📄 lesson123.htm
字号:
<html>
<head>
<title>看雪学苑</title>
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
<style type="text/css">
<!--
.p8 { font-size: 8pt}
.p9 { font-size: 9pt}
a:hover { color: #00FF00}
a { text-decoration: none}
.p12 { font-size: 12pt; font-weight: bold; color: #FF3333}
-->
</style>
</head>
<body bgcolor="#FFFFFF" text="#000000" link="#000000" vlink="#000000" alink="#000000">
<table width="80%" border="1" cellspacing="0" cellpadding="0" align="center" bgcolor="#99CCFF" bordercolorlight="#99CCFF" bordercolordark="#99CCFF">
<tr>
<td width="72%" class="p9"><a href="javascript:if(confirm('http://toye.yeah.net/ \n\n这个文件不能通过 Teleport Pro 取回, 因为 它被访问于一个域或在它的起始地址边界外部的路径上. \n\n你想从服务器打开它吗?'))window.location='http://toye.yeah.net/'" tppabs="http://toye.yeah.net/">看雪教学</a></td>
<td width="10%" class="p9"> </td>
<td width="10%"><a href="index.htm" tppabs="http://toye.dihou.org/index.htm" class="p9">返回<br>
首页 <br>
</a></td>
<td width="8%"><a href="molu.htm" tppabs="http://toye.dihou.org/molu.htm" class="p9">返回<br>
目录 </a></td>
</tr>
</table>
<table width="80%" cellspacing="0" cellpadding="0" align="center">
<tr bgcolor="#FFFF33">
<td>
<div align="center"><span class="p"><span class="p12"><font color="#FF0000">第十一课
<b>注册表分析及技巧</b></font></span></span></div>
</td>
</tr>
</table>
<table width="80%" cellspacing="0" align="center">
<tr class="p9">
<td width="24%" bgcolor="#CCFFFF">
<div align="center"><a href="lesson121.htm" tppabs="http://toye.dihou.org/lesson121.htm">技巧介绍</a></div>
</td>
<td width="27%" bgcolor="#CCFFFF">
<div align="center"><font color="#000000"><a href="lesson122.htm" tppabs="http://toye.dihou.org/lesson122.htm">注册表结构</a></font></div>
</td>
<td width="24%" bgcolor="#FFFFFF">
<div align="center">注册表分析工具</div>
</td>
</tr>
</table>
<p class="p9"> 通过前面的学习基本了解注册表的一些常识了,那到底怎么知道软件在注册表做过什么手脚呢?能实现这种功能的工具很多,这里推荐两种常用的工具,用它什么问题迎刃而解。</p>
<p class="p9">一是、<span class="p9"><font face="Times New Roman" color="#000000">tianwei</font>
</span>的 <font face="Times New Roman" color="#000000"><span class="p9"><font color="#FF3333">RegShot </font></span></font>
;</p>
<p class="p9">二是、<font color="#FF0033">Regsnap</font>。</p>
<p class="p9">这两个都不错。它们可以详细地向你报告注册表及其他与系统有关项目的修改变化情况。 RegSnap 对系统的比较报告非常具体,对注册表可报告修改了哪些键,修改前
、后的值各是多少;增加和删除了哪些键以及这些键的值。报告结果既可以纯文本的方式,也可以 html 网页的方式显示,非常方便。</p>
<p class="p9">附: <br>
<font face="Times New Roman" color="#000000"><span class="p9"><b>Tianwei 写的RegShot </b></span></font>
<b><font color="#000000"><span class="p9"><font face="宋体">使用教学</font> <br>
主页:<font color="#3366FF"><a href="javascript:if(confirm('http://winice.yeah.net/ \n\n这个文件不能通过 Teleport Pro 取回, 因为 它被访问于一个域或在它的起始地址边界外部的路径上. \n\n你想从服务器打开它吗?'))window.location='http://winice.yeah.net/'" tppabs="http://winice.yeah.net/" target="_blank"><font color="#0066FF">TiANWEi的家
</font></a></font></span></font></b></p>
<span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">我们经常听到商业软件或共享软件的作者们对</font>
<font face="Times New Roman" color="#000000">CRACKER</font></span><span class="p9"><font face="宋体" color="#000000">们的愤怒</font>
<font face="Times New Roman" color="#000000">:</font> <font face="宋体" color="#000000">你你修改了我的代码</font>
<font face="Times New Roman" color="#000000">;</font> <font face="宋体" color="#000000">你你写了我的注册器</font>
<font face="Times New Roman" color="#000000">;</font> </span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">你你让我的辛苦付之东流</font> <font face="Times New Roman" color="#000000">;</font>
<font face="宋体" color="#000000">我我还要靠这个赚</font> <font face="Times New Roman" color="#000000">MONEY!</font>
</span> <span class="p9"><font face="Times New Roman" color="#000000">-</font>
<font face="宋体" color="#000000">软件既然在我的机器上运行</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">那我就要控制它</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">这不仅</font></span><span class="p9"><font face="宋体" color="#000000">仅是</font>
<font face="Times New Roman" color="#000000">CRACKER</font> <font face="宋体" color="#000000">们的想法</font>
<font face="Times New Roman" color="#000000">.</font> </span>
<p> </p>
<span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">怎样控制它而又不违反商业软件或共享软件作者对我们</font></span><span class="p9"><font face="宋体" color="#000000">的约束呢</font>
<font face="Times New Roman" color="#000000">?</font> </span>
<p> </p>
<p> <span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">那么我们来找找这个游戏规则的漏洞吧</font>
<font face="Times New Roman" color="#000000">!</font> </span></p>
<p> </p>
<span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">那我们就</font><font face="宋体" color="#000000">不修改软件的代码</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">不反汇编它</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">甚至根本不</font></span><span class="p9"><font face="宋体" color="#000000">跟踪它的运行</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">而只看看它留下什么脚印</font>
<font face="Times New Roman" color="#000000">:)</font> </span>
<p> </p>
<span class="p9"><font face="Times New Roman" color="#000000">-RegShot</font>
<font face="宋体" color="#000000">的原理是这样的</font> <font face="Times New Roman" color="#000000">:</font>
<font face="宋体" color="#000000">在运行该软件之前作个记录</font> <font face="Times New Roman" color="#000000">,</font>
</span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">在运行它之后作个记录</font> <font face="Times New Roman" color="#000000">.</font>
<font face="宋体" color="#000000">比较二者的差别</font></span><span class="p9"><font face="宋体" color="#000000">,很简单吧</font>
<font face="Times New Roman" color="#000000">:)</font> </span>
<p> </p>
<span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">最先前的工具是各类的反安装工具</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">如</font>
<font face="Times New Roman" color="#000000">CleanSweep</font> <font face="宋体" color="#000000">之</font></span><span class="p9"><font face="宋体" color="#000000">类做得非常好</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">它能记录一个软件安装过程</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">如果您到了</font>
</span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">期限还想用</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">那么就反安装一次</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">再装一下就可以了</font> <font face="Times New Roman" color="#000000">.</font>
<font face="宋体" color="#000000">但</font></span><span class="p9"><font face="宋体" color="#000000">问题在于</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">您有可能将有用的设置</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">辛苦的工作成果都</font></span><span class="p9"><font face="宋体" color="#000000">给</font>
<font face="Times New Roman" color="#000000">UNINSTALL</font> <font face="宋体" color="#000000">了</font>
<font face="Times New Roman" color="#000000">.</font> <font face="宋体" color="#000000">而实际上您可以只改动很小的地方</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">就</font></span><span class="p9"><font face="宋体" color="#000000">可以达到这样的效果</font>
<font face="Times New Roman" color="#000000">.</font> </span>
<p></p>
<span class="p9"><font face="Times New Roman" color="#000000">-RegShot</font>
<font face="宋体" color="#000000">的前辈是</font> <font face="Times New Roman" color="#000000">RegSnap,</font>
<font face="宋体" color="#000000">一个非常好的软件</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">功能强</font> <font face="Times New Roman" color="#000000">.</font>
</span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">但</font> <font face="Times New Roman" color="#000000">RegSnap</font>
<font face="宋体" color="#000000">本身就是一个共享软件</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">有非常讨厌的不定</font> </span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">时等待窗口</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">想知道怎么破解它</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">可以看看我的站台上</font> </span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">的</font> <font face="Times New Roman" color="#000000">oldnotes.htm</font>
<font face="宋体" color="#000000">内有介绍</font> <font face="Times New Roman" color="#000000">.</font>
<font face="宋体" color="#000000">实际上</font> <font face="Times New Roman" color="#000000">,RegShot</font>
<font face="宋体" color="#000000">的产生也是</font> </span> <span class="p9"><font face="Times New Roman" color="#000000"> </font>
<font face="宋体" color="#000000">我见过</font> <font face="Times New Roman" color="#000000">RegSnap</font>
<font face="宋体" color="#000000">后才想到的</font> <font face="Times New Roman" color="#000000">:"</font>
<font face="宋体" color="#000000">这么点功能</font> <font face="Times New Roman" color="#000000">,</font>
<font face="宋体" color="#000000">要搞这么强的</font></span><span class="p9"><font face="宋体" color="#000000">防护</font>
<font face="Times New Roman" color="#000000">(</font> <font face="宋体" color="#000000">指</font>
<font face="Times New Roman" color="#000000">RegSnap</font> <font face="宋体" color="#000000">对自身的效验</font>
<font face="Times New Roman" color="#000000">),</font> <font face="宋体" color="#000000">我自己写一个吧</font>
<font face="Times New Roman" color="#000000">!"</font> </span>
<p> </p>
<span class="p9"><font face="Times New Roman" color="#000000">-</font> <font face="宋体" color="#000000">以下是一个利用</font>
<font face="Times New Roman" color="#000000">RegShot</font> <font face="宋体" color="#000000">来狼吃狼的例子</font>
<font face="Times New Roman" color="#000000">:</font> </span> <span class="p9"><font face="宋体" color="#000000">所谓狼吃狼</font>
<font face="Times New Roman" color="#000000">,</font> <font face="宋体" color="#000000">是指此次的</font>
<font face="Times New Roman" color="#000000">"</font> <font face="宋体" color="#000000">样品</font>
<font face="Times New Roman" color="#000000">"</font> <font face="宋体" color="#000000">是个比较不</font>
<font face="Times New Roman" color="#000000">"</font> <font face="宋体" color="#000000">正派</font>
<font face="Times New Roman" color="#000000">"</font> <font face="宋体" color="#000000">的软件</font>
<font face="Times New Roman" color="#000000">,</font> </span> <span class="p9"><font face="宋体" color="#000000">是个跑</font>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -