:00507222 8B8538FFFFFF mov eax, dword ptr [ebp+FFFFFF38] :00507228 E82F27F0FF call 0040995C :0050722D 0145D0 add dword ptr [ebp-30], eax :00507230 8D8530FFFFFF lea eax, dword ptr [ebp+FFFFFF30] :00507236 50 push eax :00507237 B905000000 mov ecx, 00000005 :0050723C BA0D000000 mov edx, 0000000D :00507241 8B45F4 mov eax, dword ptr [ebp-0C] :00507244 E8A344F3FF call 0043B6EC 取第三部分的假码 :00507249 8B8530FFFFFF mov eax, dword ptr [ebp+FFFFFF30] :0050724F 8D9534FFFFFF lea edx, dword ptr [ebp+FFFFFF34] :00507255 E892050000 call 005077EC :0050725A 8B9534FFFFFF mov edx, dword ptr [ebp+FFFFFF34] :00507260 8B45EC mov eax, dword ptr [ebp-14] :00507263 E80CDEEFFF call 00405074 第三部分的经过变换的真假注册码相比 :00507268 7409 je 00507273 相等就跳到注册码第四部分的 计算,否则去死(爆破点) :0050726A C645F300 mov [ebp-0D], 00 :0050726E E94C030000 jmp 005075BF进入讨论组讨论。
|