|
|
楼主 |
发表于 2013-7-26 08:25:51
|
显示全部楼层
2-4-1
选怪call
原型
push eax
mov ecx,,[[[[00CABB68+1c]+28]+0d78] +4]
call 463db0
//其中 [1B8EFE4C]=0f4即[eax]=f4
===============================
郁金香老师的实现
procedure TForm1.RzButton11Click(Sender: TObject);
var
pcall:pointer;
index:integer;
begin
pcall:=pointer($463db0) ;
index:=$0f4
asm
lea eax,index
mov ecx,$0F2EBC20
push eax
call pcall
end;
end;
==========================
//我觉得这样写就行
procedure TForm1.RzButton11Click(Sender: TObject);
begin
mov eax,$1B8EFE4C
mov ecx,$0F2EBC20
push eax
call $463db0
end;
end;
=======================
错在哪呢。。? |
|