Finding the offset on stack? Possible? menu

User Tag List

Results 1 to 5 of 5
  1. #1
    Flushie's Avatar Master Sergeant
    Reputation
    -13
    Join Date
    May 2010
    Posts
    72
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)

    Finding the offset on stack? Possible?

    So you have a variable that is stored on the stack, and you want to find this variable every time the program starts up. Unfortunately, there is no algorithm of finding the variable because the stack is not mapped in the same place that the the PE image is. I was told that thread context could be used, and walking the stack. But what the ****? Isn't it much easier ffs? I mean you have a game, you have say for the sake of conversation a health variable that is stored on the stack, how do I get the address of this variable every time the program starts because RVA-Imagebase isn't cutting it, and it shouldn't be.

    Finding the offset on stack? Possible?
  2. #2
    amadmonk's Avatar Active Member
    Reputation
    124
    Join Date
    Apr 2008
    Posts
    772
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Erm, may I suggest you do a bit more reading on X86 assembly? What you're asking for isn't possible without a stack walk (which is a very fragile operation, and not for the faint of heart) -- and even if it were, it wouldn't help since it would only give you that ONE instance of the value, not some general way to read it.
    Don't believe everything you think.

  3. #3
    schlumpf's Avatar Retired Noggit Developer

    Reputation
    755
    Join Date
    Nov 2006
    Posts
    2,759
    Thanks G/R
    0/3
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    But you know that the variable would be present only while the function is called and has not yet returned? You may want to hook that function, I guess. Or modify the function in the binary. Would be way easier anyway.

  4. #4
    Flushie's Avatar Master Sergeant
    Reputation
    -13
    Join Date
    May 2010
    Posts
    72
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Amadmonk, maybe you should do a little more reading. "I was told that thread context could be used, and walking the stack." :P.

  5. #5
    amadmonk's Avatar Active Member
    Reputation
    124
    Join Date
    Apr 2008
    Posts
    772
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    You were told wrong.
    Don't believe everything you think.

Similar Threads

  1. [Request]The fastest way actually possible to lvl
    By Linkap in forum World of Warcraft General
    Replies: 5
    Last Post: 02-25-2007, 01:17 PM
  2. Cannot find the files to edit :(
    By Rekro in forum WoW ME Questions and Requests
    Replies: 6
    Last Post: 01-01-2007, 06:07 PM
  3. Finding the .blp-files to Striker's Set
    By Violence in forum World of Warcraft General
    Replies: 0
    Last Post: 10-04-2006, 06:02 PM
  4. How do you find memory offsets in the game?
    By koalaz2004 in forum World of Warcraft General
    Replies: 0
    Last Post: 08-18-2006, 09:40 PM
  5. Find The Flag Carrier In WSG
    By impulse102 in forum World of Warcraft Exploits
    Replies: 20
    Last Post: 07-29-2006, 12:48 PM
All times are GMT -5. The time now is 08:43 AM. Powered by vBulletin® Version 4.2.3
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved. User Alert System provided by Advanced User Tagging (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Google Authenticator verification provided by Two-Factor Authentication (Free) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Digital Point modules: Sphinx-based search