64,646
社区成员
发帖
与我相关
我的任务
分享
PUBLIC procOEP
assume fs:nothing
.code
;**********************************************************
ShellStart0 LABEL DWORD
pushad ; 外壳入口点
call next0
;**********************************************************
;**********************************************************
next0:
jmp procOEP
procOEP DD 0
ShellEnd0 LABEL DWORD
extern "C" DWORD procOEP;
procOEP = m_pNtHeaders->OptionalHeader.AddressOfEntryPoint;
BOOL WINAPI WriteProcessMemory(
__in HANDLE hProcess,
__in LPVOID lpBaseAddress,
__in LPCVOID lpBuffer,
__in SIZE_T nSize,
__out SIZE_T* lpNumberOfBytesWritten
);