HackIM 2014 CTF bin100 writeup

Open easy.exe with your favourite debugger, I use OllyDBG.

Modifiy the content of the register eax and set it to 0x00401160 in order to call the easy.00401000  function

 then do a step into it .

Now toggle a breakpoint at the function return, the flag is being pushed to the stack.

The flag is : 6a589746613a5f670583086124a8305a_AND_MOOOO