Skip to content

fix(win32): 识别缺失 argv 的 WMPF 运行时版本,支持 WMPF 25710 版本的 Hook 偏移配置 - #285

Open
sundaqiang wants to merge 1 commit into
evi0s:mainfrom
sundaqiang:sun-main
Open

sundaqiang wants to merge 1 commit into
evi0s:mainfrom
sundaqiang:sun-main

Conversation

@sundaqiang

Copy link
Copy Markdown
  • 在 src/platform/win32.ts 中通过 PowerShell 查询进程命令行, 作为 frida argv 缺失 --flue-runtime-dir 时的回退来源
  • 统一解析命令行参数以提取 --flue-runtime-dir,提升带引号 或空格分隔参数的兼容性
  • 新增 frida/config/win32/addresses.25710.json,支持 WMPF 25710 版本的 Hook 偏移配置

- 在 src/platform/win32.ts 中通过 PowerShell 查询进程命令行,
  作为 frida argv 缺失 --flue-runtime-dir 时的回退来源
- 统一解析命令行参数以提取 --flue-runtime-dir,提升带引号
  或空格分隔参数的兼容性
- 新增 frida/config/win32/addresses.25710.json,支持 WMPF
  25710 版本的 Hook 偏移配置
@evi0s

evi0s commented Sep 20, 2026

Copy link
Copy Markdown
Owner

WMPF 旧版本找版本号的逻辑我已经修了:e73175d

请给 25710 偏移配置提交单独的 PR,感谢

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants