变量名 | 类 型 | 静态 | 数组 | 备 注 |
hProcess | 整数型 | | |
lpAddress | 整数型 | | |
DllPath | 文本型 | | |
pFun | 整数型 | | |
hThread | 整数型 | | |
进程_提升权限到Debug ()hProcess =
OpenProcess (2035711, 0,
到整数 (编辑框1.内容
))
如果真 (hProcess = 0
)
信息框 (“打开进程失败”, 0,
)
返回 ()lpAddress = VirtualAllocEx (hProcess, 0, 4096, 4096, 64)
如果真 (lpAddress = 0
)
信息框 (“分配内存失败!!”, 0,
)
返回 ()DllPath = 取运行目录 () + “\zr.dll”
如果真 (取反 (WriteProcessMemory_文本型 (hProcess, lpAddress, DllPath,
取字节集长度 (到字节集 (DllPath
)), 0
))
)
信息框 (“写入内存失败!!”, 0,
)
返回 ()pFun = GetProcAddress (GetModuleHandleA (“kernel32.dll”), “LoadLibraryA”)hThread =
CreateRemoteThread (hProcess, 0, 0, pFun, lpAddress, 0, 0
)