一、分析
这是一个源码题,代码如下:
#include <stdio.h>
#include <string.h>
int main(int argc, char *argv[]) {
if (argc != 4) {
printf("what?\n");
exit(1);
}
unsigned int first = atoi(argv[1]);
if (first != 0xcafe) {
printf("you are wrong, sorry.\n");
exit(2);
}
unsigned int second = atoi(argv[2]);
if (second % 5 == 3 || second % 17 != 8) {
printf("ha, you won't get it!\n");
exit(3);
}
if (strcmp("h4cky0u", argv[3])) {
printf("so close, dude!\n");
exit(4);
}
printf("Brr wrrr grr\n");
unsigned int hash = first * 31337 + (second % 17) * 11 + strlen(argv[3]) - 1615810207;
printf("Get your key: ");
printf("%x\n", hash);
return 0;
}
分析第一个if语句,如果argc!=4,就会输出“what”然后退出程序,说明argc正确值应该为4;
同理分析第2,3,4个if语句可以得到
argv[1]=0xcafe //换算十进制是51996
argv[2]=17*x+8 且 argv[2]!=5*x+3
argv[3]= "h4cky0u"
得到上述信息后就可以计算参数hash的值了。以下是我修改后的代码,可以输出hash的16进制形式的值。
在#include <stdio.h>
#include <string.h>
int main(int argc, char *argv[]) {
if (argc == 4) {
printf("what?\n");
exit(1);
}
/*
unsigned int first = atoi(argv[1]);
if (first != 0xcafe) {
printf("you are wrong, sorry.\n");
exit(2);
}
*/
/*
unsigned int second = atoi(argv[2]);
if (second % 5 == 3 || second % 17 != 8) {
printf("ha, you won't get it!\n");
exit(3);
}
*/
unsigned int first = 51966;
unsigned int second = 25;
/*
if (strcmp("h4cky0u", argv[3])) {
printf("so close, dude!\n");
exit(4);
}
*/
int len = 7;
printf("Brr wrrr grr\n");
//unsigned int hash = first * 31337 + (second % 17) * 11 + strlen(argv[3]) - 1615810207;
unsigned int hash = first * 31337 + (second % 17) * 11 + len - 1615810207;
printf("Get your key: ");
printf("%x\n", hash);
return 0;
}
结果如下:
总结
这道题比较简单,就不多说了。