- 注册时间
- 2011-8-8
- 最后登录
- 1970-1-1
该用户从未签到
|
奇迹MU自动捡物内挂资料,有兴趣的可以研究一下啊
YZEx.dll+5390 - 55 - push ebp
YZEx.dll+5391 - 8B EC - mov ebp,esp
YZEx.dll+5393 - 83 EC 2C - sub esp,2C
YZEx.dll+5396 - A1 58A0AF09 - mov eax,[YZEx.dll+3A058]
YZEx.dll+539B - 33 C5 - xor eax,ebp
YZEx.dll+539D - 89 45 E8 - mov [ebp-18],eax
YZEx.dll+53A0 - C7 45 EC 00000000 - mov [ebp-14],00000000
YZEx.dll+53A7 - C7 45 F8 00000000 - mov [ebp-08],00000000
YZEx.dll+53AE - C7 45 F4 00000000 - mov [ebp-0C],00000000
YZEx.dll+53B5 - C7 45 F0 00000000 - mov [ebp-10],00000000
YZEx.dll+53BC - C7 45 FC 00000000 - mov [ebp-04],00000000
YZEx.dll+53C3 - 83 3D 94AFAF09 00 - cmp dword ptr [YZEx.dll+3AF94],00
YZEx.dll+53CA - 0F85 1B030000 - jne YZEx.dll+56EB
YZEx.dll+53D0 - 83 3D 98AFAF09 00 - cmp dword ptr [YZEx.dll+3AF98],00 ;判断是否自动捡物 0自动捡物
YZEx.dll+53D7 - 74 0D - je YZEx.dll+53E6
YZEx.dll+53D9 - 68 E8030000 - push 000003E8
YZEx.dll+53DE - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8]
YZEx.dll+53E4 - EB DD - jmp YZEx.dll+53C3
YZEx.dll+53E6 - A1 BC4DA107 - mov eax,[main.exe+7614DBC] ;人物指针
YZEx.dll+53EB - A3 C0EDB009 - mov [YZEx.dll+4EDC0],eax ;人物指针
YZEx.dll+53F0 - C7 45 D8 00000000 - mov [ebp-28],00000000
YZEx.dll+53F7 - EB 09 - jmp YZEx.dll+5402
YZEx.dll+53F9 - 8B 4D D8 - mov ecx,[ebp-28]
YZEx.dll+53FC - 83 C1 01 - add ecx,01
YZEx.dll+53FF - 89 4D D8 - mov [ebp-28],ecx
YZEx.dll+5402 - 81 7D D8 E8030000 - cmp [ebp-28],000003E8
YZEx.dll+5409 - 0F8D CC020000 - jnl YZEx.dll+56DB
YZEx.dll+540F - 8B 55 D8 - mov edx,[ebp-28]
YZEx.dll+5412 - 69 D2 60020000 - imul edx,edx,00000260
YZEx.dll+5418 - 03 15 8CAFAF09 - add edx,[YZEx.dll+3AF8C] [YZEx.dll+3AF8C] 为地面物品结构的基址
YZEx.dll+541E - 89 55 D4 - mov [ebp-2C],edx
YZEx.dll+5421 - 83 3D 94AFAF09 00 - cmp dword ptr [YZEx.dll+3AF94],00
YZEx.dll+5428 - 74 05 - je YZEx.dll+542F
YZEx.dll+542A - E9 AC020000 - jmp YZEx.dll+56DB
YZEx.dll+542F - 8B 45 D4 - mov eax,[ebp-2C]
YZEx.dll+5432 - 0FBE 48 04 - movsx ecx,byte ptr [eax+04]
YZEx.dll+5436 - 85 C9 - test ecx,ecx
YZEx.dll+5438 - 74 0B - je YZEx.dll+5445
YZEx.dll+543A - 8B 55 D4 - mov edx,[ebp-2C]
YZEx.dll+543D - 0FBE 42 0C - movsx eax,byte ptr [edx+0C]
YZEx.dll+5441 - 85 C0 - test eax,eax
YZEx.dll+5443 - 75 02 - jne YZEx.dll+5447
YZEx.dll+5445 - EB B2 - jmp YZEx.dll+53F9
YZEx.dll+5447 - 8B 4D D4 - mov ecx,[ebp-2C]
YZEx.dll+544A - D9 81 FC000000 - fld dword ptr [ecx+000000FC]
YZEx.dll+5450 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+5456 - D8 A2 98030000 - fsub dword ptr [edx+00000398]
YZEx.dll+545C - D9 5D DC - fstp dword ptr [ebp-24]
YZEx.dll+545F - 8B 45 D4 - mov eax,[ebp-2C]
YZEx.dll+5462 - D9 80 00010000 - fld dword ptr [eax+00000100]
YZEx.dll+5468 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+546E - D8 A1 9C030000 - fsub dword ptr [ecx+0000039C]
YZEx.dll+5474 - D9 5D E0 - fstp dword ptr [ebp-20]
YZEx.dll+5477 - 8B 55 D4 - mov edx,[ebp-2C]
YZEx.dll+547A - D9 82 04010000 - fld dword ptr [edx+00000104]
YZEx.dll+5480 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5485 - D8 A0 A0030000 - fsub dword ptr [eax+000003A0]
YZEx.dll+548B - D9 5D E4 - fstp dword ptr [ebp-1C]
YZEx.dll+548E - 8D 4D DC - lea ecx,[ebp-24]
YZEx.dll+5491 - 51 - push ecx
YZEx.dll+5492 - FF 15 00C1AF09 - call dword ptr [YZEx.dll+3C100]
YZEx.dll+5498 - 83 C4 04 - add esp,04
YZEx.dll+549B - DC 1D 9076AF09 - fcomp qword ptr [YZEx.dll+37690]
YZEx.dll+54A1 - DFE0 - fnstsw ax
YZEx.dll+54A3 - F6 C4 01 - test ah,01 判断距离,
YZEx.dll+54A6 - 75 05 - jne YZEx.dll+54AD
YZEx.dll+54A8 - E9 4CFFFFFF - jmp YZEx.dll+53F9
YZEx.dll+54AD - 83 3D A050B009 00 - cmp dword ptr [YZEx.dll+450A0],00
YZEx.dll+54B4 - 74 15 - je YZEx.dll+54CB
YZEx.dll+54B6 - 8B 55 D8 - mov edx,[ebp-28]
YZEx.dll+54B9 - 52 - push edx
YZEx.dll+54BA - E8 01FCFFFF - call YZEx.dll+50C0 判断物品是否捡取CALL,捡取返回1,否则为0
YZEx.dll+54BF - 83 C4 04 - add esp,04
YZEx.dll+54C2 - 85 C0 - test eax,eax
YZEx.dll+54C4 - 75 05 - jne YZEx.dll+54CB
YZEx.dll+54C6 - E9 2EFFFFFF - jmp YZEx.dll+53F9
YZEx.dll+54CB - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+54D0 - 8B 88 8C000000 - mov ecx,[eax+0000008C]
YZEx.dll+54D6 - 89 4D EC - mov [ebp-14],ecx
YZEx.dll+54D9 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+54DF - 8B 82 90000000 - mov eax,[edx+00000090]
YZEx.dll+54E5 - 89 45 F8 - mov [ebp-08],eax
YZEx.dll+54E8 - 8B 4D D4 - mov ecx,[ebp-2C]
YZEx.dll+54EB - D9 81 FC000000 - fld dword ptr [ecx+000000FC]
YZEx.dll+54F1 - DC 0D 8876AF09 - fmul qword ptr [YZEx.dll+37688]
YZEx.dll+54F7 - E8 14400200 - call YZEx.dll+29510 返回物品X坐标
YZEx.dll+54FC - 89 45 F4 - mov [ebp-0C],eax
YZEx.dll+54FF - 8B 55 D4 - mov edx,[ebp-2C]
YZEx.dll+5502 - D9 82 00010000 - fld dword ptr [edx+00000100]
YZEx.dll+5508 - DC 0D 8876AF09 - fmul qword ptr [YZEx.dll+37688]
YZEx.dll+550E - E8 FD3F0200 - call YZEx.dll+29510 返回物品Y坐标
YZEx.dll+5513 - 89 45 F0 - mov [ebp-10],eax
YZEx.dll+5516 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+551B - C6 40 59 01 - mov byte ptr [eax+59],01
YZEx.dll+551F - 6A 00 - push 00
YZEx.dll+5521 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+5527 - 81 C1 28020000 - add ecx,00000228
YZEx.dll+552D - 51 - push ecx
YZEx.dll+552E - 8B 55 F0 - mov edx,[ebp-10]
YZEx.dll+5531 - 52 - push edx
YZEx.dll+5532 - 8B 45 F4 - mov eax,[ebp-0C]
YZEx.dll+5535 - 50 - push eax
YZEx.dll+5536 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+553C - 8B 91 90000000 - mov edx,[ecx+00000090]
YZEx.dll+5542 - 52 - push edx
YZEx.dll+5543 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5548 - 8B 88 8C000000 - mov ecx,[eax+0000008C]
YZEx.dll+554E - 51 - push ecx
YZEx.dll+554F - FF 15 58C1AF09 - call dword ptr [YZEx.dll+3C158] 走路CALL(走向物品)
YZEx.dll+5555 - 83 C4 18 - add esp,18
YZEx.dll+5558 - 0FB6 D0 - movzx edx,al
YZEx.dll+555B - 85 D2 - test edx,edx
YZEx.dll+555D - 75 10 - jne YZEx.dll+556F
YZEx.dll+555F - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5564 - C6 40 59 00 - mov byte ptr [eax+59],00
YZEx.dll+5568 - E9 8CFEFFFF - jmp YZEx.dll+53F9
YZEx.dll+556D - EB 1D - jmp YZEx.dll+558C
YZEx.dll+556F - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+5575 - 81 C1 9C020000 - add ecx,0000029C
YZEx.dll+557B - 51 - push ecx
YZEx.dll+557C - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+5582 - 52 - push edx
YZEx.dll+5583 - FF 15 08EDB009 - call dword ptr [YZEx.dll+4ED08] 走路封包加密发送CALL
YZEx.dll+5589 - 83 C4 08 - add esp,08
YZEx.dll+558C - C7 45 FC 00000000 - mov [ebp-04],00000000
YZEx.dll+5593 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5598 - 8B 88 8C000000 - mov ecx,[eax+0000008C]
YZEx.dll+559E - 3B 4D F4 - cmp ecx,[ebp-0C]
YZEx.dll+55A1 - 75 11 - jne YZEx.dll+55B4
YZEx.dll+55A3 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+55A9 - 8B 82 90000000 - mov eax,[edx+00000090]
YZEx.dll+55AF - 3B 45 F0 - cmp eax,[ebp-10]
YZEx.dll+55B2 - 74 20 - je YZEx.dll+55D4
YZEx.dll+55B4 - 8B 4D FC - mov ecx,[ebp-04]
YZEx.dll+55B7 - 8B 55 FC - mov edx,[ebp-04]
YZEx.dll+55BA - 83 C2 01 - add edx,01
YZEx.dll+55BD - 89 55 FC - mov [ebp-04],edx
YZEx.dll+55C0 - 83 F9 0A - cmp ecx,0A
YZEx.dll+55C3 - 7E 02 - jle YZEx.dll+55C7
YZEx.dll+55C5 - EB 0D - jmp YZEx.dll+55D4
YZEx.dll+55C7 - 68 F4010000 - push 000001F4
YZEx.dll+55CC - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8]
YZEx.dll+55D2 - EB BF - jmp YZEx.dll+5593
YZEx.dll+55D4 - 8B 45 D8 - mov eax,[ebp-28]
YZEx.dll+55D7 - A3 7095AE07 - mov [main.exe+76E9570],eax
YZEx.dll+55DC - 8B 0D 90AFAF09 - mov ecx,[YZEx.dll+3AF90]
YZEx.dll+55E2 - C6 01 01 - mov byte ptr [ecx],01
YZEx.dll+55E5 - 6A 01 - push 01
YZEx.dll+55E7 - 8B 55 D4 - mov edx,[ebp-2C]
YZEx.dll+55EA - 52 - push edx
YZEx.dll+55EB - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+55F0 - 50 - push eax
YZEx.dll+55F1 - FF 15 6CC1AF09 - call dword ptr [YZEx.dll+3C16C] 捡取物品CALL
YZEx.dll+55F7 - 83 C4 0C - add esp,0C
YZEx.dll+55FA - 8B 0D 90AFAF09 - mov ecx,[YZEx.dll+3AF90]
YZEx.dll+5600 - C6 01 00 - mov byte ptr [ecx],00
YZEx.dll+5603 - 68 F4010000 - push 000001F4
YZEx.dll+5608 - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8] SLEEP(1000)
YZEx.dll+560E - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+5614 - C6 42 59 01 - mov byte ptr [edx+59],01
YZEx.dll+5618 - 6A 00 - push 00
YZEx.dll+561A - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+561F - 05 28020000 - add eax,00000228
YZEx.dll+5624 - 50 - push eax
YZEx.dll+5625 - 8B 4D F8 - mov ecx,[ebp-08]
YZEx.dll+5628 - 51 - push ecx
YZEx.dll+5629 - 8B 55 EC - mov edx,[ebp-14]
YZEx.dll+562C - 52 - push edx
YZEx.dll+562D - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5632 - 8B 88 90000000 - mov ecx,[eax+00000090]
YZEx.dll+5638 - 51 - push ecx
YZEx.dll+5639 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+563F - 8B 82 8C000000 - mov eax,[edx+0000008C]
YZEx.dll+5645 - 50 - push eax
YZEx.dll+5646 - FF 15 58C1AF09 - call dword ptr [YZEx.dll+3C158] 走路CALL(回原挂机点)
YZEx.dll+564C - 83 C4 18 - add esp,18
YZEx.dll+564F - 0FB6 C8 - movzx ecx,al
YZEx.dll+5652 - 85 C9 - test ecx,ecx
YZEx.dll+5654 - 75 11 - jne YZEx.dll+5667
YZEx.dll+5656 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+565C - C6 42 59 00 - mov byte ptr [edx+59],00
YZEx.dll+5660 - E9 94FDFFFF - jmp YZEx.dll+53F9
YZEx.dll+5665 - EB 1B - jmp YZEx.dll+5682
YZEx.dll+5667 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+566C - 05 9C020000 - add eax,0000029C
YZEx.dll+5671 - 50 - push eax
YZEx.dll+5672 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+5678 - 51 - push ecx
YZEx.dll+5679 - FF 15 08EDB009 - call dword ptr [YZEx.dll+4ED08]
YZEx.dll+567F - 83 C4 08 - add esp,08
YZEx.dll+5682 - C7 45 FC 00000000 - mov [ebp-04],00000000
YZEx.dll+5689 - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+568F - 8B 82 8C000000 - mov eax,[edx+0000008C]
YZEx.dll+5695 - 3B 45 EC - cmp eax,[ebp-14]
YZEx.dll+5698 - 75 11 - jne YZEx.dll+56AB
YZEx.dll+569A - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+56A0 - 8B 91 90000000 - mov edx,[ecx+00000090]
YZEx.dll+56A6 - 3B 55 F8 - cmp edx,[ebp-08]
YZEx.dll+56A9 - 74 20 - je YZEx.dll+56CB
YZEx.dll+56AB - 8B 45 FC - mov eax,[ebp-04]
YZEx.dll+56AE - 8B 4D FC - mov ecx,[ebp-04]
YZEx.dll+56B1 - 83 C1 01 - add ecx,01
YZEx.dll+56B4 - 89 4D FC - mov [ebp-04],ecx
YZEx.dll+56B7 - 83 F8 0A - cmp eax,0A
YZEx.dll+56BA - 7E 02 - jle YZEx.dll+56BE
YZEx.dll+56BC - EB 0D - jmp YZEx.dll+56CB
YZEx.dll+56BE - 68 F4010000 - push 000001F4
YZEx.dll+56C3 - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8]
YZEx.dll+56C9 - EB BE - jmp YZEx.dll+5689
YZEx.dll+56CB - 68 F4010000 - push 000001F4
YZEx.dll+56D0 - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8]
YZEx.dll+56D6 - E9 1EFDFFFF - jmp YZEx.dll+53F9
YZEx.dll+56DB - 68 E8030000 - push 000003E8
YZEx.dll+56E0 - FF 15 A8E0AE09 - call dword ptr [YZEx.dll+2E0A8]
YZEx.dll+56E6 - E9 D8FCFFFF - jmp YZEx.dll+53C3
YZEx.dll+56EB - 8B 4D E8 - mov ecx,[ebp-18]
YZEx.dll+56EE - 33 CD - xor ecx,ebp
YZEx.dll+56F0 - E8 5B4F0000 - call YZEx.dll+A650
YZEx.dll+56F5 - 8B E5 - mov esp,ebp
YZEx.dll+56F7 - 5D - pop ebp
YZEx.dll+5516 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+551B - C6 40 59 01 - mov byte ptr [eax+59],01
YZEx.dll+551F - 6A 00 - push 00
YZEx.dll+5521 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+5527 - 81 C1 28020000 - add ecx,00000228
YZEx.dll+552D - 51 - push ecx
YZEx.dll+552E - 8B 55 F0 - mov edx,[ebp-10]
YZEx.dll+5531 - 52 - push edx
YZEx.dll+5532 - 8B 45 F4 - mov eax,[ebp-0C]
YZEx.dll+5535 - 50 - push eax
YZEx.dll+5536 - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+553C - 8B 91 90000000 - mov edx,[ecx+00000090]
YZEx.dll+5542 - 52 - push edx
YZEx.dll+5543 - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5548 - 8B 88 8C000000 - mov ecx,[eax+0000008C]
YZEx.dll+554E - 51 - push ecx
YZEx.dll+554F - FF 15 58C1AF09 - call dword ptr [YZEx.dll+3C158] 走路CALL(走向物品)
YZEx.dll+5555 - 83 C4 18 - add esp,18
YZEx.dll+5558 - 0FB6 D0 - movzx edx,al
YZEx.dll+555B - 85 D2 - test edx,edx
YZEx.dll+555D - 75 10 - jne YZEx.dll+556F
YZEx.dll+555F - A1 C0EDB009 - mov eax,[YZEx.dll+4EDC0]
YZEx.dll+5564 - C6 40 59 00 - mov byte ptr [eax+59],00
YZEx.dll+5568 - E9 8CFEFFFF - jmp YZEx.dll+53F9
YZEx.dll+556D - EB 1D - jmp YZEx.dll+558C
YZEx.dll+556F - 8B 0D C0EDB009 - mov ecx,[YZEx.dll+4EDC0]
YZEx.dll+5575 - 81 C1 9C020000 - add ecx,0000029C
YZEx.dll+557B - 51 - push ecx
YZEx.dll+557C - 8B 15 C0EDB009 - mov edx,[YZEx.dll+4EDC0]
YZEx.dll+5582 - 52 - push edx
YZEx.dll+5583 - FF 15 08EDB009 - call dword ptr [YZEx.dll+4ED08] 走路封包加密发送CALL
YZEx.dll+5589 - 83 C4 08 - add esp,08
不知道为什么,我用上面这段代码写的走路CALL,可以调用走路CALL成功,但人物却是乱走,不是按直线走,而是要转一个好大的圈,大家有没有碰到这个问题呢 |
|