Advertisement
Guest User

Untitled

a guest
Jun 23rd, 2017
210
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. !define TokenUser 1
  2. system::call 'kernel32::GetCurrentProcess()i.s'
  3. system::call 'advapi32::OpenProcessToken(is,i 0x00020008,*i.r1)i.r0' ;TOKEN_READ  
  4. ${If} $0 <> 0
  5.     System::Call 'advapi32::GetTokenInformation(ir1,i ${TokenUser},i0,i0,*i.r2)'
  6.     System::Alloc $2
  7.     pop $3
  8.     System::Call 'advapi32::GetTokenInformation(ir1,i ${TokenUser},ir3,ir2,*i.r2)i.r0'
  9.     ${If} $0 <> 0
  10.         System::Call '*$3(i.r4)'
  11.         System::Call 'advapi32::ConvertSidToStringSid(i r4,*i.r2)i.r0'
  12.         ${If} $0 <> 0
  13.             System::Call '*$2(&t1000 .r4)'
  14.             System::Call 'kernel32::LocalFree(ir2)'
  15.             MessageBox mb_ok $4
  16.         ${EndIf}
  17.     ${EndIf}
  18.     System::Free $3
  19.     FileClose $1
  20. ${EndIf}
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement