mirror of
https://github.com/Artikash/Textractor.git
synced 2025-01-15 03:43:55 +08:00
28 lines
989 B
C++
28 lines
989 B
C++
#ifndef MISC_H
|
|
#define MISC_H
|
|
|
|
#include "qtcommon.h"
|
|
#include "types.h"
|
|
|
|
QString GetFullModuleName(DWORD processId, HMODULE module = NULL);
|
|
QString GetModuleName(DWORD processId, HMODULE module = NULL);
|
|
std::unordered_map<std::wstring, DWORD> GetAllProcesses();
|
|
HookParam ParseCode(QString HCode);
|
|
QString GenerateCode(HookParam hp, DWORD processId);
|
|
|
|
static QString CodeInfoDump =
|
|
"Enter hook code\r\n\
|
|
/H{A|B|W|S|Q|V}[N]data_offset[*deref_offset1][:split_offset[*deref_offset2]]@addr[:module]\r\n\
|
|
OR\r\n\
|
|
Enter read code\r\n\
|
|
/R{S|Q|V}string_gap@addr\r\n\
|
|
All numbers in hexadecimal\r\n\
|
|
Use 0 for string_gap if string is in same location every time\r\n\
|
|
A/B: Shift-JIS char little/big endian\r\n\
|
|
W: UTF-16 char\r\n\
|
|
S/Q/V: Shift-JIS/UTF-16/UTF-8 string\r\n\
|
|
Negatives for data_offset/sub_offset refer to registers\r\n\
|
|
-4 for EAX, -8 for ECX, -C for EDX, -10 for EBX, -14 for ESP, -18 for EBP, -1C for ESI, -20 for EDI\r\n\
|
|
* means dereference pointer+deref_offset";
|
|
#endif // MISC_H
|