<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
	<channel>
		<title>晓风听雨轩</title>
		<link>http://suddymail.org//</link>
		<description>时光流逝，岁月飞沙，记录下的，才是真实的脚印~</description>
		<copyright>Copyright (C) 2004 Security Angel Team [S4T] All Rights Reserved.</copyright>
		<generator>SaBlog-X Version 1.6 Build 20080806</generator>
		<lastBuildDate>Mon, 06 Sep 2010 23:28:35 +0000</lastBuildDate>
		<ttl></ttl>
		<item>
			<guid>http://suddymail.org//show-213-1.html</guid>
			<title>Navicat Premium patch for 9.0.10(support for zh-cn,zh-ts,en)</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>Navicat Premium patch for 9.0.10， 支持简体中文，繁体中文和英文版本</p><br /><br /><a href="http://suddymail.org//show-213-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-213-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2010-07-20 10:43</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-211-1.html</guid>
			<title>Navicat Premium patch for 9.0.4</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p id="Content"><strong>New Key features for 9.0.4:</strong></p>
<p id="Content">- Support of SQLite</p>
<p id="Content">- Oracle PL/SQL Debugger</p>
<p id="Content">- Enhanced Code Completion</p>
<p id="Content">- Code Formatter</p>
<p id="Content">- Code outline</p>
<p id="Content">- Recovery of Documents from crashes</p>
<p id="Content">- Shortcut to open official online documents</p>
<p id="Content">- Option to show query results below query editor</p>
<p id="Content">- Storing favorite actions as shortcut</p>
<p id="Content">- Enhanced User Interface</p>
<p><br />
--------------------------------------------------------------------------------------------------------------------------------</p>
<p><a href="http://www.navicat.com/en/products/navicat_premium/premium_overview.html">Navicat Premium</a>是Navicat新出的一款整合<a href="http://www.navicat.com/en/products/navicat_mysql/mysql_overview.html">Navicat MySQL</a>, <a href="http://www.navicat.com/en/products/navicat_oracle/oracle_overview.html">Navicat Oracle</a>, <a href="http://www.navicat.com/en/products/navicat_pgsql/pgsql_overview.html">Navicat PostgreSQL</a>的全能数据库连接工具，通过他可以方便的对MySQL,Oracle,PostgreSQL进行访问和操作。</p>
<p>本着好用节约的原则，以无美感的暴力行为对起进行了节约化改造。（罪过罪过）。</p>
<p>使用方法：完成后复制patch到程序目录执行。安装程序官方有<a href="http://download.navicat.com/download/navicat9_premium_en.exe">下载</a>。</p>
<p>附上官方的软件说明：</p>
<p>Description:</p>
<p>Navicat Premium is a multi-connections Database Administration tool allowing you to connect to MySQL, Oracle and PostgreSQL databases simultaneously within a single application, making database administration to multiple kinds of database so easy.</p>
<p>Navicat Premium combines the functions of other Navicat members. With connections established to different database types, Navicat Premium supports data transfer between MySQL, Oracle and PostgreSQL. It supports most of the features in MySQL, Oracle and PostgreSQL including Stored Procedure, Event, Trigger, Function, View, etc.</p>
<p>Navicat Premium enables you to easily and quickly transfer data across various database systems, or to a plain text file with designated SQL format and encoding.</p>
<p>file info:</p>
<p>文件: navicat.premium.version.9.0.4-patch.exe<br />
大小: 265605 字节<br />
修改时间: 2010年4月28日, 17:29:41<br />
MD5: D52C830369516DF5AA6D2A64CD0BB252<br />
SHA1: E9A82AD9D37D13640875180A18AD7A91D5F4F341<br />
CRC32: CE2B01A8</p><br /><br /><b>附件: </b><a href="http://suddymail.org//attachment.php?id=107" target="_blank">navicat.premium.version.9.0.4-patch.rar</a> (169.4 K, 下载次数:1165)]]></description>
			<link>http://suddymail.org//show-211-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2010-04-28 17:32</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-203-1.html</guid>
			<title>半成品</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>ssh-tectia-6.1.0.668-keygen 支持server 和client版本</p>
<p>基于于Sayala!的那个keygen修改而成.</p>
<p>简单修复了对6.1.0.638等高版本的支持。</p>
<p>本来准备跟下算法玩的，结果就跟出个base64,再上一层怎么算base64的来源被代码绕晕了，看来功力还是有待提高。然后大概就搁置了半个多月，折腾别的去了。回头也没搞的欲望了。</p>
<p>发出修改的半成品，用是能用。因为基于PE改的。里面有啥有的没的不清楚，patch部分跟过是没问题的，只是替换了程序里面的私钥，没啥奇怪的东东。不放心的话可以在虚拟机里面patch并且声称license出来用就OK了。放上来做个备份。</p>
<p>借用句老话，非原装出品，质量三不包，使用没问题&nbsp; :D</p><br /><br /><b>附件: </b><a href="http://suddymail.org//attachment.php?id=101" target="_blank">ssh-tectia-6.1.0.668-keygen.rar</a> (336.48 K, 下载次数:97)]]></description>
			<link>http://suddymail.org//show-203-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-11-27 22:59</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-192-1.html</guid>
			<title>Navicat Premium Crack</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p><a href="http://www.navicat.com/en/products/navicat_premium/premium_overview.html">Navicat Premium</a>是Navicat新出的一款整合<a href="http://www.navicat.com/en/products/navicat_mysql/mysql_overview.html">Navicat MySQL</a>, <a href="http://www.navicat.com/en/products/navicat_oracle/oracle_overview.html">Navicat Oracle</a>, <a href="http://www.navicat.com/en/products/navicat_pgsql/pgsql_overview.html">Navicat PostgreSQL</a>的全能数据库连接工具，通过他可以方便的对MySQL,Oracle,PostgreSQL进行访问和操作。</p>
<p>本着好用节约的原则，以无美感的暴力行为对起进行了节约化改造。（罪过罪过）。</p>
<p>使用方法：完成后复制patch到程序目录执行。安装程序官方有<a href="http://download2.navicat.com/download/navicat8_premium_en.exe">下载</a>。</p>
<p>附上官方的软件说明：</p>
<p>Description:</p>
<p>Navicat Premium is a multi-connections Database Administration tool allowing you to connect to MySQL, Oracle and PostgreSQL databases simultaneously within a single application, making database administration to multiple kinds of database so easy.</p>
<p>Navicat Premium combines the functions of other Navicat members. With connections established to different database types, Navicat Premium supports data transfer between MySQL, Oracle and PostgreSQL. It supports most of the features in MySQL, Oracle and PostgreSQL including Stored Procedure, Event, Trigger, Function, View, etc.</p>
<p>Navicat Premium enables you to easily and quickly transfer data across various database systems, or to a plain text file with designated SQL format and encoding.</p><br /><br /><b>附件: </b><a href="http://suddymail.org//attachment.php?id=92" target="_blank">navicat.premium.version.8.2.4-patch.rar</a> (164.35 K, 下载次数:1198)]]></description>
			<link>http://suddymail.org//show-192-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-07-09 22:23</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-190-1.html</guid>
			<title>The IDA Pro Book</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>追了好久的这本了。<br />
终于找到电子版,Share之。<br />
附上链接，需要的下吧。<br />
<br />
http://www.namipan.com/d/The.IDA.Pro.Book.rar/00ce56ca2cfe1886ac8a9261bdf7fffb1e48e009f8d4d900<br />
<br />
BTW：是英文完整版的。中文的暂时没发现</p>]]></description>
			<link>http://suddymail.org//show-190-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-05-08 10:35</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-185-1.html</guid>
			<title>web vulnerability scanner 20090317 Crack</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>继续更新。</p>
<p>Release Note: 根据官方的一贯传统，暂未更新。。。目前最新的说明是20090211的</p>
<p>URL：http://www.acunetix.com/support/build-history.htm</p>
<p>安装程序名：2009_03_17_02_webvulnscan6.exe<br />
<br />
下载地址：hhttp://www.namipan.com/d/2009_03_17_02_webvulnscan6.exe/32930158ba8640253c5eeb280fc503487c7bfe0880c0db00<br />
<br />
或<br />
http://www.acunetix.com/download/fullverv6/2009_03_17_02_webvulnscan6.exe（需要用户名密码，旧版程序里有。）<br />
<br />
Patch:<a href="http://suddymail.org//attachment.php?id=86" title="13.04 K, 下载次数:135" target="_blank">web.vulnerability.scanner.6.0.0.3028-patch.zip</a></p>
<p>使用方式：复制到安装目录后执行。</p>]]></description>
			<link>http://suddymail.org//show-185-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-03-18 12:20</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-183-1.html</guid>
			<title>web vulnerability scanner 20090211 Crack</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>继续更新。</p>
<p>release note:</p>
<ul>
    <li>CSA engine now supposrts <a target="_blank" href="http://www.jquery.com/">jQuery</a> and <a target="_blank" href="http://developer.yahoo.com/yui/">Yahoo! UI</a> JavaScripts libraries</li>
    <li>Added component in scanner to search for links in HTML comments and Flash (SWF) strings</li>
    <li>Created an ASL.1 parser which can parse X509 Certificates</li>
    <li>Improved Crawler; improved <a target="_blank" href="http://code.google.com/p/wivet/">Wivet</a> coverage to 94%</li>
    <li>Added more JBoss configuration tests</li>
    <li>Added more Tomcat tests</li>
    <li>Added more web server configuration checks for server path, internal IP and username/password disclosure</li>
    <li>Improved RSS/Atom parses</li>
    <li>Added more attack vectors to source code disclosure and directory traversal tests for both Windows and Unix</li>
</ul>
<p><strong><u>Bug Fixes:</u></strong></p>
<ul>
    <li>Reporter now filters very long knowledge base items</li>
    <li>Fixed SSL3, TLS1 parsing issues</li>
    <li>Fix in Crawler to handle better query variable in start URL's</li>
</ul>
<p><br />
安装程序名：2009_02_11_01_webvulnscan6.exe<br />
<br />
下载地址：http://www.namipan.com/d/2009_02_11_01_webvulnscan6.exe/5f4dcd983232913075c1bdbcff8abf508562116190c0db00<br />
<br />
或<br />
http://www.acunetix.com/download/fullverv6/2009_02_11_01_webvulnscan6.exe（需要用户名密码，旧版程序里有。）<br />
<br />
Patch:<a href="http://suddymail.org//attachment.php?id=85" title="11.76 K, 下载次数:131" target="_blank">web.vulnerability.scanner.6.0.0.3013-patch.rar</a></p>
<p>使用方式：复制到安装目录后执行。</p>]]></description>
			<link>http://suddymail.org//show-183-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-02-17 00:59</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-177-1.html</guid>
			<title>[炒冷饭]ESP定律之脱衣舞</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>ESP定律是炒的很老的一个东东的，简单介绍下原理</p>
<p>压缩壳可以理解成良性的loader，在完成原程序的释放后不参与程序的运行，解压后由pe原来的机制来进行程序运行。相当于用真空袋装被子，要拿出来用的时候还是一样的（import table等）。</p>
<p>ESP定律的根据是压缩壳在进入自身代码和离开自身代码的时候堆栈必须保持平衡来打着寻找OEP的目的的。</p>
<p>进入操作</p>
<p>实验程序是个98notepad,OD载入，停在如图位置：</p>
<p><a href="http://suddymail.org//attachment.php?id=74" target="_blank"><img src="http://suddymail.org//attachments//date_200901/6771510189db8da57b94e621c9653173.jpg" border="0" alt="大小: 35.3 K&#13;尺寸: 400 x 101&#13;浏览: 23 次&#13;点击打开新窗口浏览全图" width="400" height="101" /></a></p>
<p>F8单步一次，过pushad</p>
<p>这时候已经完成程序进入之处的寄存器环境保存，看当前esp值。</p>
<p><a href="http://suddymail.org//attachment.php?id=75" target="_blank"><img src="http://suddymail.org//attachments//date_200901/f0e30ea11acc5f8ecc85f1fc02a18ce0.jpg" border="0" alt="大小: 7.58 K&#13;尺寸: 207 x 117&#13;浏览: 15 次&#13;点击打开新窗口浏览全图" width="207" height="117" /></a></p>
<p>这里即进入之初的栈顶位置，根据堆栈平衡原理，当压缩壳完成解压的时候需要保持平衡，即在popad之后会再次访问当前esp指向地址。</p>
<p>hr 0012ffa4</p>
<p>下硬件访问断点。</p>
<p>然后F9运行，程序被断在了出口附近，如图：</p>
<p><a href="http://suddymail.org//attachment.php?id=76" target="_blank"><img src="http://suddymail.org//attachments//date_200901/5dd9937464d44f6beb9065c24c8c4bb4.jpg" border="0" alt="大小: 45.6 K&#13;尺寸: 400 x 76&#13;浏览: 22 次&#13;点击打开新窗口浏览全图" width="400" height="76" /></a></p>
<p>当前esp保持为0012ffa4</p>
<p>程序停在popad后</p>
<p>接下来是个变形的jmp</p>
<p>push 后ret</p>
<p>就到OEP了</p>
<p>dump后执行正常。</p>
<p>OVER。</p>
<p>ps：几乎所有的压缩壳就可以esp脱衣服。记录下。慢慢学</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>]]></description>
			<link>http://suddymail.org//show-177-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2009-01-07 16:25</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-174-1.html</guid>
			<title>Navicat系列patch</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>不小心看到navicat出了for PostgreSQL和for Oracle的。鉴于之前对其mysql版本的良好印象，本地安装完了下。顺便XX了一下。</p>
<p>ps：navicat还是很厚道的，直接的对比判断，被偶没有美感的直接暴力掉，罪过罪过。</p>
<p>附上补丁文件。</p>
<p>For PostgreSQL 8.0.28和for Oracle 8.1.6的，Mysql就不提供了，网上很多。</p>
<p>安装程序官方有提供，总共就改了9个字节，有兴趣的可以直接跟下看下。</p>
<p>&nbsp;</p><br /><br /><b>附件: </b><a href="http://suddymail.org//attachment.php?id=72" target="_blank">navicat for postgresql.ver.8.0.28-patch.rar</a> (11.67 K, 下载次数:43)<br /><br /><b>附件: </b><a href="http://suddymail.org//attachment.php?id=73" target="_blank">navicat for oracle.ver.8.1.6-patch.rar</a> (11.66 K, 下载次数:66)]]></description>
			<link>http://suddymail.org//show-174-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2008-12-25 22:16</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-161-1.html</guid>
			<title>XX新浪的音乐播放器</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>新浪的blog上的音乐播放器允许用户修改歌曲显示名。</p>
<p>找不到那首歌的名字，只好暴力一下。</p>
<p>记录一下，下次直接取方便点。</p><br /><br /><a href="http://suddymail.org//show-161-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-161-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2008-07-19 13:30</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-160-1.html</guid>
			<title>[zz]dll生成lib</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>主要是为了能让od能够调用，dll2lib出来的lib好像都是找不到序号。<br />
来源：CSDN <strong><strong><a name="r_24269706" class="anchor"></a>alon21</strong></strong></p><br /><br /><a href="http://suddymail.org//show-160-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-160-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2008-07-11 01:00</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-153-1.html</guid>
			<title>[zz] Flash破解与加密综合(2007-7-4更新)</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>最近看一些相关的东东，找到这篇比较全的，不胜喜之，ZZ之。</p>
<p>原始链接：<a href="http://www.zhugao.cn/info/news_study_show.asp?id=503"><u>http://www.zhugao.cn/info/news_study_show.asp?id=503</u></a></p><br /><br /><a href="http://suddymail.org//show-153-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-153-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2008-04-16 13:23</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-136-1.html</guid>
			<title>[zz]如何安装并使用Windows Symbol File</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>转自CSDN<br />
原文地址：http://blog.csdn.net/codewarrior/archive/2007/01/10/1479611.aspx</p><br /><br /><a href="http://suddymail.org//show-136-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-136-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2007-12-21 10:33</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-98-1.html</guid>
			<title>[zz]Unthemida 2.0</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[从看雪转来的。<br /><br /><a href="http://suddymail.org//show-98-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-98-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2007-05-15 21:23</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-55-1.html</guid>
			<title>天网3.0.0.1000的crack</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[看到天网上有新版本下，自己动手了下，感觉一般般。<br /><br /><a href="http://suddymail.org//show-55-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-55-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2006-07-13 14:44</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-10-1.html</guid>
			<title>汇编的文件头。</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>一般如下：</p>
<p>00401000&nbsp;&nbsp;&nbsp;&nbsp; E8 51060000&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; call &lt;jmp.&amp;KERNEL32.GetCommandLineA&gt;<br />00401005&nbsp;&nbsp;&nbsp;&nbsp; 0BC0&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; or eax,eax<br />00401007&nbsp;&nbsp;&nbsp;&nbsp; 0F84 D8000000&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; je Vgcrypt.004010E5</p>]]></description>
			<link>http://suddymail.org//show-10-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2005-07-31 05:14</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-11-1.html</guid>
			<title>脱fsg1.33壳时内存模拟跟踪法。</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>在脱fsg1.33壳时候。使用内存虚拟跟踪的办法快速的到达程序的oep</p><br /><br /><a href="http://suddymail.org//show-11-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-11-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2005-07-30 18:27</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-12-1.html</guid>
			<title>关于脱壳中的esp定律</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[<p>使用esp定律脱壳</p><br /><br /><a href="http://suddymail.org//show-12-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-12-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2005-07-30 16:39</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-13-1.html</guid>
			<title>od脱壳后文件无法运行的修复顺序</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[od脱壳后的修复步骤<br /><br /><a href="http://suddymail.org//show-13-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-13-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2005-07-30 05:28</pubDate>
		</item>
		<item>
			<guid>http://suddymail.org//show-14-1.html</guid>
			<title>对手工脱壳的一点小理解</title>
			<author>╰☆往事如风</author>
			<description><![CDATA[手工脱壳的一般过程<br /><br /><a href="http://suddymail.org//show-14-1.html" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://suddymail.org//show-14-1.html</link>
			<category domain="http://suddymail.org//category-4-1.html">逆向工程</category>
			<pubDate>2005-07-15 18:48</pubDate>
		</item>
	</channel>
</rss>
