恶意代码分析实战Lab06补充
Lab0601补充
Lab0602补充
Buffer是读取文件的缓冲区,根据 if 语句,当前四个字符是“<!--”。return的返回值是Buffer的第五个字符
https://debug.fail/2015/11/practical-malware-analysis-lab-6-2-notes/
https://e.rutlib4.com/book/21347/p/224
Lab0603补充
https://e.rutlib4.com/book/21347/p/225
Lab0604补充