Joined: 09 May 2003 Posts: 25815 Location: The netherlands
Posted: Mon Jan 16, 2017 4:57 am Post subject:
the offset is 0
remember that the value of the register shows is that from after that i struction has been executed, so ebx and edx are gone.
but since you did find what access on the address you know what the original value was. (the address itself)
so if you did find what access on 02ad024c then ebx would have the value of 02ad024c
so now figure oit how the register got that value. Look at the disassembler, or try your luck and scan for a memory address that has your address as value _________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum You cannot attach files in this forum You can download files in this forum