Register for your free account! | Forgot your password?

You last visited: Today at 06:24

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



Function Adress Dumper

Discussion on Function Adress Dumper within the Metin2 Hacks, Bots, Cheats, Exploits & Macros forum part of the Metin2 category.

Closed Thread
 
Old 10/26/2011, 16:56   #31
 
elite*gold: 0
Join Date: Nov 2008
Posts: 336
Received Thanks: 21
Best best best best, bin direct meinen Multihack schreiben... Danke dirrr!
Cekdar is offline  
Thanks
1 User
Old 10/26/2011, 17:24   #32
 
elite*gold: 0
Join Date: Nov 2010
Posts: 38
Received Thanks: 0
how to use this is it good for metin2ro as well?
heghessilviu is offline  
Old 10/26/2011, 17:32   #33
 
elite*gold: 0
Join Date: Nov 2008
Posts: 336
Received Thanks: 21
welche datei soll man da dumpen, bei metin2 verstehe ich es nicht-.-,,, soll ich jez eine dummped exe suchen, und sie drozdem wieder dumpen... oder einfach die metin2.exe oder den metin2client.bin dumpen? help pls
Cekdar is offline  
Thanks
1 User
Old 10/26/2011, 17:36   #34

 
Unpublished's Avatar
 
elite*gold: 725
Join Date: Sep 2009
Posts: 1,432
Received Thanks: 1,911
metin2client.bin und vorher mit PE Explorer entpacken.
Unpublished is offline  
Thanks
2 Users
Old 10/26/2011, 17:39   #35
 
elite*gold: 0
Join Date: Nov 2008
Posts: 336
Received Thanks: 21
danke für die schnelle antwort
Cekdar is offline  
Old 11/05/2011, 16:14   #36
 
elite*gold: 14
The Black Market: 108/0/1
Join Date: May 2011
Posts: 2,671
Received Thanks: 818
Wenn ich im Log jetzt z.B. diese Adresse habe, wie bekomme ich dann die Argumente davon?
GetPlayTime 00451000

In Olly sieht der asm code bei der addy so aus:
Code:
CPU Disasm
Address   Hex dump          Command                                                Comments
00451000  /.  8B0D 7C828100 MOV ECX,DWORD PTR DS:[81827C]
00451006  |.  E8 F586FFFF   CALL 00449700
0045100B  |.  894424 08     MOV DWORD PTR SS:[ARG.2],EAX
0045100F  |.  C74424 04 700 MOV DWORD PTR SS:[ARG.1],00760C70
00451017  \.- FF25 30F87500 JMP DWORD PTR DS:[<&python22.Py_BuildValue>]
vwap is offline  
Thanks
1 User
Old 11/05/2011, 19:48   #37
 
Mi4uric3's Avatar
 
elite*gold: 405
Join Date: Dec 2007
Posts: 6,615
Received Thanks: 6,358
Quote:
Originally Posted by Headpuster View Post
Code:
[COLOR="Blue"]MOV[/COLOR] ECX,[0081827C]
[COLOR="Blue"]CALL[/COLOR] 00449700
Benötigt wie man sieht keine Argumente, da kein "Push [irgendwas]" vorkommt
Mi4uric3 is offline  
Thanks
1 User
Old 11/05/2011, 19:56   #38
 
SandMann016's Avatar
 
elite*gold: 0
Join Date: Feb 2009
Posts: 2,715
Received Thanks: 5,305
Quote:
Originally Posted by Headpuster View Post
Wenn ich im Log jetzt z.B. diese Adresse habe, wie bekomme ich dann die Argumente davon?
GetPlayTime 00451000

In Olly sieht der asm code bei der addy so aus:
Code:
CPU Disasm
Address   Hex dump          Command                                                Comments
00451000  /.  8B0D 7C828100 MOV ECX,DWORD PTR DS:[81827C]
00451006  |.  E8 F586FFFF   CALL 00449700
0045100B  |.  894424 08     MOV DWORD PTR SS:[ARG.2],EAX
0045100F  |.  C74424 04 700 MOV DWORD PTR SS:[ARG.1],00760C70
00451017  \.- FF25 30F87500 JMP DWORD PTR DS:[<&python22.Py_BuildValue>]
Ich gehe jetzt mal davon aus das das result hier ist:0045100B oder so is
//GetPlayTimeInSeconds----------------------------------------
int GetPlayTimerInSeconds()
{
DWORD GetPlayTimeInput = *(DWORD*)(0x81827C), GetPlayTimeCall = 0x449700;
int result;
__asm
{
MOV ECX,GetPlayTimeInput
CALL GetPlayTimeCall
MOV result,eax
}
return result;
}

so oder soähnlich sollte es aussehen o.O
SandMann016 is offline  
Thanks
1 User
Old 11/06/2011, 02:52   #39
 
.ErpeL's Avatar
 
elite*gold: 2
Join Date: Apr 2010
Posts: 252
Received Thanks: 4,688
__asm
{
MOV ECX,GetPlayTimeInput
CALL GetPlayTimeCall
MOV result, EAX
}

Version 1.2

So jetzt sollte es mit dem Korea Metin gehn. Das Problem ist nur das sich die ImageBase nach jedem Neustart ändert, man müsste also jedes Offset wie folgt umrechen:

In der Liste Steht z.B.:
GetMainActorVID 00413AF0

und die Aktuelle ImageBase ist 012B0000, dann müsste man 012B0000 + (00413AF0 - 00400000) rechnen. Also ImageBase + (AdresseInDerListe - 00400000). Dann sucht man nach 13E4AF0 anstelle von 00413AF0.

Ich werde das Teil deshalb später als DLL umprogrammieren damit man es in den laufenen Prozess injizieren kann und immer die Aktuellen Adressen hat ohne Rechnen zu müssen.
.ErpeL is offline  
Thanks
1 User
Closed Thread


Similar Threads Similar Threads
[PSERVER] config & e Dumper
03/06/2017 - Kal Hacks, Bots, Cheats & Exploits - 59 Replies
Info Dumps all KalClient configs to textfiles. How to use: - Copy to KalOnline folder - Start Kal - Check /Dump folder - e.pk dialogs will be only dumped if you open them Works with every Hackshield. Have Fun.
Metin2 Function Adress Dumper
08/30/2015 - Metin2 Hacks, Bots, Cheats, Exploits & Macros - 26 Replies
<? ################################################# ### # # # Tontonq © # # # ################################################# ## $base=0x400000; // .code base $data=file_get_contents("m2usa.exe"); // unpacked of metin2client.bin $logdosya="m2fnc.txt"; // log file
Dumper Tool?
02/20/2010 - GW Bots - 4 Replies
I'm looking for a dumper that will show me my character's current x/y position. Doesn't have to be anything special. The dumper or source would be enough. Trying to write my first GWCA bot and I'm stuck with posx and posy.
[Release] CQ_Database Dumper
06/23/2009 - CO2 PServer Guides & Releases - 24 Replies
Someone asked for it, so I said I'd release it. Basically just dumps one of the .sql files into an ini format. This will only be useful to you, if your writing a source to use a flat-filed system (i.e. like the source I released Drag the ".sql" file onto the program and then hit enter to start the batch, in the same folder as the ".sql" file you should see a new folder appear called CQ_DUMP, inside of that should be another folder with the table name you dumped. The format of the ini...
Dumper - Wie denn?
04/27/2009 - GW Bots - 3 Replies
Ich hock gerade vorm dumper und vesuch irgendwie die daten rauszulesen. Da gw sich aber im vordegrund öffnet is des a weng schwer - gibt es ne möglihckeit die koordinaten von einem punkt speichern zu lassen?



All times are GMT +1. The time now is 06:28.


Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2026 elitepvpers All Rights Reserved.