能力值:
( LV10,RANK:163 )
|
-
-
5 楼
// 游侠你bin忘发了.
//无花无壳,太好弄了.
00407CB4 |. 8B5D 08 mov ebx,[arg.1]
00407CB7 |. 8B03 mov eax,dword ptr ds:[ebx]
00407CB9 |. 85C0 test eax,eax
00407CBB 75 05 jnz short 神攻无限.00407CC2 ; Nop掉
00407CBD |. B8 0AD55700 mov eax,神攻无限.0057D50A
00407CC2 |> 50 push eax
00407CC3 |. 68 01000000 push 1
00407CC8 |. BB E0BF4000 mov ebx,神攻无限.0040BFE0
00407CCD |. E8 6A3E0000 call 神攻无限.0040BB3C ; 提示
00407CD2 |. 83C4 10 add esp,10
00407CD5 8945 F8 mov dword ptr ss:[ebp-8],eax ; eax改40
00407CD8 837D F8 40 cmp dword ptr ss:[ebp-8],40
00407CDC 0F8D 0A000000 jge 神攻无限.00407CEC ; 改jmp
00407CE2 |. B8 00000000 mov eax,0
00407CE7 |. E9 76120000 jmp 神攻无限.00408F62
|
能力值:
( LV2,RANK:10 )
|
-
-
6 楼
00407CB2 |. 6A 00 push 0
00407CB4 8B5D 08 mov ebx, dword ptr [ebp+8]
00407CB7 8B03 mov eax, dword ptr [ebx]
00407CB9 |. 85C0 test eax, eax
00407CBB 90 nop
00407CBC 90 nop
00407CBD |. B8 0AD55700 mov eax, 0057D50A
00407CC2 |> 50 push eax
00407CC3 |. 68 01000000 push 1
00407CC8 |. BB E0BF4000 mov ebx, 0040BFE0
00407CCD |. E8 6A3E0000 call 0040BB3C
00407CD2 |. 83C4 10 add esp, 10
00407CD5 C745 F8 40000000 mov dword ptr [ebp-8], 40
00407CDC EB 0E jmp short 00407CEC
00407CDE 0A00 or al, byte ptr [eax]
00407CE0 0000 add byte ptr [eax], al
00407CE2 |. B8 00000000 mov eax, 0
00407CE7 |. E9 76120000 jmp 00408F62
00407CEC |> 8965 D8 mov dword ptr [ebp-28], esp
00407CEF |. 68 40000000 push 40
00407CF4 |. FF75 FC push dword ptr [ebp-4]
00407CF7 |. 8B45 F4 mov eax, dword ptr [ebp-C]
|
能力值:
( LV2,RANK:10 )
|
-
-
11 楼
如何修改下面的指令: 这个如何修改???
00407CB2 |. 6A 00 push 0
00407CB4 |. 8B5D 08 mov ebx, dword ptr [ebp+8]
00407CB7 8B03 mov eax, dword ptr [ebx]
00407CB9 85C0 test eax, eax
00407CBB 75 05 jnz short 00407CC2
00407CBD B8 0AD55700 mov eax, 0057D50A
00407CC2 50 push eax
00407CC3 68 01000000 push 1
00407CC8 BB E0BF4000 mov ebx, 0040BFE0
00407CCD E8 6A3E0000 call 0040BB3C
00407CD2 83C4 10 add esp, 10
00407CD5 8945 F8 mov dword ptr [ebp-8], eax
00407CD8 837D F8 40 cmp dword ptr [ebp-8], 40
00407CDC 0F8D 0A000000 jge 00407CEC
00407CE2 B8 00000000 mov eax, 0
00407CE7 E9 76120000 jmp 00408F62
00407CEC 8965 D8 mov dword ptr [ebp-28], esp
00407CEF 68 40000000 push 40
|
能力值:
( LV2,RANK:10 )
|
-
-
18 楼
0040CCA0 > /E9 9E9A0600 jmp 00476743
0040CCA5 |90 nop
0040CCA6 |90 nop
0040CCA7 |90 nop
0040CCA8 |90 nop
0040CCA9 |90 nop
0040CCAA |90 nop
0040CCAB |90 nop
0040CCAC |90 nop
0040CCAD |90 nop
0040CCAE |90 nop
0040CCAF |90 nop
0040CCB0 /$ |8B4424 04 mov eax, dword ptr [esp+4]
0040CCB4 |. |50 push eax
0040CCB5 |. |E8 AD910600 call 00475E67
0040CCBA |. |59 pop ecx
0040CCBB \. |C2 0400 retn 4
0040CCBE |90 nop
0040CCBF |90 nop
0040CCC0 . |83EC 64 sub esp, 64
0040CCC3 . |56 push esi
0040CCC4 . |8B7424 74 mov esi, dword ptr [esp+74]
0040CCC8 . |57 push edi
0040CCC9 . |8B7E 08 mov edi, dword ptr [esi+8]
0040CCCC . |57 push edi
0040CCCD . |E8 1E150100 call 0041E1F0
0040CCD2 . |83C4 04 add esp, 4
0040CCD5 . |85C0 test eax, eax
0040CCD7 |74 10 je short 0040CCE9
0040CCD9 . |8D4424 08 lea eax, dword ptr [esp+8]
0040CCDD . |50 push eax
0040CCDE . |56 push esi
0040CCDF . |E8 FCFCFFFF call 0040C9E0
0040CCE4 . |83C4 08 add esp, 8
0040CCE7 . |EB 42 jmp short 0040CD2B
0040CCE9 > |81FF 04000080 cmp edi, 80000004 ; Switch (cases 80000002..80000004)
0040CCEF |75 04 jnz short 0040CCF5
0040CCF1 . |8B0E mov ecx, dword ptr [esi] ; Case 80000004 (SINGLE STEP) of switch 0040CCE9
0040CCF3 . |EB 3A jmp short 0040CD2F
0040CCF5 > |81FF 02000080 cmp edi, 80000002
0040CCFB . |75 12 jnz short 0040CD0F
0040CCFD . |8B16 mov edx, dword ptr [esi] ; Case 80000002 (DATATYPE MISALIGNMENT) of switch 0040CCE9
0040CCFF . |8D4C24 08 lea ecx, dword ptr [esp+8]
0040CD03 . |51 push ecx
0040CD04 . |52 push edx
0040CD05 . |E8 76EF0100 call 0042BC80
0040CD0A . |83C4 08 add esp, 8
0040CD0D . |EB 1C jmp short 0040CD2B
0040CD0F > |81FF 03000080 cmp edi, 80000003
0040CD15 . |75 1C jnz short 0040CD33
0040CD17 . |8B4E 04 mov ecx, dword ptr [esi+4] ; Case 80000003 (BREAKPOINT) of switch 0040CCE9
0040CD1A . |8B16 mov edx, dword ptr [esi]
0040CD1C . |8D4424 08 lea eax, dword ptr [esp+8]
0040CD20 . |50 push eax
0040CD21 . |51 push ecx
0040CD22 . |52 push edx
0040CD23 . |E8 98E80100 call 0042B5C0
0040CD28 . |83C4 0C add esp, 0C
0040CD2B > |8D4C24 08 lea ecx, dword ptr [esp+8]
0040CD2F > |85C9 test ecx, ecx
0040CD31 |75 09 jnz short 0040CD3C
0040CD33 > |C64424 08 00 mov byte ptr [esp+8], 0 ; Default case of switch 0040CCE9
0040CD38 . |8D4C24 08 lea ecx, dword ptr [esp+8]
0040CD3C > |8B46 20 mov eax, dword ptr [esi+20]
0040CD3F . |BA 90429E00 mov edx, 009E4290
0040CD44 . |85C0 test eax, eax
0040CD46 |74 03 je short 0040CD4B
0040CD48 . |8B56 18 mov edx, dword ptr [esi+18]
0040CD4B > |8B46 0C mov eax, dword ptr [esi+C]
0040CD4E . |8BF0 mov esi, eax
0040CD50 . |F7D6 not esi
0040CD52 . |81E6 00100000 and esi, 1000
0040CD58 . |8D0470 lea eax, dword ptr [eax+esi*2]
0040CD5B . |50 push eax ; /Style
0040CD5C . |52 push edx ; |Title
0040CD5D . |51 push ecx ; |Text
0040CD5E . |6A 00 push 0 ; |hOwner = NULL
0040CD60 . |FF15 5C854800 call dword ptr [<&USER32.MessageBoxA>>; \MessageBoxA
0040CD66 . |5F pop edi
0040CD67 . |83F8 03 cmp eax, 3 ; Switch (cases 2..7)
0040CD6A . |5E pop esi
0040CD6B . |75 0F jnz short 0040CD7C
0040CD6D . |8B4C24 68 mov ecx, dword ptr [esp+68] ; Case 3 of switch 0040CD67
0040CD71 . |B8 02000000 mov eax, 2
0040CD76 . |8901 mov dword ptr [ecx], eax
0040CD78 . |83C4 64 add esp, 64
0040CD7B . |C3 retn
0040CD7C > |83F8 02 cmp eax, 2
0040CD7F . |75 0F jnz short 0040CD90
0040CD81 . |8B5424 68 mov edx, dword ptr [esp+68] ; Case 2 of switch 0040CD67
0040CD85 . |B8 01000000 mov eax, 1
0040CD8A . |8902 mov dword ptr [edx], eax
0040CD8C . |83C4 64 add esp, 64
0040CD8F . |C3 retn
0040CD90 > |83F8 05 cmp eax, 5
0040CD93 . |75 0F jnz short 0040CDA4
0040CD95 . |8B4C24 68 mov ecx, dword ptr [esp+68] ; Case 5 of switch 0040CD67
0040CD99 . |B8 04000000 mov eax, 4
0040CD9E . |8901 mov dword ptr [ecx], eax
0040CDA0 . |83C4 64 add esp, 64
0040CDA3 . |C3 retn
0040CDA4 > |83F8 07 cmp eax, 7
0040CDA7 . |75 0F jnz short 0040CDB8
0040CDA9 . |8B5424 68 mov edx, dword ptr [esp+68] ; Case 7 of switch 0040CD67
0040CDAD . |B8 06000000 mov eax, 6
0040CDB2 . |8902 mov dword ptr [edx], eax
0040CDB4 . |83C4 64 add esp, 64
0040CDB7 . |C3 retn
0040CDB8 > |83F8 06 cmp eax, 6
0040CDBB . |75 0F jnz short 0040CDCC
0040CDBD . |8B4C24 68 mov ecx, dword ptr [esp+68] ; Case 6 of switch 0040CD67
0040CDC1 . |B8 05000000 mov eax, 5
0040CDC6 . |8901 mov dword ptr [ecx], eax
0040CDC8 . |83C4 64 add esp, 64
0040CDCB . |C3 retn
0040CDCC > |33D2 xor edx, edx ; Default case of switch 0040CD67
0040CDCE . |8B4C24 68 mov ecx, dword ptr [esp+68]
0040CDD2 . |83F8 04 cmp eax, 4
0040CDD5 . |0F95C2 setne dl
0040CDD8 . |4A dec edx
0040CDD9 . |83E2 03 and edx, 3
0040CDDC . |8BC2 mov eax, edx
0040CDDE . |8901 mov dword ptr [ecx], eax
0040CDE0 . |83C4 64 add esp, 64
0040CDE3 . |C3 retn
0040CDE4 |90 nop
0040CDE5 |90 nop
0040CDE6 |90 nop
0040CDE7 |90 nop
0040CDE8 |90 nop
0040CDE9 |90 nop
0040CDEA |90 nop
0040CDEB |90 nop
0040CDEC |90 nop
0040CDED |90 nop
0040CDEE |90 nop
0040CDEF |90 nop
0040CDF0 /$ |8B4424 04 mov eax, dword ptr [esp+4]
0040CDF4 |. |56 push esi
0040CDF5 |. |8D70 18 lea esi, dword ptr [eax+18]
0040CDF8 |. |56 push esi
0040CDF9 |. |E8 322A0000 call 0040F830
0040CDFE |. |03F0 add esi, eax
0040CE00 |. |56 push esi
0040CE01 |. |E8 2A2A0000 call 0040F830
0040CE06 |. |8B4C06 1C mov ecx, dword ptr [esi+eax+1C]
0040CE0A |. |8D4406 1C lea eax, dword ptr [esi+eax+1C]
0040CE0E |. |83C4 08 add esp, 8
0040CE11 |. |8D4488 04 lea eax, dword ptr [eax+ecx*4+4]
0040CE15 |. |5E pop esi
0040CE16 \. |C2 0400 retn 4
0040CE19 |90 nop
0040CE1A |90 nop
0040CE1B |90 nop
0040CE1C |90 nop
0040CE1D |90 nop
0040CE1E |90 nop
0040CE1F |90 nop
0040CE20 . |6A 00 push 0
0040CE22 . |6A 00 push 0
0040CE24 . |68 E2070000 push 7E2
0040CE29 . |E8 F2680100 call 00423720
0040CE2E . |C3 retn
0040CE2F |90 nop
0040CE30 . |8B4424 0C mov eax, dword ptr [esp+C]
0040CE34 . |83EC 10 sub esp, 10
0040CE37 . |50 push eax
0040CE38 . |E8 B32D0000 call 0040FBF0
0040CE3D . |8B50 1C mov edx, dword ptr [eax+1C]
0040CE40 . |83C4 04 add esp, 4
0040CE43 . |8D4C24 00 lea ecx, dword ptr [esp]
0040CE47 . |51 push ecx ; /pRect
0040CE48 . |52 push edx ; |hWnd
0040CE49 . |FF15 30854800 call dword ptr [<&USER32.GetClientRec>; \GetClientRect
0040CE4F . |8B4424 08 mov eax, dword ptr [esp+8]
0040CE53 . |8B4C24 00 mov ecx, dword ptr [esp]
0040CE57 . |2BC1 sub eax, ecx
0040CE59 . |8B4C24 14 mov ecx, dword ptr [esp+14]
0040CE5D . |8901 mov dword ptr [ecx], eax
0040CE5F . |83C4 10 add esp, 10
0040CE62 . |C3 retn
|