Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- (gdb) disassemble osTestBackdoorATI
- Dump of assembler code for function osTestBackdoorATI:
- 0x004e4d30 <+0>: push ebp
- 0x004e4d31 <+1>: mov ebp,esp
- 0x004e4d33 <+3>: push ebx
- 0x004e4d34 <+4>: sub esp,0x74
- 0x004e4d37 <+7>: mov edx,DWORD PTR [ebp+0x8]
- 0x004e4d3a <+10>: call 0x159727 <__i686.get_pc_thunk.bx>
- 0x004e4d3f <+15>: add ebx,0x1e63d69
- 0x004e4d45 <+21>: mov ecx,DWORD PTR [ebp+0x10]
- 0x004e4d48 <+24>: cmp edx,0x1
- 0x004e4d4b <+27>: je 0x4e4d90 <osTestBackdoorATI+96>
- 0x004e4d4d <+29>: cmp edx,0x2
- 0x004e4d50 <+32>: je 0x4e4d78 <osTestBackdoorATI+72>
- 0x004e4d52 <+34>: xor eax,eax
- 0x004e4d54 <+36>: test edx,edx
- 0x004e4d56 <+38>: je 0x4e4d60 <osTestBackdoorATI+48>
- 0x004e4d58 <+40>: add esp,0x74
- 0x004e4d5b <+43>: pop ebx
- 0x004e4d5c <+44>: pop ebp
- 0x004e4d5d <+45>: ret
- 0x004e4d5e <+46>: xchg ax,ax
- 0x004e4d60 <+48>: mov eax,DWORD PTR [ecx]
- 0x004e4d62 <+50>: mov DWORD PTR [esp],eax
- 0x004e4d65 <+53>: call 0x4e8b40 <osMemStateCheckPoint>
- 0x004e4d6a <+58>: add esp,0x74
- 0x004e4d6d <+61>: pop ebx
- 0x004e4d6e <+62>: pop ebp
- 0x004e4d6f <+63>: movzx eax,al
- 0x004e4d72 <+66>: ret
- 0x004e4d73 <+67>: nop
- 0x004e4d74 <+68>: lea esi,[esi+eiz*1+0x0]
- 0x004e4d78 <+72>: mov eax,DWORD PTR [ecx]
- 0x004e4d7a <+74>: mov DWORD PTR [esp],eax
- 0x004e4d7d <+77>: call 0x4e8b60 <osMemStateDumpAllObjectsSince>
- 0x004e4d82 <+82>: add esp,0x74
- 0x004e4d85 <+85>: pop ebx
- 0x004e4d86 <+86>: pop ebp
- 0x004e4d87 <+87>: movzx eax,al
- 0x004e4d8a <+90>: ret
- 0x004e4d8b <+91>: nop
- 0x004e4d8c <+92>: lea esi,[esi+eiz*1+0x0]
- 0x004e4d90 <+96>: mov eax,DWORD PTR [ecx+0x4]
- 0x004e4d93 <+99>: mov DWORD PTR [esp+0x4],eax
- 0x004e4d97 <+103>: mov eax,DWORD PTR [ecx]
- 0x004e4d99 <+105>: mov DWORD PTR [esp],eax
- 0x004e4d9c <+108>: call 0x4e8b50 <osMemStateDifferent>
- 0x004e4da1 <+113>: add esp,0x74
- 0x004e4da4 <+116>: pop ebx
- 0x004e4da5 <+117>: pop ebp
- 0x004e4da6 <+118>: movzx eax,al
- 0x004e4da9 <+121>: ret
- End of assembler dump.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement