能力值:
( LV2,RANK:10 )
|
-
-
2 楼
int 2E 行不行...
mov eax, service_id
lea edx, service_param
int 2e
EAX = function number
EDX = address of parameter block
Windows 2000
0x64 OpenFile
0xa1 ReadFile
Windows XP
0x74 OpenFile
0xb7 ReadFile
ec3K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4m8W2k6r3W2&6i4K6u0W2j5$3!0E0i4K6u0r3k6r3!0U0N6h3#2W2L8Y4c8Q4x3V1k6i4K9h3&6V1L8%4N6K6i4K6g2X3f1%4W2K6N6r3g2E0i4K6g2X3b7$3q4D9L8q4)9#2k6W2c8S2j5X3I4W2i4K6u0r3g2$3W2F1k6r3!0%4M7#2)9#2k6W2y4&6M7%4c8W2L8g2)9#2k6V1y4S2L8r3I4Q4y4h3k6f1j5h3u0D9k6g2)9J5k6h3S2@1L8b7`.`.
|
能力值:
( LV2,RANK:10 )
|
-
-
3 楼
in out 指令读取端口行不
|
能力值:
( LV2,RANK:10 )
|
-
-
4 楼
NT系列函数算不,可以直接使用ntdll.dll的NtCreateFile NtReadFile
|
|
|