-
Notifications
You must be signed in to change notification settings - Fork 0
/
scan.cpp
120 lines (98 loc) · 2.28 KB
/
scan.cpp
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
#include "scan.h"
// initial scan, get all relevant regions from /proc/<pid>/maps
int scanIntInit(std::vector<scanRegion> regions, std::vector<scanResult> &results, pid_t pid, int scanValue)
{
unsigned long startAddr = 0, endAddr = 0;
long buffer = 0;
if (attach(pid) != 0)
{
return 1;
}
for (unsigned int x=0; x<regions.size(); x++)
{
scanResult result;
startAddr = regions[x].startRegion;
endAddr = regions[x].endRegion;
while (startAddr < endAddr)
{
if (peek(pid, startAddr, buffer) != 0)
{
return 1;
}
if (buffer == scanValue)
{
result.addr = startAddr;
result.value = buffer;
results.push_back(result);
}
startAddr += sizeof(unsigned long);
}
}
detach(pid);
return 0;
}
// scan a set of results
int scanIntResults(std::vector<scanResult> &results, pid_t pid, int scanValue)
{
long buffer = 0;
scanResult result;
std::vector<scanResult> newResults;
if (attach(pid) != 0)
{
return 1;
}
for (unsigned int x=0; x<results.size(); x++)
{
if (peek(pid, results[x].addr, buffer) != 0)
{
return 1;
}
if (buffer == scanValue)
{
result.addr = results[x].addr;
result.value = buffer;
newResults.push_back(result);
}
}
results = newResults;
detach(pid);
return 0;
}
// update results
int updateIntResults(std::vector<scanResult> &results, pid_t pid)
{
long buffer = 0;
if (attach(pid) != 0)
{
return 1;
}
for (unsigned int x=0; x<results.size(); x++)
{
if (peek(pid, results[x].addr, buffer) != 0)
{
return 1;
}
else {
results[x].value = buffer;
}
}
detach(pid);
return 0;
}
// set all results to value
int setInt(std::vector<scanResult> &results, pid_t pid, int value)
{
if (attach(pid) != 0)
{
return 1;
}
for (unsigned int x=0; x<results.size(); x++)
{
if (poke(pid, results[x].addr, value) != 0)
{
return 1;
}
}
detach(pid);
return 0;
}