ttp://codezine.jp/article/detail/426
¢¬¤³¤Á¤é¤ÎURL¤ò»²¹Í¤Ë¤·¤Ê¤¬¤éºîÀ®¤òÄ©¤ó¤Ç¤¤¤Þ¤¹¤¬¤Ê¤«¤Ê¤«¤¦¤Þ¤¯¤¤¤¤Þ¤»¤ó¡£
µ¯Æ°¤·¤Æ¤¤¤ë¥×¥í¥»¥¹¤ò¥Ç¥Ð¥Ã¥°¤·¤¿¤¤¤Î¤ÇCreateProcess´Ø¿ô¤Ï»È¤ï¤Ê¤¯¤Æ¤â¤¤¤¤¤Î¤«¤Ê¡©¤È¹Í¤¨¤Æ¤Þ¤¹¡£
¡DebugActiveProcess¤Ç¥¢¥¯¥Æ¥£¥Ö¤Ê¥×¥í¥»¥¹¤Ë¥¢¥¿¥Ã¥Á¤·¤Æ¡¤¥Ç¥Ð¥Ã¥°¤Ç¤¤ë¤è¤¦¤Ë¤·¤Þ¤¹¡£
¢ContinueDebugEvent¤Ç¥Ç¥Ð¥Ã¥°¥¤¥Ù¥ó¥È¤òÊó¹ð¤·¤¿¥¹¥ì¥Ã¥É¤ò¥Ç¥Ð¥Ã¥¬¤¬Â³¹Ô¤Ç¤¤ë¤è¤¦¤Ë¤·¤Þ¤¹¡£
¡¤Ï¤Ç¤¤Þ¤·¤¿¤¬¢¤«¤é¤¬¤è¤¯Ê¬¤«¤ê¤Þ¤»¤ó¡£
pid¤Î¼èÆÀ¤Ë¤ÏÀèÇÚÊý¤¬ºîÀ®¤·¤Æ¤¯¤À¤µ¤Ã¤¿memory.dll¤ò»ÈÍѤ·¤Æ¤ª¤ê¤Þ¤¹¡£
#uselib "KERNEL32.DLL" #func DebugActiveProcess "DebugActiveProcess" sptr #func ContinueDebugEvent "ContinueDebugEvent" sptr,sptr,sptr #func WaitForDebugEvent "WaitForDebugEvent" #uselib "memory.dll" #func GetID "GetID" str, var sdim pid GetID "calc.exe", pid pids = int("$" + pid) DebugActiveProcess pids
DebugActiveProcess¤ò»È¤Ã¤Æ¤·¤Þ¤Ã¤¿¤éÂÐ¾Ý¥×¥í¥»¥¹¤¬¸Ç¤Þ¤Ã¤Æ¤·¤Þ¤¤¤Þ¤¹¡£
¥×¥í¥»¥¹¤ò³¹Ô¤Ç¤¤ë¤Þ¤Ç¤òÌܻؤ·¤Æ¤Þ¤¹¡£
ÀèÇÚÊý¤´¶µ¼ø¤Î¤Û¤¦¤ª´ê¤¤¤·¤Þ¤¹¡£