00406729 |. /0F84 18040000 je 第七课作.00406B47 ; nop掉,大跳转开始 0040672F |. |B8 3CC65500 mov eax,第七课作.0055C63C ; v_geta 00406734 |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 00406737 |. |8D45 F4 lea eax,[local.3] 0040673A |. |50 push eax ; kernel32.BaseThreadInitThunk 0040673B |. |E8 F9060000 call 第七课作.00406E39 00406740 |. |8B5D F4 mov ebx,[local.3] 00406743 |. |85DB test ebx,ebx 00406745 |. |74 09 je short 第七课作.00406750 00406747 |. |53 push ebx 00406748 |. |E8 E9360000 call 第七课作.00409E36 0040674D |. |83C4 04 add esp,0x4 00406750 |> |68 01030080 push 0x80000301 00406755 |. |6A 00 push 0x0 00406757 |. |FF75 FC push [local.1] 0040675A |. |68 01000000 push 0x1 0040675F |. |BB 10B04000 mov ebx,第七课作.0040B010 00406764 |. |E8 E5360000 call 第七课作.00409E4E 00406769 |. |83C4 10 add esp,0x10 0040676C |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 0040676F |. |68 01030080 push 0x80000301 00406774 |. |6A 00 push 0x0 00406776 |. |FF75 F8 push [local.2] ; kernel32.76A4336A 00406779 |. |68 01000000 push 0x1 0040677E |. |BB 10B04000 mov ebx,第七课作.0040B010 00406783 |. |E8 C6360000 call 第七课作.00409E4E 00406788 |. |83C4 10 add esp,0x10 0040678B |. |8945 F0 mov [local.4],eax ; kernel32.BaseThreadInitThunk 0040678E |. |FF75 F0 push [local.4] 00406791 |. |68 12C65500 push 第七课作.0055C612 ; , 00406796 |. |FF75 F4 push [local.3] 00406799 |. |68 5BC65500 push 第七课作.0055C65B ; v_getb, 0040679E |. |B9 04000000 mov ecx,0x4 004067A3 |. |E8 CEEEFFFF call 第七课作.00405676 004067A8 |. |83C4 10 add esp,0x10 004067AB |. |8945 EC mov [local.5],eax ; kernel32.BaseThreadInitThunk 004067AE |. |8B5D F4 mov ebx,[local.3] 004067B1 |. |85DB test ebx,ebx 004067B3 |. |74 09 je short 第七课作.004067BE 004067B5 |. |53 push ebx 004067B6 |. |E8 7B360000 call 第七课作.00409E36 004067BB |. |83C4 04 add esp,0x4 004067BE |> |8B5D F0 mov ebx,[local.4] 004067C1 |. |85DB test ebx,ebx 004067C3 |. |74 09 je short 第七课作.004067CE 004067C5 |. |53 push ebx 004067C6 |. |E8 6B360000 call 第七课作.00409E36 004067CB |. |83C4 04 add esp,0x4 004067CE |> |8D45 EC lea eax,[local.5] 004067D1 |. |50 push eax ; kernel32.BaseThreadInitThunk 004067D2 |. |E8 AD030000 call 第七课作.00406B84 004067D7 |. |8945 E8 mov [local.6],eax ; kernel32.BaseThreadInitThunk 004067DA |. |8B5D EC mov ebx,[local.5] 004067DD |. |85DB test ebx,ebx 004067DF |. |74 09 je short 第七课作.004067EA 004067E1 |. |53 push ebx 004067E2 |. |E8 4F360000 call 第七课作.00409E36 004067E7 |. |83C4 04 add esp,0x4 004067EA |> |68 04000080 push 0x80000004 004067EF |. |6A 00 push 0x0 004067F1 |. |8B45 E8 mov eax,[local.6] 004067F4 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 004067F6 |. |75 05 jnz short 第七课作.004067FD 004067F8 |. |B8 3E264900 mov eax,第七课作.0049263E 004067FD |> |50 push eax ; kernel32.BaseThreadInitThunk 004067FE |. |68 01000000 push 0x1 00406803 |. |BB 50A64000 mov ebx,第七课作.0040A650 00406808 |. |E8 41360000 call 第七课作.00409E4E 0040680D |. |83C4 10 add esp,0x10 00406810 |. |8945 E4 mov [local.7],eax ; kernel32.BaseThreadInitThunk 00406813 |. |8B5D E8 mov ebx,[local.6] 00406816 |. |85DB test ebx,ebx 00406818 |. |74 09 je short 第七课作.00406823 0040681A |. |53 push ebx 0040681B |. |E8 16360000 call 第七课作.00409E36 00406820 |. |83C4 04 add esp,0x4 00406823 |> |DB45 FC fild [local.1] 00406826 |. |DD5D DC fstp qword ptr ss:[ebp-0x24] 00406829 |. |DD45 DC fld qword ptr ss:[ebp-0x24] 0040682C |. |DB45 F8 fild [local.2] 0040682F |. |DD5D D4 fstp qword ptr ss:[ebp-0x2C] 00406832 |. |DC45 D4 fadd qword ptr ss:[ebp-0x2C] 00406835 |. |DD5D CC fstp qword ptr ss:[ebp-0x34] 00406838 |. |DB45 E4 fild [local.7] 0040683B |. |DD5D C4 fstp qword ptr ss:[ebp-0x3C] 0040683E |. |DD45 C4 fld qword ptr ss:[ebp-0x3C] 00406841 |. |DC65 CC fsub qword ptr ss:[ebp-0x34] 00406844 |. |D9E4 ftst 00406846 |. |DFE0 fstsw ax 00406848 |. |F6C4 01 test ah,0x1 0040684B |. |74 02 je short 第七课作.0040684F 0040684D |. |D9E0 fchs 0040684F |> |DC1D 63C65500 fcomp qword ptr ds:[0x55C663] 00406855 |. |DFE0 fstsw ax 00406857 |. |F6C4 41 test ah,0x41 0040685A |. |0F84 E7020000 je 第七课作.00406B47 ; nop掉 00406860 |. |B8 3CC65500 mov eax,第七课作.0055C63C ; v_geta 00406865 |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 00406868 |. |8D45 F4 lea eax,[local.3] 0040686B |. |50 push eax ; kernel32.BaseThreadInitThunk 0040686C |. |E8 13030000 call 第七课作.00406B84 00406871 |. |8945 F0 mov [local.4],eax ; kernel32.BaseThreadInitThunk 00406874 |. |8B5D F4 mov ebx,[local.3] 00406877 |. |85DB test ebx,ebx 00406879 |. |74 09 je short 第七课作.00406884 0040687B |. |53 push ebx 0040687C |. |E8 B5350000 call 第七课作.00409E36 00406881 |. |83C4 04 add esp,0x4 00406884 |> |68 04000080 push 0x80000004 00406889 |. |6A 00 push 0x0 0040688B |. |8B45 F0 mov eax,[local.4] 0040688E |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406890 |. |75 05 jnz short 第七课作.00406897 00406892 |. |B8 3E264900 mov eax,第七课作.0049263E 00406897 |> |50 push eax ; kernel32.BaseThreadInitThunk 00406898 |. |68 01000000 push 0x1 0040689D |. |BB F0AC4000 mov ebx,第七课作.0040ACF0 004068A2 |. |E8 A7350000 call 第七课作.00409E4E 004068A7 |. |83C4 10 add esp,0x10 004068AA |. |8945 EC mov [local.5],eax ; kernel32.BaseThreadInitThunk 004068AD |. |8B5D F0 mov ebx,[local.4] 004068B0 |. |85DB test ebx,ebx 004068B2 |. |74 09 je short 第七课作.004068BD 004068B4 |. |53 push ebx 004068B5 |. |E8 7C350000 call 第七课作.00409E36 004068BA |. |83C4 04 add esp,0x4 004068BD |> |B8 43C65500 mov eax,第七课作.0055C643 004068C2 |. |33C9 xor ecx,ecx 004068C4 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 004068C6 |. |74 03 je short 第七课作.004068CB 004068C8 |. |8B48 04 mov ecx,dword ptr ds:[eax+0x4] 004068CB |> |51 push ecx 004068CC |. |83C0 08 add eax,0x8 004068CF |. |50 push eax ; kernel32.BaseThreadInitThunk 004068D0 |. |8B45 EC mov eax,[local.5] 004068D3 |. |33DB xor ebx,ebx 004068D5 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 004068D7 |. |74 03 je short 第七课作.004068DC 004068D9 |. |8B58 04 mov ebx,dword ptr ds:[eax+0x4] 004068DC |> |83C0 08 add eax,0x8 004068DF |. |50 push eax ; kernel32.BaseThreadInitThunk 004068E0 |. |3BD9 cmp ebx,ecx 004068E2 |. |B8 01000000 mov eax,0x1 004068E7 |. |75 0A jnz short 第七课作.004068F3 004068E9 |. |48 dec eax ; kernel32.BaseThreadInitThunk 004068EA |. |85C9 test ecx,ecx 004068EC |. |74 05 je short 第七课作.004068F3 004068EE |. |E8 62FCFFFF call 第七课作.00406555 004068F3 |> |83C4 0C add esp,0xC 004068F6 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 004068F8 |. |B8 00000000 mov eax,0x0 004068FD |. |0f94c0 sete al 00406900 |. |8945 E8 mov [local.6],eax ; kernel32.BaseThreadInitThunk 00406903 |. |8B5D EC mov ebx,[local.5] 00406906 |. |85DB test ebx,ebx 00406908 |. |74 09 je short 第七课作.00406913 0040690A |. |53 push ebx 0040690B |. |E8 26350000 call 第七课作.00409E36 00406910 |. |83C4 04 add esp,0x4 00406913 |> |837D E8 00 cmp [local.6],0x0 00406917 |. |0F84 2A020000 je 第七课作.00406B47 ; nop掉 0040691D |. |68 01000000 push 0x1 00406922 |. |E8 16060000 call 第七课作.00406F3D 00406927 |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 0040692A |. |68 04000080 push 0x80000004 0040692F |. |6A 00 push 0x0 00406931 |. |8B45 F4 mov eax,[local.3] 00406934 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406936 |. |75 05 jnz short 第七课作.0040693D 00406938 |. |B8 3E264900 mov eax,第七课作.0049263E 0040693D |> |50 push eax ; kernel32.BaseThreadInitThunk 0040693E |. |68 01000000 push 0x1 00406943 |. |BB F0AC4000 mov ebx,第七课作.0040ACF0 00406948 |. |E8 01350000 call 第七课作.00409E4E 0040694D |. |83C4 10 add esp,0x10 00406950 |. |8945 F0 mov [local.4],eax ; kernel32.BaseThreadInitThunk 00406953 |. |8B5D F4 mov ebx,[local.3] 00406956 |. |85DB test ebx,ebx 00406958 |. |74 09 je short 第七课作.00406963 0040695A |. |53 push ebx 0040695B |. |E8 D6340000 call 第七课作.00409E36 00406960 |. |83C4 04 add esp,0x4 00406963 |> |B8 6BC65500 mov eax,第七课作.0055C66B 00406968 |. |33C9 xor ecx,ecx 0040696A |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 0040696C |. |74 03 je short 第七课作.00406971 0040696E |. |8B48 04 mov ecx,dword ptr ds:[eax+0x4] 00406971 |> |51 push ecx 00406972 |. |83C0 08 add eax,0x8 00406975 |. |50 push eax ; kernel32.BaseThreadInitThunk 00406976 |. |8B45 F0 mov eax,[local.4] 00406979 |. |33DB xor ebx,ebx 0040697B |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 0040697D |. |74 03 je short 第七课作.00406982 0040697F |. |8B58 04 mov ebx,dword ptr ds:[eax+0x4] 00406982 |> |83C0 08 add eax,0x8 00406985 |. |50 push eax ; kernel32.BaseThreadInitThunk 00406986 |. |3BD9 cmp ebx,ecx 00406988 |. |B8 01000000 mov eax,0x1 0040698D |. |75 0A jnz short 第七课作.00406999 0040698F |. |48 dec eax ; kernel32.BaseThreadInitThunk 00406990 |. |85C9 test ecx,ecx 00406992 |. |74 05 je short 第七课作.00406999 00406994 |. |E8 BCFBFFFF call 第七课作.00406555 00406999 |> |83C4 0C add esp,0xC 0040699C |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 0040699E |. |B8 00000000 mov eax,0x0 004069A3 |. |0f94c0 sete al 004069A6 |. |8945 EC mov [local.5],eax ; kernel32.BaseThreadInitThunk 004069A9 |. |8B5D F0 mov ebx,[local.4] 004069AC |. |85DB test ebx,ebx 004069AE |. |74 09 je short 第七课作.004069B9 004069B0 |. |53 push ebx 004069B1 |. |E8 80340000 call 第七课作.00409E36 004069B6 |. |83C4 04 add esp,0x4 004069B9 |> |837D EC 00 cmp [local.5],0x0 004069BD |. |0F84 84010000 je 第七课作.00406B47 ; nop掉 004069C3 |. |68 02000000 push 0x2 004069C8 |. |E8 70050000 call 第七课作.00406F3D 004069CD |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 004069D0 |. |68 04000080 push 0x80000004 004069D5 |. |6A 00 push 0x0 004069D7 |. |8B45 F4 mov eax,[local.3] 004069DA |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 004069DC |. |75 05 jnz short 第七课作.004069E3 004069DE |. |B8 3E264900 mov eax,第七课作.0049263E 004069E3 |> |50 push eax ; kernel32.BaseThreadInitThunk 004069E4 |. |68 01000000 push 0x1 004069E9 |. |BB F0AC4000 mov ebx,第七课作.0040ACF0 004069EE |. |E8 5B340000 call 第七课作.00409E4E 004069F3 |. |83C4 10 add esp,0x10 004069F6 |. |8945 F0 mov [local.4],eax ; kernel32.BaseThreadInitThunk 004069F9 |. |8B5D F4 mov ebx,[local.3] 004069FC |. |85DB test ebx,ebx 004069FE |. |74 09 je short 第七课作.00406A09 00406A00 |. |53 push ebx 00406A01 |. |E8 30340000 call 第七课作.00409E36 00406A06 |. |83C4 04 add esp,0x4 00406A09 |> |B8 7EC65500 mov eax,第七课作.0055C67E 00406A0E |. |33C9 xor ecx,ecx 00406A10 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406A12 |. |74 03 je short 第七课作.00406A17 00406A14 |. |8B48 04 mov ecx,dword ptr ds:[eax+0x4] 00406A17 |> |51 push ecx 00406A18 |. |83C0 08 add eax,0x8 00406A1B |. |50 push eax ; kernel32.BaseThreadInitThunk 00406A1C |. |8B45 F0 mov eax,[local.4] 00406A1F |. |33DB xor ebx,ebx 00406A21 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406A23 |. |74 03 je short 第七课作.00406A28 00406A25 |. |8B58 04 mov ebx,dword ptr ds:[eax+0x4] 00406A28 |> |83C0 08 add eax,0x8 00406A2B |. |50 push eax ; kernel32.BaseThreadInitThunk 00406A2C |. |3BD9 cmp ebx,ecx 00406A2E |. |B8 01000000 mov eax,0x1 00406A33 |. |75 0A jnz short 第七课作.00406A3F 00406A35 |. |48 dec eax ; kernel32.BaseThreadInitThunk 00406A36 |. |85C9 test ecx,ecx 00406A38 |. |74 05 je short 第七课作.00406A3F 00406A3A |. |E8 16FBFFFF call 第七课作.00406555 00406A3F |> |83C4 0C add esp,0xC 00406A42 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406A44 |. |B8 00000000 mov eax,0x0 00406A49 |. |0f94c0 sete al 00406A4C |. |8945 EC mov [local.5],eax ; kernel32.BaseThreadInitThunk 00406A4F |. |8B5D F0 mov ebx,[local.4] 00406A52 |. |85DB test ebx,ebx 00406A54 |. |74 09 je short 第七课作.00406A5F 00406A56 |. |53 push ebx 00406A57 |. |E8 DA330000 call 第七课作.00409E36 00406A5C |. |83C4 04 add esp,0x4 00406A5F |> |837D EC 00 cmp [local.5],0x0 00406A63 |. |0F84 DE000000 je 第七课作.00406B47 ; nop掉 00406A69 |. |68 0F000000 push 0xF 00406A6E |. |E8 CA040000 call 第七课作.00406F3D 00406A73 |. |8945 F4 mov [local.3],eax ; kernel32.BaseThreadInitThunk 00406A76 |. |68 04000080 push 0x80000004 00406A7B |. |6A 00 push 0x0 00406A7D |. |8B45 F4 mov eax,[local.3] 00406A80 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406A82 |. |75 05 jnz short 第七课作.00406A89 00406A84 |. |B8 3E264900 mov eax,第七课作.0049263E 00406A89 |> |50 push eax ; kernel32.BaseThreadInitThunk 00406A8A |. |68 01000000 push 0x1 00406A8F |. |BB F0AC4000 mov ebx,第七课作.0040ACF0 00406A94 |. |E8 B5330000 call 第七课作.00409E4E 00406A99 |. |83C4 10 add esp,0x10 00406A9C |. |8945 F0 mov [local.4],eax ; kernel32.BaseThreadInitThunk 00406A9F |. |8B5D F4 mov ebx,[local.3] 00406AA2 |. |85DB test ebx,ebx 00406AA4 |. |74 09 je short 第七课作.00406AAF 00406AA6 |. |53 push ebx 00406AA7 |. |E8 8A330000 call 第七课作.00409E36 00406AAC |. |83C4 04 add esp,0x4 00406AAF |> |B8 91C65500 mov eax,第七课作.0055C691 00406AB4 |. |33C9 xor ecx,ecx 00406AB6 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406AB8 |. |74 03 je short 第七课作.00406ABD 00406ABA |. |8B48 04 mov ecx,dword ptr ds:[eax+0x4] 00406ABD |> |51 push ecx 00406ABE |. |83C0 08 add eax,0x8 00406AC1 |. |50 push eax ; kernel32.BaseThreadInitThunk 00406AC2 |. |8B45 F0 mov eax,[local.4] 00406AC5 |. |33DB xor ebx,ebx 00406AC7 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406AC9 |. |74 03 je short 第七课作.00406ACE 00406ACB |. |8B58 04 mov ebx,dword ptr ds:[eax+0x4] 00406ACE |> |83C0 08 add eax,0x8 00406AD1 |. |50 push eax ; kernel32.BaseThreadInitThunk 00406AD2 |. |3BD9 cmp ebx,ecx 00406AD4 |. |B8 01000000 mov eax,0x1 00406AD9 |. |75 0A jnz short 第七课作.00406AE5 00406ADB |. |48 dec eax ; kernel32.BaseThreadInitThunk 00406ADC |. |85C9 test ecx,ecx 00406ADE |. |74 05 je short 第七课作.00406AE5 00406AE0 |. |E8 70FAFFFF call 第七课作.00406555 00406AE5 |> |83C4 0C add esp,0xC 00406AE8 |. |85C0 test eax,eax ; kernel32.BaseThreadInitThunk 00406AEA |. |B8 00000000 mov eax,0x0 00406AEF |. |0f94c0 sete al 00406AF2 |. |8945 EC mov [local.5],eax ; kernel32.BaseThreadInitThunk 00406AF5 |. |8B5D F0 mov ebx,[local.4] 00406AF8 |. |85DB test ebx,ebx 00406AFA |. |74 09 je short 第七课作.00406B05 00406AFC |. |53 push ebx 00406AFD |. |E8 34330000 call 第七课作.00409E36 00406B02 |. |83C4 04 add esp,0x4 00406B05 |> |837D EC 00 cmp [local.5],0x0 00406B09 |. |0F84 38000000 je 第七课作.00406B47 ; nop掉 00406B0F |. |6A 00 push 0x0 00406B11 |. |6A 00 push 0x0 00406B13 |. |6A 00 push 0x0 00406B15 |. |68 04000080 push 0x80000004 00406B1A |. |6A 00 push 0x0 00406B1C |. |68 B0C65500 push 第七课作.0055C6B0 ; 三级效验通过 00406B21 |. |68 0F000100 push 0x1000F 00406B26 |. |68 7D6B0116 push 0x16016B7D 00406B2B |. |68 2B010152 push 0x5201012B 00406B30 |. |68 03000000 push 0x3 00406B35 |. |BB E0B94000 mov ebx,第七课作.0040B9E0 00406B3A |. |E8 0F330000 call 第七课作.00409E4E 00406B3F |. |83C4 28 add esp,0x28 00406B42 |. |E9 39000000 jmp 第七课作.00406B80 00406B47 |> \BB 06000000 mov ebx,0x6 ; nop掉,大跳转终点
|