Answer the question
In order to leave comments, you need to log in
How does process memory work in windows?
I don't understand how memory works in windows.
The process is said to be loaded to the top of virtual memory and the OS to the bottom.
Each process "tipo" has its own memory. He "supposedly" has dlls in his memory, which he can even change, as well as change something in his addresses, and the operating system will somehow solve this problem so that changes in the dlls do not affect other processes. Here is a picture for 32 bit Os
Firstly, it is not clear why we should talk about some addresses of the operating system if they are not available. You can’t change something in the OS addresses (as far as I know, it means from user mode)
Secondly, in other places it is said that, for example, the process may not be loaded to the same addresses to which it was loaded before. For example.write process memory
Why, if each process has its own personal memory that it occupies, should we load it into different addresses.
I just want to overwrite a separate instruction, how can I do this if it is located at different addresses each time.
Answer the question
In order to leave comments, you need to log in
I just want to overwrite a separate instruction, how can I do this if it is located at different addresses each time
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question