#1
|
|||
|
|||
CodeCave in x64
Hello, I did 12 years ago redirecting the flow of execution was easy on a 32bit PE Executable, Change EP, to the code cave saving registers status executing code and then restoring them. In x64 i searching the way to.
Code:
hxxs://www.codeproject.com/Articles/20240/The-Beginners-Guide-to-Codecaves Code:
x32 PUSHAD PUSHFD <CODE> POPAD POPFD JMP Original Entry Point |
Thread Tools | |
Display Modes | |
|
|