Forums WoW Modding Support Archives WoWModding Support Archives [DiscordArchive] Are you sure your offset was function + bypass overwritten instructions?

[DiscordArchive] Are you sure your offset was function + bypass overwritten instructions?

[DiscordArchive] Are you sure your offset was function + bypass overwritten instructions?

Pages (2): 1 2 Next
rektbyfaith
Administrator
0
06-18-2023, 10:45 AM
#1
Archived author: Nix • Posted: 2023-06-18T10:45:03.327000+00:00
Original source

Are you sure your offset was function + bypass overwritten instructions?
rektbyfaith
06-18-2023, 10:45 AM #1

Archived author: Nix • Posted: 2023-06-18T10:45:03.327000+00:00
Original source

Are you sure your offset was function + bypass overwritten instructions?

rektbyfaith
Administrator
0
06-18-2023, 10:45 AM
#2
Archived author: 4bhorrent • Posted: 2023-06-18T10:45:31.533000+00:00
Original source

what exactly do you mean/refer to?=
rektbyfaith
06-18-2023, 10:45 AM #2

Archived author: 4bhorrent • Posted: 2023-06-18T10:45:31.533000+00:00
Original source

what exactly do you mean/refer to?=

rektbyfaith
Administrator
0
06-18-2023, 10:45 AM
#3
Archived author: 4bhorrent • Posted: 2023-06-18T10:45:56.957000+00:00
Original source


[Image: image.png?ex=690c7c64&is=690b2ae4&hm=419...677172d79&]
rektbyfaith
06-18-2023, 10:45 AM #3

Archived author: 4bhorrent • Posted: 2023-06-18T10:45:56.957000+00:00
Original source


[Image: image.png?ex=690c7c64&is=690b2ae4&hm=419...677172d79&]

rektbyfaith
Administrator
0
06-18-2023, 10:46 AM
#4
Archived author: 4bhorrent • Posted: 2023-06-18T10:46:13.617000+00:00
Original source

767 entries
rektbyfaith
06-18-2023, 10:46 AM #4

Archived author: 4bhorrent • Posted: 2023-06-18T10:46:13.617000+00:00
Original source

767 entries

rektbyfaith
Administrator
0
06-18-2023, 10:46 AM
#5
Archived author: Nix • Posted: 2023-06-18T10:46:14.098000+00:00
Original source

If your function lies at 0x100, and you patch the first 2 bytes, your offset to call is 0x102
rektbyfaith
06-18-2023, 10:46 AM #5

Archived author: Nix • Posted: 2023-06-18T10:46:14.098000+00:00
Original source

If your function lies at 0x100, and you patch the first 2 bytes, your offset to call is 0x102

rektbyfaith
Administrator
0
06-18-2023, 10:47 AM
#6
Archived author: 4bhorrent • Posted: 2023-06-18T10:47:16.973000+00:00
Original source

the function still lies at 0x100... just that the first 2 bytes have been overwritten with something else, no? ^^
rektbyfaith
06-18-2023, 10:47 AM #6

Archived author: 4bhorrent • Posted: 2023-06-18T10:47:16.973000+00:00
Original source

the function still lies at 0x100... just that the first 2 bytes have been overwritten with something else, no? ^^

rektbyfaith
Administrator
0
06-18-2023, 10:47 AM
#7
Archived author: Nix • Posted: 2023-06-18T10:47:33.631000+00:00
Original source

Yes, but to call it, you must avoid your overwritten instructions (The jmp)
rektbyfaith
06-18-2023, 10:47 AM #7

Archived author: Nix • Posted: 2023-06-18T10:47:33.631000+00:00
Original source

Yes, but to call it, you must avoid your overwritten instructions (The jmp)

rektbyfaith
Administrator
0
06-18-2023, 10:47 AM
#8
Archived author: Nix • Posted: 2023-06-18T10:47:40.717000+00:00
Original source

Thus you must call it at the later address
rektbyfaith
06-18-2023, 10:47 AM #8

Archived author: Nix • Posted: 2023-06-18T10:47:40.717000+00:00
Original source

Thus you must call it at the later address

rektbyfaith
Administrator
0
06-18-2023, 10:48 AM
#9
Archived author: Nix • Posted: 2023-06-18T10:48:11.781000+00:00
Original source

Otherwise you reach an infinite loop like we talked about the other day
rektbyfaith
06-18-2023, 10:48 AM #9

Archived author: Nix • Posted: 2023-06-18T10:48:11.781000+00:00
Original source

Otherwise you reach an infinite loop like we talked about the other day

rektbyfaith
Administrator
0
06-18-2023, 10:48 AM
#10
Archived author: 4bhorrent • Posted: 2023-06-18T10:48:20.727000+00:00
Original source

DetourAttach handles this already... it writes a new pointer over the function pointer for the old function, which is the trampoline
rektbyfaith
06-18-2023, 10:48 AM #10

Archived author: 4bhorrent • Posted: 2023-06-18T10:48:20.727000+00:00
Original source

DetourAttach handles this already... it writes a new pointer over the function pointer for the old function, which is the trampoline

Pages (2): 1 2 Next
Recently Browsing
 1 Guest(s)
Recently Browsing
 1 Guest(s)