Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 0:009> dd 1948c28
- 01948c28 00000000 00140000 00020017 00000090
- 01948c38 01948c78 022ca1a0 7c93748a 01948c5c
- 01948c48 022f6898 00000000 00140000 01948c94
- 01948c58 001b88c0 7c93748a 01948c78 022c4530
- 01948c68 00000000 00140000 009c0018 0000007f
- 01948c78 00e90017 0000007e 7c8099bf 00000001
- 01948c88 022c4048 01010015 01948cd0 00177710
- 01948c98 7c93748a 01948cb4 0021b178 00000000
- 0:009> ba w1 1948c28
- 0:009> sxe ct
- 0:009> g
- ModLoad: 767f0000 76817000 C:\WINDOWS\system32\schannel.dll
- eax=435ed93f ebx=00226e20 ecx=01ea0000 edx=001c1d08 esi=00000020 edi=7c910202
- eip=7c8106e9 esp=0468fffc ebp=00000005 iopl=0 nv up ei pl nz na po nc
- cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000200
- kernel32!CreateThread+0x22:
- 7c8106e9 33ed xor ebp,ebp
- 0:010> dd 1948c28
- 01948c28 41414141 41414141 41414141 41414141
- 01948c38 41414141 41414141 41414141 41414141
- ...
Add Comment
Please, Sign In to add comment