@1f1$3i4K6W2o6i4K6S2p5i4@1f1#2i4K6S2m8i4@1p5I4i4@1f1#2i4K6V1&6i4@1p5^5i4@1f1@1i4@1t1^5i4K6S2m8i4@1f1#2i4K6S2q4i4@1u0n7i4@1f1@1i4@1u0m8i4K6R3$3i4@1g2r3i4@1u0o6i4K6S2o6i4@1f1#2i4@1t1H3i4@1t1I4i4@1f1^5i4@1u0r3i4K6V1&6i4@1f1$3i4K6S2r3i4K6V1H3i4@1f1%4i4@1p5@1i4@1u0m8
2007-1-23 12:25
0
游客
登录 | 注册 方可回帖
返回