今天又看了银河大大的人造指针教程,学着填了一个,是游聚三国战纪119的指针,可是每次开地址都不一样,还请看看是哪里出错了。下面是代码:
[ENABLE]
alloc(newmem,2048)
alloc(P,4)
label(returnhere)
label(originalcode)
label(exit)
registersymbol(P)
00728D0F:
jmp newmem
nop
returnhere:
newmem:
push eax
lea eax,[eax+ecx*2]
mov [P],eax
pop eax
originalcode:
mov cl,[eax+ecx*2]
mov [ebp-01],cl
exit:
jmp returnhere
[DISABLE]
dealloc(newmem)
dealloc(P,4)
unregistersymbol(P)
00728D0F:
mov cl,[eax+ecx*2]
mov [ebp-01],cl