-
Notifications
You must be signed in to change notification settings - Fork 3
Expand file tree
/
Copy pathProc.cpp
More file actions
52 lines (47 loc) · 1.31 KB
/
Copy pathProc.cpp
File metadata and controls
52 lines (47 loc) · 1.31 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
#include "stdafx.h"
#include "Proc.h"
DWORD Proc::GetProcessID(const wchar_t* procName){
DWORD procId = 0;
HANDLE hSnap = CreateToolhelp32Snapshot(TH32CS_SNAPPROCESS, 0);
if (hSnap != INVALID_HANDLE_VALUE) {
PROCESSENTRY32 procEntry = { sizeof(procEntry) };
if (Process32First(hSnap, &procEntry)) {
do
{
if (!_wcsicmp(procEntry.szExeFile, procName)) {
procId = procEntry.th32ProcessID;
break;
}
} while (Process32Next(hSnap, &procEntry));
}
}
CloseHandle(hSnap);
return procId;
}
uintptr_t Proc::GetModuleBaseAddress(DWORD procId, const wchar_t* modName) {
uintptr_t modBase = 0;
HANDLE hSnap = CreateToolhelp32Snapshot(TH32CS_SNAPMODULE | TH32CS_SNAPMODULE32, procId);
if (hSnap != INVALID_HANDLE_VALUE) {
MODULEENTRY32 modEntry = { sizeof(modEntry) };
if (Module32First(hSnap, &modEntry)) {
do
{
if (!_wcsicmp(modEntry.szModule, modName)) {
modBase = (uintptr_t)modEntry.modBaseAddr;
break;
}
} while (Module32Next(hSnap, &modEntry));
}
}
CloseHandle(hSnap);
return modBase;
}
uintptr_t Proc::GetDMAAddress(HANDLE hProc, uintptr_t ptr, std::vector <unsigned int> offsets) {
uintptr_t dma = 0;
dma = ptr;
for (int i = 0; i < offsets.size(); i++) {
ReadProcessMemory(hProc, (BYTE*)dma, &dma, sizeof(dma), nullptr);
dma += offsets[i];
}
return dma;
}