Ha
Posted 02/10/2015 at 00:57 by Neyil
[ENABLE]
alloc(newmem,2048)
alloc(newmem2,2048)
label(returnhere)
label(returnhere2)
label(originalcode)
label(originalcode2)
label(exit)
label(exit2)
label(john15)
label(john16)
registersymbol(john15)
registersymbol(john16)
globalalloc(MyHP,4)
MyHP:
dd (float)1337
aobscan(aob1,D9 45 FC 8B E5 5D C3 CC CC CC CC CC 55)
newmem:
mov eax,[MyHP]
mov [ebp-04],eax
originalcode:
fld dword ptr [ebp-04]
mov esp,ebp
exit:
jmp returnhere
aob1:
john15:
jmp newmem
returnhere:
newmem2:
mov eax,[MyHP]
mov [ebp-04],eax
originalcode2:
fld dword ptr [ebp-04]
mov esp,ebp
exit2:
jmp returnhere
aob1+60:
john16:
jmp newmem
returnhere2:
[DISABLE]
dealloc(newmem)
john15:
fld dword ptr [ebp-04]
mov esp,ebp
unregistersymbol(john15)
dealloc(newmem2)
john16:
fld dword ptr [ebp-04]
mov esp,ebp
unregistersymbol(john16)
alloc(newmem,2048)
alloc(newmem2,2048)
label(returnhere)
label(returnhere2)
label(originalcode)
label(originalcode2)
label(exit)
label(exit2)
label(john15)
label(john16)
registersymbol(john15)
registersymbol(john16)
globalalloc(MyHP,4)
MyHP:
dd (float)1337
aobscan(aob1,D9 45 FC 8B E5 5D C3 CC CC CC CC CC 55)
newmem:
mov eax,[MyHP]
mov [ebp-04],eax
originalcode:
fld dword ptr [ebp-04]
mov esp,ebp
exit:
jmp returnhere
aob1:
john15:
jmp newmem
returnhere:
newmem2:
mov eax,[MyHP]
mov [ebp-04],eax
originalcode2:
fld dword ptr [ebp-04]
mov esp,ebp
exit2:
jmp returnhere
aob1+60:
john16:
jmp newmem
returnhere2:
[DISABLE]
dealloc(newmem)
john15:
fld dword ptr [ebp-04]
mov esp,ebp
unregistersymbol(john15)
dealloc(newmem2)
john16:
fld dword ptr [ebp-04]
mov esp,ebp
unregistersymbol(john16)
Total Comments 0






