thalos
December 29th, 2003, 07:13
Lol
Need any hints on s 0 l ffffffff ‘x’
Example
What I have done
Break due to BPX KERNEL!HMEMCPY (ET=647.67 milliseconds)+ F12
:BD *
:S 0 L FFFFFFFF '11223344'
Pattern found at 0030:015AC754 (015AC754)
:BPR 15AC754 15AC754+8 RW
:S
Pattern found at 0030:80D18472 (80D18472)
:BPR 80D18472 80D18472+8 RW
:S
Pattern found at 0030:C24BDA25 (C24BDA25)
Break due to BPR #0030:015AC754 #0030:015AC75C RW
At 017F:00405470
+ F5
Break sometimes and finally the bab boy screen pops .
But the break has never land in the good place .Ihave 13 calls I break near the 3 rd call With the trick s 0 l ffffffff ‘x’ + bpr but the solution is in the 13 call (I have found the serial).
Why land I never in the good call with this process ? After the bpx hmemcpy , there was only 13 calls to see and an analyse .In another case it could be 50 or 100 calls to analyse .If s 0 l ffffffff ‘11223344’ can’t help me in a more efficient way how to find the generator of the serial?.Otherwise , I don’t really understand how to use the s 0 l ffffffff
Need any hints on s 0 l ffffffff ‘x’
Example
What I have done
Break due to BPX KERNEL!HMEMCPY (ET=647.67 milliseconds)+ F12
:BD *
:S 0 L FFFFFFFF '11223344'
Pattern found at 0030:015AC754 (015AC754)
:BPR 15AC754 15AC754+8 RW
:S
Pattern found at 0030:80D18472 (80D18472)
:BPR 80D18472 80D18472+8 RW
:S
Pattern found at 0030:C24BDA25 (C24BDA25)
Break due to BPR #0030:015AC754 #0030:015AC75C RW
At 017F:00405470
+ F5
Break sometimes and finally the bab boy screen pops .
But the break has never land in the good place .Ihave 13 calls I break near the 3 rd call With the trick s 0 l ffffffff ‘x’ + bpr but the solution is in the 13 call (I have found the serial).
Why land I never in the good call with this process ? After the bpx hmemcpy , there was only 13 calls to see and an analyse .In another case it could be 50 or 100 calls to analyse .If s 0 l ffffffff ‘11223344’ can’t help me in a more efficient way how to find the generator of the serial?.Otherwise , I don’t really understand how to use the s 0 l ffffffff