- UID
- 60310
- 帖子
- 157
- 主題
- 70
- 精華
- 0
- 積分
- 183
- 楓幣
- 2702
- 威望
- 103
- 存款
- 0
- 贊助金額
- 0
- 推廣
- 0
- GP
- 85
- 閱讀權限
- 20
- 性別
- 保密
- 在線時間
- 1592 小時
- 註冊時間
- 2014-5-13
- 最後登入
- 2023-2-3
|
不能用createthread的,試試這個- //TwMS 191_ICS_怪物掉落
- [Enable]
- alloc(MyLR,1024)
- registersymbol(MyLR)
- Alloc(FakeDump,1024)
- Alloc(CRCBypass,4)
- Label(MSmemcpy)
- label(Right)
- label(Left)
- label(MobEnd)
- MyLR:
- cmp [esp+3c],011DF1DC
- je MobEnd
- cmp [CRCBypass],0
- je MSmemcpy
- jmp 00B4E146
- MobEnd:
- cmp [CRCBypass],0
- je 00B4E146
- mov [esp+3c],Left
- jmp 00B4E146
- Left:
- cmp [esi],01845f54
- jne 011DF1DC
- mov eax,FakeDump
- mov [esi],eax
- mov eax,[esi]
- push edi
- mov ecx,esi
- call dword ptr [eax+3c]
- mov [esi],01845f54
- jmp 011DF1e4
- Right:
- push ebp
- mov ebp,esp
- sub esp,10
- mov eax,[01c02f24]
- push ebx
- push esi
- mov esi,ecx
- cmp dword ptr [esi+000003f0],02
- push edi
- mov [ebp-10],eax
- jmp 011eb91f //jne
- MSmemcpy:
- pushad
- mov edi,FakeDump
- mov esi,01845f54
- mov ecx,0000080 //128*8=1024
- repe movsd
- mov edi,FakeDump
- mov [edi+08],011df1f4 //走怪掉落
- mov eax,Right
- mov [edi+0c],eax //跳怪掉落
- popad
- mov [CRCBypass],1
- jmp 00B4E146
- 01BBCD5C:
- DD MyLR
- [Disable]
- 01BBCD5C:
- dd 00B4E146
- dealloc(MyLR)
- unregistersymbol(MyLR)
複製代碼 |
|