Advertisement
Guest User

Crash Debug Disassembly

a guest
Jul 28th, 2011
154
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.13 KB | None | 0 0
  1. fffff800`028c3b87 c20001 ret 100h
  2. fffff800`028c3b8a 7403 je nt!KiRestoreDebugRegisterState+0x4f (fffff800`028c3b8f)
  3. fffff800`028c3b8c 83c801 or eax,1
  4. fffff800`028c3b8f 85c0 test eax,eax
  5. fffff800`028c3b91 7412 je nt!KiRestoreDebugRegisterState+0x65 (fffff800`028c3ba5)
  6. fffff800`028c3b93 448bc0 mov r8d,eax
  7. fffff800`028c3b96 b9d9010000 mov ecx,1D9h
  8. fffff800`028c3b9b 0f32 rdmsr
  9. fffff800`028c3b9d 83e0fc and eax,0FFFFFFFCh
  10. fffff800`028c3ba0 410bc0 or eax,r8d
  11. fffff800`028c3ba3 0f30 wrmsr
  12. fffff800`028c3ba5 c20000 ret 0
  13. fffff800`028c3ba8 cc int 3
  14. fffff800`028c3ba9 cc int 3
  15. fffff800`028c3baa cc int 3
  16. fffff800`028c3bab cc int 3
  17. fffff800`028c3bac cc int 3
  18. fffff800`028c3bad cc int 3
  19. fffff800`028c3bae 6690 xchg ax,ax
  20. nt!KiSaveDebugRegisterState:
  21. fffff800`028c3bb0 654c8b0c2518000000 mov r9,qword ptr gs:[18h]
  22. fffff800`028c3bb9 0f21c0 mov rax,dr0
  23. fffff800`028c3bbc 0f21ca mov rdx,dr1
  24. fffff800`028c3bbf 48894558 mov qword ptr [rbp+58h],rax
  25. fffff800`028c3bc3 48895560 mov qword ptr [rbp+60h],rdx
  26. fffff800`028c3bc7 0f21d0 mov rax,dr2
  27. fffff800`028c3bca 0f21da mov rdx,dr3
  28. fffff800`028c3bcd 48894568 mov qword ptr [rbp+68h],rax
  29. fffff800`028c3bd1 48895570 mov qword ptr [rbp+70h],rdx
  30. fffff800`028c3bd5 0f21f0 mov rax,dr6
  31. fffff800`028c3bd8 0f21fa mov rdx,dr7
  32. fffff800`028c3bdb 48894578 mov qword ptr [rbp+78h],rax
  33. fffff800`028c3bdf 48899580000000 mov qword ptr [rbp+80h],rdx
  34. fffff800`028c3be6 33c0 xor eax,eax
  35. fffff800`028c3be8 0f23f8 mov dr7,rax
  36. fffff800`028c3beb 65f604254a4d000002 test byte ptr gs:[4D4Ah],2
  37. fffff800`028c3bf4 747d je nt!KiSaveDebugRegisterState+0xc3 (fffff800`028c3c73)
  38. fffff800`028c3bf6 66f7c20003 test dx,300h
  39. fffff800`028c3bfb 7476 je nt!KiSaveDebugRegisterState+0xc3 (fffff800`028c3c73)
  40. fffff800`028c3bfd 448b05b07a2300 mov r8d,dword ptr [nt!KiLastBranchTOSMSR (fffff800`02afb6b4)]
  41. fffff800`028c3c04 450bc0 or r8d,r8d
  42. fffff800`028c3c07 7408 je nt!KiSaveDebugRegisterState+0x61 (fffff800`028c3c11)
  43. fffff800`028c3c09 418bc8 mov ecx,r8d
  44. fffff800`028c3c0c 0f32 rdmsr
  45. fffff800`028c3c0e 448bc0 mov r8d,eax
  46. fffff800`028c3c11 8b0d91762300 mov ecx,dword ptr [nt!KiLastBranchFromBaseMSR (fffff800`02afb2a8)]
  47. fffff800`028c3c17 4103c8 add ecx,r8d
  48. fffff800`028c3c1a 0f32 rdmsr
  49. fffff800`028c3c1c 898598000000 mov dword ptr [rbp+98h],eax
  50. fffff800`028c3c22 8b0d28772300 mov ecx,dword ptr [nt!KiLastBranchToBaseMSR (fffff800`02afb350)]
  51. fffff800`028c3c28 89959c000000 mov dword ptr [rbp+9Ch],edx
  52. fffff800`028c3c2e 4103c8 add ecx,r8d
  53. fffff800`028c3c31 0f32 rdmsr
  54. fffff800`028c3c33 898590000000 mov dword ptr [rbp+90h],eax
  55. fffff800`028c3c39 899594000000 mov dword ptr [rbp+94h],edx
  56. fffff800`028c3c3f 8b0d37782300 mov ecx,dword ptr [nt!KiLastExceptionFromBaseMSR (fffff800`02afb47c)]
  57. fffff800`028c3c45 0f32 rdmsr
  58. fffff800`028c3c47 8985a8000000 mov dword ptr [rbp+0A8h],eax
  59. fffff800`028c3c4d 8995ac000000 mov dword ptr [rbp+0ACh],edx
  60. fffff800`028c3c53 8b0d1f782300 mov ecx,dword ptr [nt!KiLastExceptionToBaseMSR (fffff800`02afb478)]
  61. fffff800`028c3c59 0f32 rdmsr
  62. fffff800`028c3c5b 8985a0000000 mov dword ptr [rbp+0A0h],eax
  63. fffff800`028c3c61 8995a4000000 mov dword ptr [rbp+0A4h],edx
  64. fffff800`028c3c67 b9d9010000 mov ecx,1D9h
  65. fffff800`028c3c6c 0f32 rdmsr
  66. fffff800`028c3c6e 83e0fc and eax,0FFFFFFFCh
  67. fffff800`028c3c71 0f30 wrmsr
  68. fffff800`028c3c73 6641f781080200005503 test word ptr [r9+208h],355h
  69. fffff800`028c3c7d 746c je nt!KiSaveDebugRegisterState+0x13b (fffff800`028c3ceb)
  70. fffff800`028c3c7f 498b81e0010000 mov rax,qword ptr [r9+1E0h]
  71. fffff800`028c3c86 498b91e8010000 mov rdx,qword ptr [r9+1E8h]
  72. fffff800`028c3c8d 0f23c0 mov dr0,rax
  73. fffff800`028c3c90 0f23ca mov dr1,rdx
  74. fffff800`028c3c93 498b81f0010000 mov rax,qword ptr [r9+1F0h]
  75. fffff800`028c3c9a 498b91f8010000 mov rdx,qword ptr [r9+1F8h]
  76. fffff800`028c3ca1 0f23d0 mov dr2,rax
  77. fffff800`028c3ca4 0f23da mov dr3,rdx
  78. fffff800`028c3ca7 498b9108020000 mov rdx,qword ptr [r9+208h]
  79. fffff800`028c3cae 33c0 xor eax,eax
  80. fffff800`028c3cb0 0f23f0 mov dr6,rax
  81. fffff800`028c3cb3 0f23fa mov dr7,rdx
  82. fffff800`028c3cb6 65f604254a4d000002 test byte ptr gs:[4D4Ah],2
  83. fffff800`028c3cbf 742a je nt!KiSaveDebugRegisterState+0x13b (fffff800`028c3ceb)
  84. fffff800`028c3cc1 66f7c20002 test dx,200h
  85. fffff800`028c3cc6 7403 je nt!KiSaveDebugRegisterState+0x11b (fffff800`028c3ccb)
  86. fffff800`028c3cc8 83c802 or eax,2
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement