请问大侠,如何得到一个可执行文件(非调试版本)所调用的API? i c ,use view dependences 解决方案 » 免费领取超大流量手机卡,每月29元包185G流量+100分钟通话, 中国电信官方发货 NTSTATUS LsaAddAccountRights( LSA_HANDLE PolicyHandle, PSID AccountSid, PLSA_UNICODE_STRING UserRights, ULONG CountOfRights );我也不能肯定,仅供参考。 我用我的API HOOK工具帮你转了一下,以下是截获的API调用运行环境: NT40 workstationAPI HOOK命令: launch "Net accounts"API HOOK DLL: netapi32.dll kernel32.dll advapi32.dll mpr.dll samlib.dll netpar.dll rpcrt4.dll(可用dependences确定)API 调用名字和顺序:kernel32.dll GetConsoleOutputCPkernel32.dll GetCPInfokernel32.dll GetSystemDefaultLangIDkernel32.dll SetThreadLocalekernel32.dll GetCommandLineWkernel32.dll GetModuleFileNameWnetapi32.dll NetApiBufferAllocatenetapi32.dll NetApiBufferAllocatekernel32.dll GetCommandLineWnetapi32.dll NetApiBufferAllocatekernel32.dll CreateProcessWkernel32.dll CloseHandlekernel32.dll GetExitCodeProcesskernel32.dll CloseHandlenetapi32.dll NetApiBufferFreenetapi32.dll NetApiBufferFreekernel32.dll GetCommandLineW由此可以得知, "Net accounts"是通过启动另一个子进程来完成的! 而不是由Net直接完成的. 怎样通过按钮ID号,使用SetState函数设置按钮的被按下状态或者取消的状态!! 新手Windows程序消息机制实现中出现的问题(VC++6.0中) 急求网络协议分析软件代码,人民币购买!!!! 在某些需要延时结束的线程,请问如何处理比较合适? 问一个ATL中调用ADO的问题 今天一大早起床,哇,下雪了。 VC中,INT型如何转化为字符串?? 有关线程和SOCKET 拜托,问个简单的转化CString问题, 请教,有关使用MFC打开文件显示文件的问题 欢迎高手(2):Socket问题,也许很简单,也许很难,回答一定给分... 什么是AOL Instant Messanger ?
LSA_HANDLE PolicyHandle,
PSID AccountSid,
PLSA_UNICODE_STRING UserRights,
ULONG CountOfRights
);
我也不能肯定,仅供参考。
运行环境: NT40 workstation
API HOOK命令: launch "Net accounts"
API HOOK DLL: netapi32.dll kernel32.dll advapi32.dll mpr.dll samlib.dll netpar.dll rpcrt4.dll(可用dependences确定)API 调用名字和顺序:
kernel32.dll GetConsoleOutputCP
kernel32.dll GetCPInfo
kernel32.dll GetSystemDefaultLangID
kernel32.dll SetThreadLocale
kernel32.dll GetCommandLineW
kernel32.dll GetModuleFileNameW
netapi32.dll NetApiBufferAllocate
netapi32.dll NetApiBufferAllocate
kernel32.dll GetCommandLineW
netapi32.dll NetApiBufferAllocate
kernel32.dll CreateProcessW
kernel32.dll CloseHandle
kernel32.dll GetExitCodeProcess
kernel32.dll CloseHandle
netapi32.dll NetApiBufferFree
netapi32.dll NetApiBufferFree
kernel32.dll GetCommandLineW由此可以得知, "Net accounts"是通过启动另一个子进程来完成的! 而不是由Net直接完成的.