|
[求助]关于获取进程中QQ号码[随时更新直到完全解决]
LZ,如果有个汇编版本,那就更加完美了 |
|
|
|
[求助]关于在其他虚拟进程内存中搜索字符串问题
看图片,类似于WinHex这样工具在其他的进程中搜索文本字符串的方法是什么呢?或者原理。。 |
|
[求助]关于在其他虚拟进程内存中搜索字符串问题
LPVOID LowAddr; SYSTEM_INFO si; memset(&si, 0, sizeof(si)); GetSystemInfo( &si ); LowAddr = si.lpMinimumApplicationAddress; LowAddr是最小地址 0x00010000,那么,我想要LowAddr偏移30变成0x00010030 怎么写? ===================== 已经解决: LowAddr += mbi.RegionSize; |
|
[求助]win32asm如何实现执行*.cmd文件?
调用CreateProcess或者ShellExecute就可以了。。 |
|
[求助]求winnet.dll里面的函数用法
首先你要知道winnet.dll里一共导出多少个函数,去查看winnet.inc就可以知道函数名字,知道函数名字之后,有几种办法可以知道用法: 1,baidu 2,狗狗 3,msdn |
|
[求助]求汇编编写的网页浏览器的例子
在aogo的站上sou |
|
|
|
[求助]关于两段关机代码的解读?
反汇编一下lsass.exe: .text:010013B4 loc_10013B4: .text:010013B4 cmp esi, ebx .text:010013B6 jl short loc_10013DB .text:010013B6 .text:010013B8 mov esi, ds:RtlAdjustPrivilege .text:010013BE lea eax, [ebp+var_14] .text:010013C1 push eax .text:010013C2 push ebx .text:010013C3 push edi .text:010013C4 push 13h .text:010013C6 call esi ; RtlAdjustPrivilege .text:010013C8 push edi ; edi == 2 ? .text:010013C9 call ds:NtShutdownSystem .text:010013CF lea eax, [ebp+var_14] .text:010013D2 push eax .text:010013D3 push ebx .text:010013D4 push [ebp+var_14] .text:010013D7 push 13h .text:010013D9 call esi ; RtlAdjustPrivilege .text:010013D9 |
|
|
|
不知pb中能否播放XM
汇编也可以播放音乐的..... |
|
[求助]NetUserAdd(nil, 2, pointer(buffer), Error); 的使用方法
;>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>> ;code by asm http://www.asm32.cn/ ;2007-9-29 ;>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>> .386 .model flat, stdcall option casemap :none ; case sensitive ;>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>> ; Include 数据 ;>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>> include windows.inc include user32.inc include kernel32.inc include Netapi32.inc includelib user32.lib includelib kernel32.lib includelib Netapi32.lib .data? oUserInfo USER_INFO_1<?> oUser LOCALGROUP_MEMBERS_INFO_3 <?> dwErr DWORD ? .data szUser dw "a","s","m",0 szPass dw "p","a","s","s",0 szAdministrators dw "A","d","m","i","n","i","s","t","r","a","t","o","r","s",0 .code start: invoke RtlZeroMemory,addr oUserInfo,sizeof oUserInfo push offset szUser pop oUserInfo.usri1_name push offset szPass pop oUserInfo.usri1_password mov oUserInfo.usri1_priv,USER_PRIV_USER mov oUserInfo.usri1_flags,UF_NORMAL_ACCOUNT invoke NetUserAdd,NULL, 1,addr oUserInfo,addr dwErr push oUserInfo.usri1_name pop oUser.lgrmi3_domainandname invoke NetLocalGroupAddMembers,NULL,addr szAdministrators,3,addr oUser,1 invoke ExitProcess,0 end start |
|
老生常谈--win32向窗口发送键盘消息
(Ctrl+S): invoke FindWindow,NULL,CTXT("这里是程序的窗口标题") .if eax!=NULL mov hText,eax invoke SetWindowPos,hText,HWND_TOPMOST,0,0,0,0,SWP_NOMOVE or SWP_NOSIZE invoke SetWindowPos,hText,HWND_NOTOPMOST,0,0,0,0,SWP_NOMOVE or SWP_NOSIZE invoke SetForegroundWindow,hText invoke keybd_event,VK_CONTROL,0,0,0 invoke keybd_event,'S',0,0,0 invoke Sleep,10 invoke keybd_event,'S',0,KEYEVENTF_KEYUP,0 invoke keybd_event,VK_CONTROL,0,KEYEVENTF_KEYUP,0 .endif 主窗口的子按扭: invoke FindWindow,CTXT("ThunderRT6FormDC"),NULL ;找所有类 .if eax!=NULL mov hText,eax .endif invoke FindWindowEx,hText,NULL,NULL,CTXT("立即释放");找其子按扭 .if eax!=NULL mov hText1,eax invoke SetWindowPos,hText1,HWND_NOTOPMOST, 100 , 200,200, 200, SWP_NOSIZE invoke SendMessage,hText1,WM_LBUTTONDOWN,0,0 invoke SendMessage,hText1,WM_LBUTTONUP,0,0 .endif |
|
[求助]win32汇编里貌似没有CAPDRIVERCAPS这个结构,但是C有
OK CAPDRIVERCAPS struct wDeviceIndex UINT ? fHasOverlay BOOL ? fHasDlgVideoSource BOOL ? fHasDlgVideoFormat BOOL ? fHasDlgVideoDisplay BOOL ? fCaptureInitialized BOOL ? fDriverSuppliesPalettes BOOL ? hVideoIn HANDLE ? hVideoOut HANDLE ? hVideoExtIn HANDLE ? hVideoExtOut HANDLE ? CAPDRIVERCAPS ends |
操作理由
RANk
{{ user_info.golds == '' ? 0 : user_info.golds }}
雪币
{{ experience }}
课程经验
{{ score }}
学习收益
{{study_duration_fmt}}
学习时长
基本信息
荣誉称号:
{{ honorary_title }}
能力排名:
No.{{ rank_num }}
等 级:
LV{{ rank_lv-100 }}
活跃值:
在线值:
浏览人数:{{ visits }}
最近活跃:{{ last_active_time }}
注册时间:{{ user_info.create_date_jsonfmt }}
勋章
兑换勋章
证书
证书查询 >
能力值