Windows 下的常用调试API断点

对话框类

MessageBox
MessageBeep
MessageBoxA
MessageBoxW
MessageBoxExA
MessageBoxExW
MessageBoxIndirect
MessageBoxIndirectA
MessageBoxIndirectW
EndDialog
DialogBoxParam
DialogBoxParamA
DialogBoxParamW
DialogBoxIndirect
DialogBoxIndirectParamA
DialogBoxIndirectParamW
DrawTextA
DrawTextExA
DrawTextExW
CreateWindow
CreateWindowExA
CreateWindowExW
CreateDialog
CreateDialogParam
CreateDialogParamA
CreateDialogIndirect
CreateDialogIndirectParam
CreateDialogIndirectParamA
GetDlgItemText
GetDlgItemTextA
GetDlgItemInt
FindWindowA
SendMessage
SetDlgItemInt
GetDlgItemInt
SetWindowTextA
GetWindowTextA
GetWindowTextW
GetDlgItemTextA
GetDlgItemTextW
GetClipboardData
IsDialogMessageW
SendMessageA
ShowWindow
UpdateWindow
CallWindowProcA
CoInitialize
CoCreateInstance
CreateWindowExA
DefWindowProcA
DispatchMessageA
LoadIconA
SetWindowLongA
SetWindowTextA
ShowWindow
movewindow
DestroyWindow

文件处理

CreateFileA
CreateFileW
OpenFile
ReadFile
WriteFile
GetFileSize
FindFirstFileA
GetModuleFileNameA
OpenFileMappingA
OpenFileMappingW
LoadLibraryA
LoadLibraryW
LoadLibraryExA
LoadLibraryExW
CreateFileMappingA
CopyFileA
rCopyFileW
CopyFileExA
CopyFileExW
SetFilePointer
MoveFileA
MoveFileW
MoveFileExA
MoveFileExW
DeleteFileA
DeleteFileW
LoadCursorFromFileA
fileopen
ZwCreateFile
ZwQueryInformationFile
ZwReadFile

_lclose
_lcreat
_llseek
_lopen
_lread
_lwrite

字符串处理

GetDlgItemTextA
GetWindowTextA
GetWindowTextW
SetMenu

功能限制

SetMenu
DestroyMenu
DeleteMenu
EnableWindow
Enable

ini文件读写

GetPrivateProfileStringA
GetPrivateProfileStringW
WritePrivateProfileStringA
WritePrivateProfileStringW
GetPrivateProfileProfileInt
GetPrivateProfileInt
GetPrivateProfileString
WritePrivateProfileInt
WritePrivateProfileString

注册表操作

RegQueryValueExA
RegCreateKeyA
RegOpenKeyExA
RegCreateKeyExA
RegOpenKeyA
RegCloseKey
RegDeleteKeyA
RegDeleteKeyW
RegQueryValueA
RegEnumKeyExA
RegSetValueA
RegSetValueW
RegSetValueExA
RegSetValueExW

时间处理

SetSystemTime
TimerProc
SetLocalTime
rtcGetTimer
GetSystemTime
GetLocalTime
GetFileTime
GetTickCount
CompareFileTime
SetTimer
GetDlgItemInt
GetDlgItemText
GetDlgItemTextA

进程相关

CreateThread
GetModuleHandleA
OpenMutexA
WriteProcessMemory
CreateProcessA
OpenProcess
ExitProcess
ExitThread
TerminateProcess
CreateToolhelp32Snapshot
Process32First
Process32Next
Process32FirstW
Module32First
Module32Next
Module32FirstW
Module32NextW
Heap32ListFirst
Heap32ListNext
Heap32First
Heap32Next
PostQuitMessage
IsDebuggerPresent
OpenProcessToken
OpenThreadToken
ZwQueryInformationProcess

磁盘处理

GetDiskFreeSpaceA
GetDriveTypeA
GetLogicalDrives
GetLogicalDriveStringsA
GETLASTERROR

GetDiskFreeSpaceA
GetDiskFreeSpaceExA
GetDriveTypeA
GetLogicalDriveStringsA
GetLogicalDrives
GetVolumeInformationA
SetVolumeLabelA

VB专用断点

__vbaStrToAnsi
__vbaFreeStr
rtcBeep
WideCharToMultiByte
MultiByteToWideChar
getvolumeinformationa
__vbaVarTstEq
__vbaFileClose
__vbaWriteFile
__vbaInputFile
__vbaFileOpen
__vbaStrTextCmp
__vbaStrCompVar
__vbaWriteFile
__vbaInputFile
__vbaFileOpen
__vbaStrMove
__vbaStrCopy
__vbaFreeStr
__vbaStrComp
__vbaStrCmp
__vbaEnd
__vbaNew2
__vbaNew
__vbaVarMovess
GetMemStr
rtcFileLen
rtcMsgBox

加密狗破解

LoadLibraryA
LoadLibraryW
LoadLibraryExA
LoadLibraryExW
CreateFileA
RefreshDeviceList
DeviceIOControl
Prestochangoselector
FreeEnvironmentStringsA

调试病毒断点

CreateFileA
LoadLibraryA
LoadLibraryW
LoadLibraryExA
LoadLibraryExW
CreateThread
CreateProcessA
CreateRemoteThread
WriteProcessMemory
OpenMutexA
OpenMutexW
CreateToolhelp32Snapshot
Heap32ListFirst
Heap32ListNext
Heap32First
Heap32Next
Module32First
Module32Next
Module32FirstW
Module32NextW
Process32First
Process32Next
Process32FirstA
Process32FirstW
PostQuitMessage
Toolhelp32ReadProcessMemory
ZwQueryInformationProcess
SetTimer
GetTempPathA
ReadFile
WriteFile
ShellExecuteA
WinExec
DeleteFileA
URLDownloadToFileA

VC/MFC断点

DefWindowProcA
DefWindowProcW
RegisterClassA
RegisterClassW
RegisterClassExA
RegisterClassExW
FindResourceA
FindResourceW
LoadResource
SetHandleCount
IsWindowEnabled

穿山甲专用断点

OpenMutexA
VirtualProtect
CreateThread
GetModuleHandleA
GetSystemTime
CreateFileMappingA
strlen
GetDlgItem

KEY文件和常用比较

getprivateprofileint
CreateFileA
CreateFileW
ReadFile
Compare
CompareNoCase
Collate
wcscmp
wcscoll
lstrcmp
_mbscmp
_mbsicmp
_mbscoll
_wcsicmp

杀窗和去校验

CreateFileA
GetFilesize
CreateFileA
GetFileSize
GetSystemDirectory
SetFilePointer
ExitProcess
Terminateprocess
ExitWindow
ExitWindowsEx
ExitThread
sZwSetInformationThread
GetFileSize
SetFilePointer
__vbaEnd
rtcFileLen
rtcFileLength
FindResourceA
CreateFileA
GetFilesize
__vbaVarTstNe
DestroyWindow
mouse_event
postquitmessage
GetClipboardData
ShellExecuteA
VirtualFree
VirtualAlloc
VirtualProtect
Lockmytask
GetDlgItem
GetWindowsDirectoryA
GetFullPathName
CloseHandle

内存管理

GlobalAlloc
GlobalFree
HeapCreate
VirtualAlloc
VirtualAllocEx
VirtualFree
VirtualProtect
VirtualProtectEx
VirtualQuery
VirtualQueryEx

ZwAllocateVirtualMemory
ZwFreeVirtualMemory
ZwProtectVirtualMemory
ZwQueryVirtualMemory

目录及路径

CreateDirectoryA
CreateDirectoryExA
GetCurrentDirectoryA
GetFullPathNameA
GetShortPathNameA
GetTempFileNameA
GetTempPathA
RemoveDirectoryA
SearchPathA
SetCurrentDirectoryA
GetSystemWindowsDirectoryA

VB更多

ThunRTMain
rtcMsgBox

运算
__vbaVarAdd
__vbaVarSub
__vbaVarMul
__vbaVarIdiv
__vbaVarXor
__vbaVarAnd
__vbaVarNot
__vbaVarNeg
__vbaVarPow
__vbaVarOr

比较
__vbaStrCmp
__vbaStrComp
__vbaVarTstEq
__vbaVarTextTstEq
__vbaVarTextTstNe
__vbaStrTextCmp
__vbaVarTstEq
__vbaVarTstNe
__vbaVarCmpEq
__vbaVarCmpNe
__vbaVarTextCmpEq
__vbaVarTextCmpNe
__vbaFpCmpCy

复制移动
__vbaStrCopy
__vbaVarCopy
__vbaVarMove

转换
__vbaI2Str
__vbaFPInt
__vbaFpR8
__vbaFpR4
rtcHexBstrFromVar
rtcHexVarFromVar

时间
rtcGetTimeBstr
rtcGetTimeValue
rtcGetTimeVar
rtcGetTimer
rtcGetYear
rtcGetPresentDate
rtcGetMonthOfYear
rtcGetMinuteOfHour
rtcGetSecondOfMinute

posted @ 2020-06-09 12:12  lyshark  阅读(956)  评论(0编辑  收藏  举报

loading... | loading...
博客园 - 开发者的网上家园