{"id":46,"date":"2008-08-13T10:26:46","date_gmt":"2008-08-13T01:26:46","guid":{"rendered":"http:\/\/hmp.lar.jp\/wordpress\/?p=46"},"modified":"2016-03-03T15:12:29","modified_gmt":"2016-03-03T06:12:29","slug":"%e3%81%aa%e3%81%a7%e3%81%97%e3%81%93%e3%81%a7windowsapi%e3%80%90%e3%83%ac%e3%82%b8%e3%82%b9%e3%83%88%e3%83%aa%e3%81%ae%e6%9b%b8%e8%be%bc%e3%81%bf%e3%80%91","status":"publish","type":"post","link":"https:\/\/www.choco.org.uk\/chocodb\/?p=46","title":{"rendered":"\u306a\u3067\u3057\u3053\u3067WindowsAPI\u3010\u30ec\u30b8\u30b9\u30c8\u30ea\u306e\u66f8\u8fbc\u307f\u3011"},"content":{"rendered":"<p>\u25cfRegOpenKeyEx(hKey,lpSubKey,ulOptions,samDesired,phkResult) =DLL(&#8220;advapi32.dll&#8221;,<br \/>\n&#8220;LONG RegOpenKeyExA(<br \/>\nHKEY hKey, \/\/ \u958b\u3044\u3066\u3044\u308b\u89aa\u30ad\u30fc\u306e\u30cf\u30f3\u30c9\u30eb<br \/>\nLPCTSTR lpSubKey, \/\/ \u958b\u304f\u3079\u304d\u30b5\u30d6\u30ad\u30fc\u306e\u540d\u524d<br \/>\nDWORD ulOptions, \/\/ \u4e88\u7d04\u6e08\u307f<br \/>\nDWORD samDesired, \/\/ \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30a2\u30af\u30bb\u30b9\u30de\u30b9\u30af<br \/>\nPHKEY hKeyA \/\/ \u958b\u304f\u3053\u3068\u306b\u6210\u529f\u3057\u305f\u30b5\u30d6\u30ad\u30fc\u306e\u30cf\u30f3\u30c9\u30eb<br \/>\n)&#8221;)<\/p>\n<p>\u25cfRegSetValueEx(hKey,lpValueName,Reserved,dwType,lpData,cbData) =DLL(&#8220;ADVAPI32.dll&#8221;,<br \/>\n&#8220;LONG RegSetValueExA(<br \/>\nHKEY hKey,<br \/>\nLPCTSTR lpValueName, \/\/\u30c7\u30fc\u30bf\u3092\u8a2d\u5b9a\u3059\u308b\u5024\u540d<br \/>\nDWORD Reserved, \/\/\u5e38\u306b0<br \/>\nDWORD dwType, \/\/lpData\u3067\u8a2d\u5b9a\u3059\u308b\u30c7\u30fc\u30bf\u306e\u30bf\u30a4\u30d7\u3092\u6307\u5b9a\u3059\u308b\u5b9a\u6570<br \/>\nDWORD lpData, \/\/\u8a2d\u5b9a\u3059\u308b\u5024<br \/>\nDWORD cbData \/\/\u540c\u3001\u30d0\u30a4\u30c8\u6570<br \/>\n)&#8221;)<\/p>\n<p>\u25cfRegCloseKey(hKey) =DLL(&#8220;Advapi32.dll&#8221;,<br \/>\n&#8220;LONG RegCloseKey(<br \/>\nHKEY hKey<br \/>\n)&#8221;)<\/p>\n<p>!KEY_ALL_ACCESS = $000F003F<br \/>\n!HKEY_CLASSES_ROOT = $80000000<br \/>\n!HKEY_CURRENT_USER = $80000001<br \/>\n!HKEY_LOCAL_MACHINE = $80000002<br \/>\n!HKEY_USERS = $80000003<br \/>\n!HKEY_CURRENT_CONFIG = $80000005<\/p>\n<p>\u30ec\u30b8\u30b9\u30c8\u30ea\u30cf\u30f3\u30c9\u30eb\u3068\u306f\u6574\u6570<br \/>\nRegOpenKeyEx(HKEY_LOCAL_MACHINE,&#8221;Software\\Microsoft\\Windows\\CurrentVersion\\Run&#8221;,0,KEY_ALL_ACCESS,POINTER(\u30ec\u30b8\u30b9\u30c8\u30ea\u30cf\u30f3\u30c9\u30eb))<\/p>\n<p>!REG_DWORD=4\/\/DWORD\u306f\uff14\u30d0\u30a4\u30c8\u306a\u306e\u3067\u30014\u30d0\u30a4\u30c8\u3092\u78ba\u4fdd\u3057\u3066\u304a\u304f\u3002<\/p>\n<p>I=123\/\/\u66f8\u304d\u305f\u3044\u5024\u3092\u6307\u5b9a<\/p>\n<p>RegSetValueEx(\u30ec\u30b8\u30b9\u30c8\u30ea\u30cf\u30f3\u30c9\u30eb,POINTER(&#8220;StartCatMr&#8221;),0,REG_DWORD,POINTER(I),4)<br \/>\nRegCloseKey(\u30ec\u30b8\u30b9\u30c8\u30ea\u30cf\u30f3\u30c9\u30eb)<\/p>\n<p>\u3010StartCatMr\u3011\u3068\u3044\u3046KEY\u306b\u3010123\u3011\u3092\u66f8\u304d\u8fbc\u307f\u307e\u3057\u305f\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u25cfRegOpenKeyEx(hKey,lpSubKey,ulOptions,samDesired,phkResult) =DLL(&#8220;advapi32.dll&#8221;, &#8220;LONG RegOp [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[7],"tags":[45],"class_list":["post-46","post","type-post","status-publish","format-standard","hentry","category-windowsapi","tag-nadesiko"],"_links":{"self":[{"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/posts\/46","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=46"}],"version-history":[{"count":1,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/posts\/46\/revisions"}],"predecessor-version":[{"id":806,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=\/wp\/v2\/posts\/46\/revisions\/806"}],"wp:attachment":[{"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=46"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=46"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.choco.org.uk\/chocodb\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=46"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}