梦魔之炎吧 关注:41贴子:190
  • 0回复贴,共1

优化版hook钩子

只看楼主收藏回复

可以自行更新
define(address,01A4EAFD)
define(address1,01A4EBAA)
[ENABLE]
alloc(newmem,2048)
label(returnhere)
label(originalcode)
label(exit)
newmem:
originalcode:
cmp dword ptr [esi+000007ac],00
jne originalcode+F
jmp address+d
nop
jmp address1
ret
nop
exit:
jmp returnhere
address:
jmp newmem
nop
returnhere:
[DISABLE]
dealloc(newmem)
address:
je address1


IP属地:新疆来自Android客户端1楼2017-05-18 14:15回复