游戏狂人
 
- 贡献度
- 35
- 金元
- 11936
- 积分
- 1334
- 精华
- 0
- 注册时间
- 2022-9-27
|
用CE可以搞定
[ENABLE]
aobscanmodule(xuetiaosuoxiao,eldenring.exe,F3 48 0F 2A C8 0F 5B C0 F3 0F 5C CA)
alloc(newmem,$1000,xuetiaosuoxiao)
label(code)
label(return)
newmem:
cmp r10d,1e0
je q1
cmp r10d,ded
je q2
cmp r10d,339
je code
mulss xmm3,xmm1
addss xmm3,xmm2
jmp return
code:
mulss xmm3,xmm1
mulss xmm3,[exit2+8]
addss xmm3,xmm2
jmp return
q1:
mulss xmm3,xmm1
mulss xmm3,[exit2]
addss xmm3,xmm2
jmp return
q2:
mulss xmm3,xmm1
mulss xmm3,[exit2+4]
addss xmm3,xmm2
jmp return
exit2:
dd (float)0.4 (float)0.45 (float)0.4
//三围长度
xuetiaosuoxiao+10:
jmp newmem
nop 3
return:
xuetiaosuoxiao-27:
db eb 04
registersymbol(xuetiaosuoxiao)
[DISABLE]
xuetiaosuoxiao+10:
db F3 0F 59 D9 F3 0F 58 DA
xuetiaosuoxiao-27:
db 7f 04
unregistersymbol(xuetiaosuoxiao)
dealloc(newmem)
{
eldenring.exe+74BB39: C3 - ret
eldenring.exe+74BB3A: 8D 50 FF - lea edx,[rax-01]
eldenring.exe+74BB3D: 66 0F 6E D9 - movd xmm3,ecx
eldenring.exe+74BB41: 0F 5B DB - cvtdq2ps xmm3,xmm3
eldenring.exe+74BB44: 45 8D 41 01 - lea r8d,[r9+01]
eldenring.exe+74BB48: 0F 57 C9 - xorps xmm1,xmm1
eldenring.exe+74BB4B: 66 41 0F 6E C2 - movd xmm0,r10d
eldenring.exe+74BB50: 0F 57 D2 - xorps xmm2,xmm2
eldenring.exe+74BB53: F3 48 0F 2A D0 - cvtsi2ss xmm2,rax
eldenring.exe+74BB58: 41 8B C1 - mov eax,r9d
eldenring.exe+74BB5B: F3 48 0F 2A C8 - cvtsi2ss xmm1,rax
eldenring.exe+74BB60: 0F 5B C0 - cvtdq2ps xmm0,xmm0
eldenring.exe+74BB63: F3 0F 5C CA - subss xmm1,xmm2
eldenring.exe+74BB67: F3 0F 5E D8 - divss xmm3,xmm0
eldenring.exe+74BB6B: F3 0F 59 D9 - mulss xmm3,xmm1
eldenring.exe+74BB6F: F3 0F 58 DA - addss xmm3,xmm2
eldenring.exe+74BB73: F3 48 0F 2C C3 - cvttss2si rax,xmm3
eldenring.exe+74BB78: 44 3B C2 - cmp r8d,edx
eldenring.exe+74BB7B: 76 11 - jna eldenring.exe+74BB8E
eldenring.exe+74BB7D: 44 3B C0 - cmp r8d,eax
eldenring.exe+74BB80: 44 0F 43 C0 - cmovae r8d,eax
}
|
|