这个函数可以实现远程CALL的功能。
函数原型:
HANDLE WINAPI CreateRemoteThread( __in HANDLE hProcess, //OpenProcess的返回值 __in LPSECURITY_ATTRIBUTES lpThreadAttributes, __in SIZE_T dwStackSize, __in LPTHREAD_START_ROUTINE lpStartAddress, __in LPVOID lpParameter, __in DWORD dwCreationFlags, __out LPDWORD lpThreadId );
例子:
CreateRemoteThread(hOpen,NULL,0,(LPTHREAD_START_ROUTINE)0x402360,NULL,0,&ycid);