冰楓論壇

標題: TwMs v265.5 SkillInjection(技能注入) [打印本頁]

作者: prt    時間: 2024-11-7 01:27
標題: TwMs v265.5 SkillInjection(技能注入)
  1. //TwMs v265.5 SkillInjection(技能注入)
  2. [ENABLE]
  3. //code from here to '[DISABLE]' will be used to enable the cheat
  4. alloc(newmem,2048,144D164C0)
  5. label(returnhere)
  6. label(originalcode)
  7. label(exit)
  8. alloc(SkillID,4)
  9. alloc(Timer,4)
  10. alloc(Delay,4)
  11. registersymbol(SkillID)
  12. registersymbol(Delay)
  13. registersymbol(Timer)

  14. SkillID:
  15. dd #1221011

  16. Delay:
  17. dd #50

  18. Timer:
  19. dd 00

  20. newmem: //this is allocated memory, you have read,write,execute access
  21. //place your code here
  22. mov r8,[147DE33A0]
  23. cmp qword ptr [r8+08],2
  24. jg originalcode

  25. mov r8,[147DD22F8]
  26. mov r8,[r8+28]
  27. cmp dword ptr [r8+00019300],0
  28. je originalcode

  29. call 144E0C2B0
  30. mov r8d,eax
  31. sub r8d,dword ptr [Timer]
  32. cmp r8d,dword ptr [Delay]
  33. jl originalcode
  34. mov dword ptr [Timer],eax

  35. mov r8d,[SkillID]
  36. mov dword ptr [rbx+00008A74],r8d
  37. mov eax,0x00000001
  38. xor r8,r8
  39. jmp 144D164D9

  40. originalcode:
  41. mov eax,0x00000001
  42. xor r8,r8
  43. cmp [rbx+00008A74],r12d

  44. exit:
  45. jmp returnhere

  46. 144D164C0:
  47. jmp newmem
  48. nop
  49. nop
  50. returnhere:

  51. 144D16519:
  52. jmp 144D16661
  53. nop

  54. 144D16707:
  55. jmp 144D16761
  56. nop

  57. [DISABLE]
  58. 144D164C0:
  59. cmp [rbx+00008A74],r12d

  60. 144D16519:
  61. db 3B 83 78 8A 00 00 0F 84

  62. 144D16707:
  63. db 0F 87 1B 02 00 00

  64. dealloc(newmem)
  65. dealloc(SkillID)
  66. dealloc(Timer)
  67. dealloc(Delay)
複製代碼

作者: guoxue332    時間: 4 天前
sub r8d,dword ptr [Timer]
mov dword ptr [Timer],eax  這兩行是否可以用其他代碼來代替呢?
作者: yxes    時間: 4 天前
guoxue332 發表於 2024-11-19 10:27
sub r8d,dword ptr [Timer]
mov dword ptr [Timer],eax  這兩行是否可以用其他代碼來代替呢? ...

no, it uses TimeGetTime function and subtracts it to get ready for the next execution
then it stores new Timer

It works like this:
Put current time in [Timer]
Compare current time with [Timer] by subtracting current time with [Timer]
If that time exceeds our [Delay], execute code (use the skill)

作者: guoxue332    時間: 4 天前
yxes 發表於 2024-11-19 13:44
no, it uses TimeGetTime function and subtracts it to get ready for the next execution
then it stor ...

是這樣喔,感謝解答




歡迎光臨 冰楓論壇 (https://bingfong.com/) Powered by 冰楓