Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: | Player Kick | //This is a cheat.
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: PlayerName.....: Mandito
- [ACEv10]: PlayerIP.......: 181.138.165.228
- [ACEv10]: OS.............: Microsoft Windows 7/2008 R2 x86 (Version: 6.1.7601)
- [ACEv10]: CPU............: AMD Phenom(tm) II X3 710 Processor
- [ACEv10]: CPUSpeed.......: 2612.150879 Mhz
- [ACEv10]: NICDesc........: NVIDIA nForce Networking Controller
- [ACEv10]: MACHash1.......: EA03884CF8913F06C9C1B9106BFA86B5
- [ACEv10]: MACHash2.......: ECD743551CF9FE75175B1C5E3ADC9068
- [ACEv10]: HWID...........: 9B6645BF4BB98F9840475D6C70C2E9F6
- [ACEv10]: GameVersion....: 436
- [ACEv10]: Renderer.......: D3DDrv.D3DRenderDevice
- [ACEv10]: SoundDevice....: Galaxy.GalaxyAudioSubsystem
- [ACEv10]: CommandLine....:
- [ACEv10]: TimeStamp......: 25-09-2016 / 03:01:50
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: | Kick Reasons |
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: GameEngine Transient.GameEngine0
- [ACEv10]: ObjectPtr......: 0x007FF420
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Font Engine.SmallFont
- [ACEv10]: ObjectPtr......: 0x00791E00
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture UWindow.Icons.MouseCursor
- [ACEv10]: ObjectPtr......: 0x0434EA00
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture UWindow.WhiteTexture
- [ACEv10]: ObjectPtr......: 0x045DFF00
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture UWindow.Icons.ChkChecked
- [ACEv10]: ObjectPtr......: 0x05DA3540
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture UWindow.Icons.ChkUnchecked
- [ACEv10]: ObjectPtr......: 0x05DA3480
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture UWindow.Icons.ChkCheckedDisabled
- [ACEv10]: ObjectPtr......: 0x05DA3600
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Class Botpack.CTFFlag
- [ACEv10]: ObjectPtr......: 0x05CBB400
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Class Botpack.WarShell
- [ACEv10]: ObjectPtr......: 0x07250000
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture Botpack.Icons.BlueFlag
- [ACEv10]: ObjectPtr......: 0x05DA0D80
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture Botpack.Icons.RedFlag
- [ACEv10]: ObjectPtr......: 0x05DA0CC0
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Font LadderFonts.UTLadder30
- [ACEv10]: ObjectPtr......: 0x02E47BC0
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: TMale2 DM-Deck16][.TMale21
- [ACEv10]: ObjectPtr......: 0x06207800
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture Botpack.Icons.CHair5
- [ACEv10]: ObjectPtr......: 0x047B1C80
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Engine Object Replaced
- [ACEv10]: ObjectName.....: Texture Botpack.Icons.CHair6
- [ACEv10]: ObjectPtr......: 0x047B3C00
- [ACEv10]: ModuleHandle...: 0x00000000
- [ACEv10]: ModuleName.....: Unknown Module
- [ACEv10]: SymbolName.....: Unknown Function+0x0000
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: | Screenshot Status |
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: Filename.......: ../Shots/[ACE] - Chamberly_s Linux Server!_2016.09.30.23.47.40_DM-Deck16][_14_Mandito.jpg
- [ACEv10]: Status.........: Success
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: | Player Kick |
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: PlayerName.....:
- [ACEv10]: PlayerIP.......:
- [ACEv10]: OS.............: Microsoft Windows 7/2008 R2 x86 (Version: 6.1.7600)
- [ACEv10]: CPU............: Intel(R) Celeron(R) CPU 847 @ 1.10GHz
- [ACEv10]: CPUSpeed.......: 1097.531860 Mhz
- [ACEv10]: NICDesc........: Realtek PCIe GBE Family Controller
- [ACEv10]: MACHash1.......:
- [ACEv10]: MACHash2.......:
- [ACEv10]: HWID...........:
- [ACEv10]: GameVersion....: 436
- [ACEv10]: Renderer.......: D3DDrv.D3DRenderDevice
- [ACEv10]: SoundDevice....: Galaxy.GalaxyAudioSubsystem
- [ACEv10]: CommandLine....:
- [ACEv10]: TimeStamp......: 03-10-2016 / 19:01:50
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: | Kick Reasons | //Noticed no SS available. O.o
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: BaseAddress....: 0x776E0000
- [ACEv10]: LibraryName....: ntdll.dll
- [ACEv10]: LibraryPath....: C:\Windows\SYSTEM32\ntdll.dll
- [ACEv10]: LibrarySize....: 1286144 bytes
- [ACEv10]: LibraryHash....: F87212E64DE6DACDD55610B847DC2A60
- [ACEv10]: +------------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77725070
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwCreateEvent
- [ACEv10]: HookInfo.......: ?777249f0-e95bdc2cf3/b840000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777249f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x40
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2650
- [ACEv10]: MetaData.......: 6a9f2650 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1650
- [ACEv10]: 6a9f2360 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1360
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x777258F0
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwMapViewOfSection
- [ACEv10]: HookInfo.......: ?77725070-e9ebd22cf3/b8a8000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 77725070
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0xa8
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2360
- [ACEv10]: MetaData.......: 6a9f2520 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1520
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77736393
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwResumeThread
- [ACEv10]: HookInfo.......: ?777258f0-e92bcc2cf3/b830010000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777258f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x130
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2520
- [ACEv10]: MetaData.......: 6a9f2f80 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1f80
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlQueryEnvironmentVariable
- [ACEv10]: HookInfo.......: ?77736393-e9e8cb2bf3/6a1068b00e7377
- [ACEv10]: AdditionalInfo.: Mismatch @ 77736393
- [ACEv10]: Expected:
- [ACEv10]: > push 0x10
- [ACEv10]: > push 0x77730eb0
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2f80
- [ACEv10]: MetaData.......: 6a9f2e90 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlDecompressBuffer
- [ACEv10]: HookInfo.......: ?77795001-e98ade25f3/8bff558bec
- [ACEv10]: AdditionalInfo.: Mismatch @ 77795001
- [ACEv10]: Expected:
- [ACEv10]: > mov edi, edi
- [ACEv10]: > push ebp
- [ACEv10]: > mov ebp, esp
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77725070
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwCreateEvent
- [ACEv10]: HookInfo.......: ?777249f0-e95bdc2cf3/b840000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777249f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x40
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2650
- [ACEv10]: MetaData.......: 6a9f2650 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1650
- [ACEv10]: 6a9f2360 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1360
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x777258F0
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwMapViewOfSection
- [ACEv10]: HookInfo.......: ?77725070-e9ebd22cf3/b8a8000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 77725070
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0xa8
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2360
- [ACEv10]: MetaData.......: 6a9f2520 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1520
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77736393
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwResumeThread
- [ACEv10]: HookInfo.......: ?777258f0-e92bcc2cf3/b830010000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777258f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x130
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2520
- [ACEv10]: MetaData.......: 6a9f2f80 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1f80
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlQueryEnvironmentVariable
- [ACEv10]: HookInfo.......: ?77736393-e9e8cb2bf3/6a1068b00e7377
- [ACEv10]: AdditionalInfo.: Mismatch @ 77736393
- [ACEv10]: Expected:
- [ACEv10]: > push 0x10
- [ACEv10]: > push 0x77730eb0
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2f80
- [ACEv10]: MetaData.......: 6a9f2e90 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlDecompressBuffer
- [ACEv10]: HookInfo.......: ?77795001-e98ade25f3/8bff558bec
- [ACEv10]: AdditionalInfo.: Mismatch @ 77795001
- [ACEv10]: Expected:
- [ACEv10]: > mov edi, edi
- [ACEv10]: > push ebp
- [ACEv10]: > mov ebp, esp
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77725070
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwCreateEvent
- [ACEv10]: HookInfo.......: ?777249f0-e95bdc2cf3/b840000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777249f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x40
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2650
- [ACEv10]: MetaData.......: 6a9f2650 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1650
- [ACEv10]: 6a9f2360 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1360
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x777258F0
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwMapViewOfSection
- [ACEv10]: HookInfo.......: ?77725070-e9ebd22cf3/b8a8000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 77725070
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0xa8
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2360
- [ACEv10]: MetaData.......: 6a9f2520 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1520
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77736393
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwResumeThread
- [ACEv10]: HookInfo.......: ?777258f0-e92bcc2cf3/b830010000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777258f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x130
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2520
- [ACEv10]: MetaData.......: 6a9f2f80 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1f80
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlQueryEnvironmentVariable
- [ACEv10]: HookInfo.......: ?77736393-e9e8cb2bf3/6a1068b00e7377
- [ACEv10]: AdditionalInfo.: Mismatch @ 77736393
- [ACEv10]: Expected:
- [ACEv10]: > push 0x10
- [ACEv10]: > push 0x77730eb0
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2f80
- [ACEv10]: MetaData.......: 6a9f2e90 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: RtlDecompressBuffer
- [ACEv10]: HookInfo.......: ?77795001-e98ade25f3/8bff558bec
- [ACEv10]: AdditionalInfo.: Mismatch @ 77795001
- [ACEv10]: Expected:
- [ACEv10]: > mov edi, edi
- [ACEv10]: > push ebp
- [ACEv10]: > mov ebp, esp
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2e90
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77725070
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwCreateEvent
- [ACEv10]: HookInfo.......: ?777249f0-e95bdc2cf3/b840000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777249f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x40
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2650
- [ACEv10]: MetaData.......: 6a9f2650 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1650
- [ACEv10]: 6a9f2360 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1360
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x777258F0
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwMapViewOfSection
- [ACEv10]: HookInfo.......: ?77725070-e9ebd22cf3/b8a8000000
- [ACEv10]: AdditionalInfo.: Mismatch @ 77725070
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0xa8
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2360
- [ACEv10]: MetaData.......: 6a9f2520 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1520
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77736393
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: HookFunction...: ZwResumeThread
- [ACEv10]: HookInfo.......: ?777258f0-e92bcc2cf3/b830010000
- [ACEv10]: AdditionalInfo.: Mismatch @ 777258f0
- [ACEv10]: Expected:
- [ACEv10]: > mov eax, 0x130
- [ACEv10]: Found:
- [ACEv10]: > jmp 6a9f2520
- [ACEv10]: MetaData.......: 6a9f2f80 -> C:\Program Files\AVG\Av\avghookx.dll!.text+1f80
- [ACEv10]: Kick Status....: Not kicking because bStrictSystemLibraryChecks is set to false
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: +----------------------------------------------------------------------------+
- [ACEv10]: KickReason.....: Hooked Function
- [ACEv10]: HookType.......: CODE
- [ACEv10]: HookAddress....: 0x77795001
- [ACEv10]: HookOffset.....: 0x0000
- [ACEv10]: Hook
- //It stopped logging here.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement