冰楓論壇

標題: TwMS v168.3_ICS_定點生怪 [打印本頁]

作者: abc123987    時間: 2014-3-12 20:00
標題: TwMS v168.3_ICS_定點生怪

  1. //TwMS v168.3_ICS_定點生怪
  2. //ISC:歐歐
  3. //Updata:尋風幽情
  4. //-----------------------------------------
  5. [ENABLE]
  6. RegisterSymbol(ReLifeVac)
  7. Alloc(ReLifeVac, 256)
  8. RegisterSymbol(RelifeXY)
  9. Alloc(RelifeXY,8)
  10. RegisterSymbol(RelifeSwitch)
  11. Alloc(RelifeSwitch, 4)
  12. Label(ReLifeVacXY)
  13. Label(DoRelife)
  14. Label(Return)
  15. //-----------------------------------------
  16. RelifeSwitch:
  17. DD 1
  18. //-----------------------------------------
  19. ReLifeVac:
  20. Cmp [RelifeSwitch],1
  21. Je  ReLifeVacXY
  22. Cmp [RelifeSwitch],2
  23. Je  DoRelife
  24. Jmp Return
  25. //-----------------------------------------
  26. ReLifeVacXY:
  27. Push Eax
  28. mov eax,[014A5DCC]
  29. Push [Eax+00001288]
  30. Pop  [RelifeXY]
  31. Push [Eax+0000128C]
  32. Pop  [RelifeXY+4]
  33. Pop  Eax
  34. Mov  [RelifeSwitch],2
  35. Jmp  Return
  36. //-----------------------------------------
  37. DoRelife:
  38. Cmp [Esp], 00781378
  39. Jne Return
  40. Cmp dword ptr [Esp+18],02
  41. Jne Return
  42. Push Ecx
  43. Mov  Eax,[RelifeXY]
  44. Mov  [Esp+0c], eax
  45. Mov  Eax,[RelifeXY+4]
  46. Mov  [Esp+10], eax
  47. Push Eax
  48. mov ecx,[0149E2E4]
  49. call 0048C409
  50. Mov  Ecx, eax
  51. Mov  [Esp+20], ecx
  52. Pop  Ecx
  53. Jmp  Return
  54. //-----------------------------------------
  55. Return:
  56. push ebp
  57. mov ebp,esp
  58. push ebx
  59. push esi
  60. Jmp 00D3FA21+5
  61. //-----------------------------------------

  62. 01228ED0:
  63. dd ReLifeVac

  64. [DISABLE]
  65. 01228ED0:
  66. dd 00D3FA21

  67. UnRegisterSymbol(ReLifeVac)
  68. DeAlloc(ReLifeVac)
  69. UnRegisterSymbol(RelifeXY)
  70. DeAlloc(RelifeXY)
  71. UnRegisterSymbol(RelifeSwitch)
  72. DeAlloc(RelifeSwitch)

複製代碼

作者: G88828    時間: 2014-3-17 19:54
來試試看 謝謝分享




歡迎光臨 冰楓論壇 (https://bingfong.com/) Powered by 冰楓