首先祝大家新年快乐,新春大吉,五福临门,心想事成,身体健康,发财就手。
这次这个脚本我没有试过的,大概没有错。反正就是看到有人要就写了
alloc(new,512)
label(start)
label(ergodic)
label(return)
label(first)
label(tail)
label(end)
new:
mov [400500],1
start:
call ergodic//执行遍历无视队友
pushad
push #200 //延迟2毫秒
call kernel32.sleep
popad
cmp [400500],0
je end
jmp start
end:
ret
ergodic:
push ebp
mov ebp,esp
pushad
pushfd
mov ecx,[03DCD430]//人物基址
mov edx,[ecx+B8]
cmp edx,1
jl return
mov esi,[edx+C0]
mov edi,[edx+C4]
cmp edi,esi
jl return
first:
mov ebx,[esi]
cmp ecx,ebx
je tail
mov eax,[ebx+7AC]//阵营偏移
cmp eax,0
jnz tail
mov eax,[ebx+98]//类型偏移
cmp eax,111
jnz tail
push ecx
mov ecx,ebx
mov eax,[ecx]
mov eax,[eax+70]//屏蔽对象CALL
push 0
call eax
pop ecx
jmp return
tail:
add esi,4
cmp esi,edi
jl first
return:
popfd
popad
mov esp,ebp
pop ebp
retn
[ENABLE]
//code from here to '[DISABLE]' will be used to enable the cheat
LdrInitializeThunk:
db 8B FF 55 8B EC
createthread(new)
[DISABLE]
0400500:
dd #0
@shihun941
这次这个脚本我没有试过的,大概没有错。反正就是看到有人要就写了
alloc(new,512)
label(start)
label(ergodic)
label(return)
label(first)
label(tail)
label(end)
new:
mov [400500],1
start:
call ergodic//执行遍历无视队友
pushad
push #200 //延迟2毫秒
call kernel32.sleep
popad
cmp [400500],0
je end
jmp start
end:
ret
ergodic:
push ebp
mov ebp,esp
pushad
pushfd
mov ecx,[03DCD430]//人物基址
mov edx,[ecx+B8]
cmp edx,1
jl return
mov esi,[edx+C0]
mov edi,[edx+C4]
cmp edi,esi
jl return
first:
mov ebx,[esi]
cmp ecx,ebx
je tail
mov eax,[ebx+7AC]//阵营偏移
cmp eax,0
jnz tail
mov eax,[ebx+98]//类型偏移
cmp eax,111
jnz tail
push ecx
mov ecx,ebx
mov eax,[ecx]
mov eax,[eax+70]//屏蔽对象CALL
push 0
call eax
pop ecx
jmp return
tail:
add esi,4
cmp esi,edi
jl first
return:
popfd
popad
mov esp,ebp
pop ebp
retn
[ENABLE]
//code from here to '[DISABLE]' will be used to enable the cheat
LdrInitializeThunk:
db 8B FF 55 8B EC
createthread(new)
[DISABLE]
0400500:
dd #0
@shihun941