Advertisement
Riremito

Untitled

Oct 11th, 2023
244
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.48 KB | None | 0 0
  1. KR -> JP
  2.  
  3. 69A148 // GetCommandLineA
  4. 00821CD8 - 6A 00 - push 00
  5. 00821CDA - E8 D934FFFF - call 008151B8 : [->kernel32.GetModuleHandleA]
  6. 00821CDF - FF 35 147E8200 - push [00827E14] : [1DB10106]
  7. 00821CE5 - 58 - pop eax
  8. 00821CE6 - 8B 05 247E8200 - mov eax,[00827E24] : [00212068]
  9. 00821CEC - C3 - ret
  10.  
  11.  
  12. 69A164 // LockResource
  13. 00821CC8 - 55 - push ebp
  14. 00821CC9 - 8B EC - mov ebp,esp
  15. 00821CCB - 8B 05 247E8200 - mov eax,[00827E24] : [00212068]
  16. 00821CD1 - 8B 45 08 - mov eax,[ebp+08]
  17. 00821CD4 - 5D - pop ebp
  18. 00821CD5 - C2 0400 - ret 0004
  19.  
  20.  
  21. 69A1E0 // GetCurrentProcessId
  22. 00821CC0 - A1 207E8200 - mov eax,[00827E20] : [000004E4]
  23. 00821CC5 - C3 - ret
  24.  
  25.  
  26. 69A1E4 // GetCurrentProcess
  27. 00821CB8 - A1 187E8200 - mov eax,[00827E18] : [FFFFFFFF]
  28. 00821CBD - C3 - ret
  29.  
  30.  
  31. 69A1EC // GetProcAddress
  32. 008217A4 - 55 - push ebp
  33. 008217A5 - 8B EC - mov ebp,esp
  34. 008217A7 - 8B 55 0C - mov edx,[ebp+0C]
  35. 008217AA - 8B 45 08 - mov eax,[ebp+08]
  36. 008217AD - 8B 0D 84648200 - mov ecx,[00826484] : [00826304]
  37. 008217B3 - 8B 09 - mov ecx,[ecx]
  38. 008217B5 - 3B C8 - cmp ecx,eax
  39. 008217B7 - 75 09 - jne 008217C2
  40. 008217B9 - 8B 04 95 D8638200 - mov eax,[edx*4+008263D8]
  41. 008217C0 - EB 07 - jmp 008217C9
  42. 008217C2 - 52 - push edx
  43. 008217C3 - 50 - push eax
  44. 008217C4 - E8 F739FFFF - call 008151C0 : [->kernel32.GetProcAddress]
  45. 008217C9 - 5D - pop ebp
  46. 008217CA - C2 0800 - ret 0008
  47.  
  48. 69A294 // GetModuleHandleA
  49. 00821C64 - 55 - push ebp
  50. 00821C65 - 8B EC - mov ebp,esp
  51. 00821C67 - 8B 45 08 - mov eax,[ebp+08]
  52. 00821C6A - 85 C0 - test eax,eax
  53. 00821C6C - 75 13 - jne 00821C81
  54. 00821C6E - 81 3D A47A8200 00004000 - cmp [00827AA4],00400000 : [00905A4D]
  55. 00821C78 - 75 07 - jne 00821C81
  56. 00821C7A - A1 A47A8200 - mov eax,[00827AA4] : [00400000]
  57. 00821C7F - EB 06 - jmp 00821C87
  58. 00821C81 - 50 - push eax
  59. 00821C82 - E8 3135FFFF - call 008151B8 : [->kernel32.GetModuleHandleA]
  60. 00821C87 - 5D - pop ebp
  61. 00821C88 - C2 0400 - ret 0004
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement