能力值:
( LV2,RANK:10 )
|
-
-
2 楼
int 2E 行不行...
mov eax, service_id
lea edx, service_param
int 2e
EAX = function number
EDX = address of parameter block
Windows 2000
0x64 OpenFile
0xa1 ReadFile
Windows XP
0x74 OpenFile
0xb7 ReadFile
http://www.pediy.com/document/Windows_System_Call_Table/Windows_System_Call_Table.htm
|
能力值:
( LV2,RANK:10 )
|
-
-
3 楼
in out 指令读取端口行不
|
能力值:
( LV2,RANK:10 )
|
-
-
4 楼
NT系列函数算不,可以直接使用ntdll.dll的NtCreateFile NtReadFile
|
|
|