Advertisement
Guest User

Untitled

a guest
Jun 19th, 2011
90
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.99 KB | None | 0 0
  1. ------------------- [SWS] --------------------
  2. Unsupported opcode!
  3.  
  4. CPU: PROT, USE32, CPL=0
  5. GraphMode=0D, EGAMode=00, Chain4=OFF
  6. EAX=E3FFFFFF EBX=00000018 ECX=00000001 EDX=0000005A
  7. ESP=0031D8A8 EBP=0030000F ESI=00014650 EDI=0000580C
  8. DS=0158 ES=0158 SS=0158 CS=0150 FS=0000 GS=0020
  9. NV UP EI NG NZ NA PE CY VM=0 IOPL=0
  10. 0150:249369 FFFF06 rcr ax,06
  11.  
  12. Disassembly of code around the location:
  13. 0150:249349 0B0416 or eax,[esi+edx]
  14. 0150:24934C 0315C9F62800 add edx,[0028F6C9]
  15. 0150:249352 660B0416 or ax,[esi+edx]
  16. 0150:249356 0315C9F62800 add edx,[0028F6C9]
  17. 0150:24935C 660B0416 or ax,[esi+edx]
  18. 0150:249360 86C4 xchg ah,al
  19. 0150:249362 C1E010 shl eax,10
  20. 0150:249365 83F0FF xor eax,FFFF
  21. 0150:249368 F9 stc
  22. 0150:249369 C1D806 rcr eax,06
  23. 0150:24936C 8A9F02000A00 mov bl,[edi+000A0002]
  24. 0150:249372 88A702000A00 mov [edi+000A0002],ah
  25. 0150:249378 C1E810 shr eax,10
  26. 0150:24937B 8A9F00000A00 mov bl,[edi+000A0000]
  27. 0150:249381 88A700000A00 mov [edi+000A0000],ah
  28. 0150:249387 8A9F01000A00 mov bl,[edi+000A0001]
  29. 0150:24938D 888701000A00 mov [edi+000A0001],al
  30. 0150:249393 83C702 add edi,0002
  31. 0150:249396 83C602 add esi,0002
  32. 0150:249399 E2A4 loop 0024933F ($-5c)
  33. 0150:24939B 033DCDF62800 add edi,[0028F6CD]
  34. 0150:2493A1 664D dec bp
  35. 0150:2493A3 7593 jne 00249338 ($-6d)
  36. 0150:2493A5 66BACE03 mov dx,03CE
  37. 0150:2493A9 66B80310 mov ax,1003
  38. 0150:2493AD 66EF out dx,ax
  39. 0150:2493AF 66B80201 mov ax,0102
  40. 0150:2493B3 66BAC403 mov dx,03C4
  41. 0150:2493B7 66EF out dx,ax
  42. 0150:2493B9 8B3DC1F62800 mov edi,[0028F6C1]
  43. ------------------- [HYBRID] --------------------
  44. Unsupported opcode!
  45.  
  46. CPU: REAL, USE16, CPL=0
  47. GraphMode=03, EGAMode=00, Chain4=OFF
  48. EAX=00000000 EBX=00000D02 ECX=0000FF03 EDX=00000D4E
  49. ESP=00000144 EBP=000063A0 ESI=00130D4E EDI=0000219C
  50. DS=31D2 ES=0381 SS=3526 CS=350C FS=02E0 GS=02D3
  51. NV UP EI PL ZR NA PE NC VM=0 IOPL=0
  52. 350C:00CB FF34FF call 00000002 ($-cc)
  53.  
  54. Disassembly of code around the location:
  55. 350C:00AB 41 inc cx
  56. 350C:00AC D3E2 shl dx,cl
  57. 350C:00AE 81EA9F00 sub dx,009F
  58. 350C:00B2 E84DFF call 00000002 ($-b3)
  59. 350C:00B5 3DFF01 cmp ax,01FF
  60. 350C:00B8 7459 je 00000113 ($+59)
  61. 350C:00BA 03C2 add ax,dx
  62. 350C:00BC 8BD7 mov dx,di
  63. 350C:00BE 2BD0 sub dx,ax
  64. 350C:00C0 B90200 mov cx,0002
  65. 350C:00C3 E99A00 jmp 00000160 ($+9a)
  66. 350C:00C6 0AC0 or al,al
  67. 350C:00C8 9C pushf
  68. 350C:00C9 B103 mov cl,03
  69. 350C:00CB E834FF call 00000002 ($-cc)
  70. 350C:00CE 3C03 cmp al,03
  71. 350C:00D0 770D ja 000000DF ($+d)
  72. 350C:00D2 7404 je 000000D8 ($+4)
  73. 350C:00D4 0405 add al,05
  74. 350C:00D6 EB20 jmp short 000000F8 ($+20)
  75. 350C:00D8 E85AFF call 00000035 ($-a6)
  76. 350C:00DB 1405 adc al,05
  77. 350C:00DD EB19 jmp short 000000F8 ($+19)
  78. 350C:00DF 3C04 cmp al,04
  79. 350C:00E1 7410 je 000000F3 ($+10)
  80. 350C:00E3 0407 add al,07
  81. 350C:00E5 3C0E cmp al,0E
  82. 350C:00E7 750F jne 000000F8 ($+f)
  83. 350C:00E9 B10F mov cl,0F
  84. 350C:00EB E814FF call 00000002 ($-ec)
  85. ------------------- [HYBRID] --------------------
  86. Unsupported opcode!
  87.  
  88. CPU: REAL, USE16, CPL=0
  89. GraphMode=03, EGAMode=00, Chain4=OFF
  90. EAX=0000011B EBX=00000108 ECX=0000FF08 EDX=00002081
  91. ESP=00000146 EBP=00000000 ESI=00130D4E EDI=0000219C
  92. DS=31D2 ES=0381 SS=3526 CS=350C FS=02E0 GS=02D3
  93. NV UP EI PL ZR NA PE NC VM=0 IOPL=0
  94. 350C:010C 7407 je 00000115 ($+7)
  95.  
  96. Disassembly of code around the location:
  97. 350C:00EC 14FF adc al,FF
  98. 350C:00EE 05E13F add ax,3FE1
  99. 350C:00F1 EB14 jmp short 00000107 ($+14)
  100. 350C:00F3 E83FFF call 00000035 ($-c1)
  101. 350C:00F6 1406 adc al,06
  102. 350C:00F8 8AC8 mov cl,al
  103. 350C:00FA BA0100 mov dx,0001
  104. 350C:00FD D3E2 shl dx,cl
  105. 350C:00FF 83EA1F sub dx,001F
  106. 350C:0102 E8FDFE call 00000002 ($-103)
  107. 350C:0105 03C2 add ax,dx
  108. 350C:0107 8BD7 mov dx,di
  109. 350C:0109 2BD0 sub dx,ax
  110. 350C:010B 9D popf
  111. 350C:010C 7407 je 00000115 ($+7)
  112. 350C:010E B90300 mov cx,0003
  113. 350C:0111 EB4D jmp short 00000160 ($+4d)
  114. 350C:0113 EB5A jmp short 0000016F ($+5a)
  115. 350C:0115 E81DFF call 00000035 ($-e3)
  116. 350C:0118 7209 jc 00000123 ($+9)
  117. 350C:011A 33C0 xor ax,ax
  118. 350C:011C E816FF call 00000035 ($-ea)
  119. 350C:011F 1404 adc al,04
  120. 350C:0121 EB3B jmp short 0000015E ($+3b)
  121. 350C:0123 B103 mov cl,03
  122. 350C:0125 E8DAFE call 00000002 ($-126)
  123. 350C:0128 0AC0 or al,al
  124. 350C:012A 750B jne 00000137 ($+b)
  125. 350C:012C B104 mov cl,04
  126. 350C:012E E8D1FE call 00000002 ($-12f)
  127. ------------------- [HYBRID] --------------------
  128. Unsupported opcode!
  129.  
  130. CPU: REAL, USE16, CPL=0
  131. GraphMode=03, EGAMode=00, Chain4=OFF
  132. EAX=00000A9D EBX=0000040B ECX=0000FF0B EDX=00001737
  133. ESP=00000144 EBP=00000000 ESI=00130D62 EDI=000021D4
  134. DS=31D2 ES=0381 SS=3526 CS=350C FS=02E0 GS=02D3
  135. NV UP EI PL NZ NA PO CY VM=0 IOPL=0
  136. 350C:0039 74FF je 0000002F ($-c)
  137.  
  138. Disassembly of code around the location:
  139. 350C:0019 DF db DF
  140. 350C:001A 8ACF mov cl,bh
  141. 350C:001C 95 xchg bp,ax
  142. 350C:001D AD lodsw
  143. 350C:001E 8BD8 mov bx,ax
  144. 350C:0020 D3E0 shl ax,cl
  145. 350C:0022 95 xchg bp,ax
  146. 350C:0023 F7D9 neg cx
  147. 350C:0025 80C110 add cl,10
  148. 350C:0028 D3EB shr bx,cl
  149. 350C:002A 03C3 add ax,bx
  150. 350C:002C 8AF9 mov bh,cl
  151. 350C:002E C3 ret
  152. 350C:002F 95 xchg bp,ax
  153. 350C:0030 AD lodsw
  154. 350C:0031 95 xchg bp,ax
  155. 350C:0032 B710 mov bh,10
  156. 350C:0034 C3 ret
  157. 350C:0035 D1E5 shl bp,1
  158. 350C:0037 FECF dec bh
  159. 350C:0039 74F4 je 0000002F ($-c)
  160. 350C:003B C3 ret
  161. 350C:003C AD lodsw
  162. 350C:003D 8BE8 mov bp,ax
  163. 350C:003F B710 mov bh,10
  164. 350C:0041 7209 jc 0000004C ($+9)
  165. 350C:0043 A4 movsb
  166. 350C:0044 D1E5 shl bp,1
  167. 350C:0046 FECF dec bh
  168. 350C:0048 77F9 ja 00000043 ($-7)
  169. ------------------- [RIVA] --------------------
  170. Unsupported opcode!
  171.  
  172. CPU: PROT, USE32, CPL=0
  173. GraphMode=13, EGAMode=40, Chain4=ON
  174. EAX=24780000 EBX=00000001 ECX=000000FB EDX=FFFFFFF0
  175. ESP=00388344 EBP=00E80510 ESI=00000001 EDI=FFF2A9D3
  176. DS=0208 ES=0208 SS=0208 CS=0200 FS=0000 GS=0020
  177. NV UP EI PL NZ NA PO NC VM=0 IOPL=0
  178. 0200:30132F FFFF idiv bx
  179.  
  180. Disassembly of code around the location:
  181. 0200:30130F 890424 mov [esp],eax
  182. 0200:301312 E848EB0100 call 0031FE5F ($+1eb48)
  183. 0200:301317 E8D4EB0100 call 0031FEF0 ($+1ebd4)
  184. 0200:30131C 89C6 mov esi,eax
  185. 0200:30131E 85C0 test eax,eax
  186. 0200:301320 7E43 jle 00301365 ($+43)
  187. 0200:301322 8B1424 mov edx,[esp]
  188. 0200:301325 89C3 mov ebx,eax
  189. 0200:301327 89D0 mov eax,edx
  190. 0200:301329 C1E010 shl eax,10
  191. 0200:30132C C1FA10 sar edx,10
  192. 0200:30132F F7FB idiv ebx
  193. 0200:301331 8B542404 mov edx,[esp+0004]
  194. 0200:301335 89F3 mov ebx,esi
  195. 0200:301337 89C7 mov edi,eax
  196. 0200:301339 89D0 mov eax,edx
  197. 0200:30133B C1E010 shl eax,10
  198. 0200:30133E C1FA10 sar edx,10
  199. 0200:301341 F7FB idiv ebx
  200. 0200:301343 8B5C2440 mov ebx,[esp+0040]
  201. 0200:301347 89C6 mov esi,eax
  202. 0200:301349 89F9 mov ecx,edi
  203. 0200:30134B F7DE neg esi
  204. 0200:30134D 8B442438 mov eax,[esp+0038]
  205. 0200:301351 89F2 mov edx,esi
  206. 0200:301353 E807EB0100 call 0031FE5F ($+1eb07)
  207. 0200:301358 3D71FDFFFF cmp eax,FFFFFD71
  208. 0200:30135D 7D0A jge 00301369 ($+a)
  209. 0200:30135F F7DF neg edi
  210. 0200:301361 F7DE neg esi
  211. ------------------- [U7RUN] --------------------
  212. Unsupported opcode!
  213.  
  214. CPU: REAL, USE16, CPL=0
  215. GraphMode=13, EGAMode=40, Chain4=ON
  216. EAX=0000034A EBX=000009C0 ECX=00007EC1 EDX=0000AC35
  217. ESP=000009BE EBP=00004F20 ESI=000009B2 EDI=000009B0
  218. DS=02DF ES=4F20 SS=02DF CS=02DF FS=0000 GS=0000
  219. NV UP EI PL NZ NA PO NC VM=0 IOPL=0
  220. 02DF:100A8 6D insw
  221.  
  222. Disassembly of code around the location:
  223. 02DF:10088 F5 cmc
  224. 02DF:10089 04D3 add al,D3
  225. 02DF:1008B 0209 add cl,[bx+di]
  226. 02DF:1008D 05D302 add ax,02D3
  227. 02DF:10090 1C05 sbb al,05
  228. 02DF:10092 D302 rol word [bp+si],cl
  229. 02DF:10094 3505D3 xor ax,D305
  230. 02DF:10097 024005 add al,[bx+si+05]
  231. 02DF:1009A D302 rol word [bp+si],cl
  232. 02DF:1009C 4B dec bx
  233. 02DF:1009D 05D302 add ax,02D3
  234. 02DF:100A0 54 push sp
  235. 02DF:100A1 05D302 add ax,02D3
  236. 02DF:100A4 61 popa
  237. 02DF:100A5 05D302 add ax,02D3
  238. 02DF:100A8 6D insw
  239. 02DF:100A9 05D302 add ax,02D3
  240. 02DF:100AC 7705 ja 000100B3 ($+5)
  241. 02DF:100AE D302 rol word [bp+si],cl
  242. 02DF:100B0 92 xchg dx,ax
  243. 02DF:100B1 05D302 add ax,02D3
  244. 02DF:100B4 B305 mov bl,05
  245. 02DF:100B6 D302 rol word [bp+si],cl
  246. 02DF:100B8 BC05D3 mov sp,D305
  247. 02DF:100BB 02D1 add dl,cl
  248. 02DF:100BD 05D302 add ax,02D3
  249. 02DF:100C0 E505 in ax,05
  250. 02DF:100C2 D302 rol word [bp+si],cl
  251. 02DF:100C4 F005D302 lock add ax,02D3
  252. 02DF:100C8 07 pop es
  253. ------------------- [SKULL] --------------------
  254. Exception 2 at 801A0280!
  255. TLB miss on load from DBDBDBD8!
  256.  
  257. CPU: PROT, USE32, CPL=0
  258. GraphMode=03, EGAMode=00, Chain4=OFF
  259. EAX=00000000 EBX=00000000 ECX=00000000 EDX=D6D6D6D6
  260. ESP=001CF870 EBP=001CF8C4 ESI=0012D101 EDI=00000001
  261. DS=0168 ES=0168 SS=0168 CS=0160 FS=0000 GS=0020
  262. NV UP EI PL ZR NA PE NC VM=0 IOPL=0
  263. 0160:163061 663D19FF7248 cmp eax,4872E019
  264.  
  265. Disassembly of code around the location:
  266. 0160:163041 0031 add [ecx],dh
  267. 0160:163043 D231 shl byte [ecx],cl
  268. 0160:163045 C0E82F shr al,2F
  269. 0160:163048 C9 leave
  270. 0160:163049 0400 add al,00
  271. 0160:16304B A330BF1C00 mov [001CBF30],eax
  272. 0160:163050 85C0 test eax,eax
  273. 0160:163052 0F85CD010000 jnz 00163225 ($+1cd)
  274. 0160:163058 8B152CBF1C00 mov edx,[001CBF2C]
  275. 0160:16305E 668B02 mov ax,[edx]
  276. 0160:163061 663D19E0 cmp ax,E019
  277. 0160:163065 7248 jc 001630AF ($+48)
  278. 0160:163067 0F8690000000 jbe 001630FD ($+90)
  279. 0160:16306D 663D27E0 cmp ax,E027
  280. 0160:163071 7225 jc 00163098 ($+25)
  281. 0160:163073 0F867D000000 jbe 001630F6 ($+7d)
  282. 0160:163079 663D2BE0 cmp ax,E02B
  283. 0160:16307D 0F8294000000 jb 00163117 ($+94)
  284. 0160:163083 0F8682000000 jbe 0016310B ($+82)
  285. 0160:163089 663D2FE0 cmp ax,E02F
  286. 0160:16308D 0F847F000000 jz 00163112 ($+7f)
  287. 0160:163093 E97F000000 jmp 00163117 ($+7f)
  288. 0160:163098 663D1DE0 cmp ax,E01D
  289. 0160:16309C 0F8275000000 jb 00163117 ($+75)
  290. 0160:1630A2 7636 jbe 001630DA ($+36)
  291. 0160:1630A4 663D23E0 cmp ax,E023
  292. 0160:1630A8 7445 je 001630EF ($+45)
  293. 0160:1630AA E968000000 jmp 00163117 ($+68)
  294. 0160:1630AF 663D09E0 cmp ax,E009
  295. 0160:1630B3 7216 jc 001630CB ($+16)
  296. ------------------- [CM2] --------------------
  297. Unsupported opcode!
  298.  
  299. CPU: PROT, USE32, CPL=0
  300. GraphMode=03, EGAMode=00, Chain4=OFF
  301. EAX=4D435C36 EBX=00222C80 ECX=0021BAD7 EDX=4D435C36
  302. ESP=005F2058 EBP=005F2174 ESI=00222C86 EDI=00222C86
  303. DS=0168 ES=0168 SS=0168 CS=0160 FS=0000 GS=0020
  304. NV UP EI PL NZ NA PE NC VM=0 IOPL=0
  305. 0160:1FBDBF FF2BFF call 001F47ED ($-75d5)
  306.  
  307. Disassembly of code around the location:
  308. 0160:1FBD9F 8B15D4875D00 mov edx,[005D87D4]
  309. 0160:1FBDA5 A3D4875D00 mov [005D87D4],eax
  310. 0160:1FBDAA 8910 mov [eax],edx
  311. 0160:1FBDAC 5A pop edx
  312. 0160:1FBDAD 59 pop ecx
  313. 0160:1FBDAE 5B pop ebx
  314. 0160:1FBDAF C3 ret
  315. 0160:1FBDB0 52 push edx
  316. 0160:1FBDB1 8B15D4875D00 mov edx,[005D87D4]
  317. 0160:1FBDB7 85D2 test edx,edx
  318. 0160:1FBDB9 7411 je 001FBDCC ($+11)
  319. 0160:1FBDBB 89D0 mov eax,edx
  320. 0160:1FBDBD 8B12 mov edx,[edx]
  321. 0160:1FBDBF E82B8AFFFF call 001F47EF ($-75d5)
  322. 0160:1FBDC4 8915D4875D00 mov [005D87D4],edx
  323. 0160:1FBDCA EBE5 jmp short 001FBDB1 ($-1b)
  324. 0160:1FBDCC 5A pop edx
  325. 0160:1FBDCD C3 ret
  326. 0160:1FBDCE 53 push ebx
  327. 0160:1FBDCF 51 push ecx
  328. 0160:1FBDD0 52 push edx
  329. 0160:1FBDD1 89C2 mov edx,eax
  330. 0160:1FBDD3 F6400D20 test byte [eax+000D],20
  331. 0160:1FBDD7 7522 jne 001FBDFB ($+22)
  332. 0160:1FBDD9 8B4210 mov eax,[edx+0010]
  333. 0160:1FBDDC E8BB1C0000 call 001FDA9C ($+1cbb)
  334. 0160:1FBDE1 85C0 test eax,eax
  335. 0160:1FBDE3 7416 je 001FBDFB ($+16)
  336. 0160:1FBDE5 8A5A0D mov bl,[edx+000D]
  337. 0160:1FBDE8 80CB20 or bl,20
  338. ------------------- [CM2] --------------------
  339. Unsupported opcode!
  340.  
  341. CPU: PROT, USE32, CPL=0
  342. GraphMode=03, EGAMode=00, Chain4=OFF
  343. EAX=4D435C36 EBX=0012E008 ECX=0012E008 EDX=00000168
  344. ESP=005F2030 EBP=005F2174 ESI=4D435C32 EDI=00222C86
  345. DS=0168 ES=0168 SS=0168 CS=0160 FS=0000 GS=0020
  346. NV UP EI PL NZ NA PO NC VM=0 IOPL=0
  347. 0160:1FD77D FF01 test al,01
  348.  
  349. Disassembly of code around the location:
  350. 0160:1FD75D 89F0 mov eax,esi
  351. 0160:1FD75F 83C004 add eax,0004
  352. 0160:1FD762 1F pop ds
  353. 0160:1FD763 59 pop ecx
  354. 0160:1FD764 5F pop edi
  355. 0160:1FD765 5E pop esi
  356. 0160:1FD766 C3 ret
  357. 0160:1FD767 E906010000 jmp 001FD872 ($+106)
  358. 0160:1FD76C 56 push esi
  359. 0160:1FD76D 57 push edi
  360. 0160:1FD76E 51 push ecx
  361. 0160:1FD76F 1E push ds
  362. 0160:1FD770 8EDA mov ds,dx
  363. 0160:1FD772 09C0 or eax,eax
  364. 0160:1FD774 74F1 je 001FD767 ($-f)
  365. 0160:1FD776 89C6 mov esi,eax
  366. 0160:1FD778 83EE04 sub esi,0004
  367. 0160:1FD77B 8B06 mov eax,[esi]
  368. 0160:1FD77D A801 test al,01
  369. 0160:1FD77F 74E6 je 001FD767 ($-1a)
  370. 0160:1FD781 24FE and al,FE
  371. 0160:1FD783 89F7 mov edi,esi
  372. 0160:1FD785 01C7 add edi,eax
  373. 0160:1FD787 F70701000000 test dword [edi],00000001
  374. 0160:1FD78D 751F jne 001FD7AE ($+1f)
  375. 0160:1FD78F 3B7B0C cmp edi,[ebx+000C]
  376. 0160:1FD792 7503 jne 001FD797 ($+3)
  377. 0160:1FD794 89730C mov [ebx+000C],esi
  378. 0160:1FD797 0307 add eax,[edi]
  379. 0160:1FD799 8906 mov [esi],eax
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement