| View previous topic :: View next topic |
| Author |
Message |
Chaosis13 Master Cheater
Reputation: 0
Joined: 14 Aug 2007 Posts: 372
|
Posted: Tue Jul 14, 2009 12:25 pm Post subject: Copy Microsoft Functions |
|
|
I want to make a copy of a Microsoft function like Sleep, then edit the assembly to do something a little different (I can do that). When I set a pointer to Sleep and goto it in Cheat Engine I get this:
| Code: | 7606EEC6 - 8b ff - mov edi,edi
7606EEC8 - 55 - push ebp
7606EEC9 - 8b ec - mov ebp,esp
7606EECB - 5d - pop ebp
7606EECC - e9 fd 31 fb ff - jmp createprocessa+6c
|
And nop's before and after. How do I follow the jmp? Any idea of what to do next?
|
|
| Back to top |
|
 |
&Vage Grandmaster Cheater Supreme
Reputation: 0
Joined: 25 Jul 2008 Posts: 1053
|
Posted: Tue Jul 14, 2009 12:38 pm Post subject: |
|
|
| Push F5 than wait for it to break than F11 or F12.
|
|
| Back to top |
|
 |
Chaosis13 Master Cheater
Reputation: 0
Joined: 14 Aug 2007 Posts: 372
|
Posted: Tue Jul 14, 2009 12:57 pm Post subject: |
|
|
So I toggle breakpoint, then what? F11/F12 doesn't do anything... Kernel tools grayed out and not enabled.
Sorry, I don't use Cheat Engine often anymore...
|
|
| Back to top |
|
 |
Anden100 Grandmaster Cheater
Reputation: 0
Joined: 20 Apr 2007 Posts: 668
|
Posted: Tue Jul 14, 2009 1:51 pm Post subject: |
|
|
| Ollydbg might be better for this job
|
|
| Back to top |
|
 |
Dark Byte Site Admin
Reputation: 470
Joined: 09 May 2003 Posts: 25806 Location: The netherlands
|
Posted: Tue Jul 14, 2009 6:55 pm Post subject: |
|
|
in ce:
step into = f7
step over = f8
anyhow, just press space on a jmp and it'll go to that location
_________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping |
|
| Back to top |
|
 |
|