This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Add Blaukovitch's DLLs and edit: | |
-------------------------------- | |
chrome.exe | |
========= | |
b8: 06 | |
C0: 06 | |
110-Security Directory RVA / Size --> 00000000 | |
55 89 E5 53 57 56 83 EC 18 89 D6 89 CF A1 40 A0 -- 55 89 E5 53 57 56 83 EC 78 89 D6 89 CF A1 40 A0 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
add Blaukovitch's DLL and hexedit | |
chrome.exe | |
========== | |
b8: 06 | |
C0: 06 | |
120-Security Directory RVA / Size --> 00000000 | |
89 F9 E8 D9 71 01 00 48 8D 4C 24 30 84 C0 74 0A -> 89 F9 E8 D9 71 01 00 48 8D 4C 24 30 90 90 90 90 (84 C0 74 0A->NOP) |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Blaukovitch's DLLs files to root and 124.0.6367.202 x64: | |
-------------------------------------------------------- | |
API-MS-WIN-CORE-HANDLE-L1-1-0.dll | |
API-MS-WIN-CORE-REALTIME-L1-1-1.dll | |
API-MS-WIN-CORE-WINRT-ERROR-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-STRING-L1-1-0.dll | |
API-MS-WIN-POWER-BASE-L1-1-0.dll | |
API-MS-WIN-SHCORE-SCALING-L1-1-1.dll | |
kernel64.dll |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Blaukovitch's DLLs files to root and 124.0.6367.202: | |
---------------------------------------------------- | |
API-MS-WIN-CORE-HANDLE-L1-1-0.dll | |
API-MS-WIN-CORE-REALTIME-L1-1-1.dll | |
API-MS-WIN-CORE-WINRT-ERROR-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-STRING-L1-1-0.dll | |
API-MS-WIN-POWER-BASE-L1-1-0.dll | |
API-MS-WIN-SHCORE-SCALING-L1-1-1.dll | |
kernel64.dll |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Brave 123.1.64.109 32bit original + Blaukovitch's DLLs. | |
brave.exe | |
========= | |
B8- Major Subsystem --> 06 | |
C0- Major Subsystem --> 06 | |
110-Security Directory RVA / Size --> 00000000 | |
85C90: | |
FF FF 84 C0 74 0D 8A 59 05 E8 72 BD 00 00 E9 59 --> FF FF 90 90 90 90 8A 59 05 E8 72 BD 00 00 E9 59 (84 C0 74 0D -> 90 90 90 90) |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Chrome 122.0.6261.70 x32 | |
chrome.exe | |
========= | |
110-Security Directory RVA / Size --> 00000000 | |
55 89 E5 53 57 56 83 EC 18 89 D6 89 CF A1 10 00 -- 55 89 E5 53 57 56 83 EC 78 89 D6 89 CF A1 10 00 | |
5A 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 E0 F3 0F -- 5A 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 A0 F3 0F | |
7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 10 50 FF -- 7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 20 50 FF | |
.. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
chrome.exe | |
========= | |
120-Security Directory RVA / Size --> 00000000 | |
1AD2A0: | |
00 84 DB 75 14 FF 15 AD 53 07 00 48 89 C1 BA 62 -> 00 84 DB EB 14 FF 15 AD 53 07 00 48 89 C1 BA 62 (75->EB) | |
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) | |
USERENV.dll -> USERENX.dll (hidden) | |
KERNEL32.dll -> KERNEL64.dll (CFF explorer-Import directory) |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
copy to root | |
API-MS-WIN-CORE-HANDLE-L1-1-0.dll | |
API-MS-WIN-CORE-LIBRARYLOADER-L1-2-0.dll | |
API-MS-WIN-CORE-REALTIME-L1-1-1.dll | |
API-MS-WIN-CORE-WINRT-ERROR-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-STRING-L1-1-0.dll | |
API-MS-WIN-POWER-BASE-L1-1-0.dll | |
API-MS-WIN-SHCORE-SCALING-L1-1-1.dll |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
copy to root | |
API-MS-WIN-CORE-HANDLE-L1-1-0.dll | |
API-MS-WIN-CORE-LIBRARYLOADER-L1-2-0.dll | |
API-MS-WIN-CORE-REALTIME-L1-1-1.dll | |
API-MS-WIN-CORE-WINRT-ERROR-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-L1-1-0.dll | |
API-MS-WIN-CORE-WINRT-STRING-L1-1-0.dll | |
API-MS-WIN-POWER-BASE-L1-1-0.dll | |
API-MS-WIN-SHCORE-SCALING-L1-1-1.dll |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
swap in import/export Brave 1.58.131 x32 / chromium 117.0.5938.89 32bit | |
brave.exe | |
========== | |
110-Security Directory RVA / Size --> 00000000 | |
--- | |
2B4F0: 00 53 52 FF 15 7C 9C 5C 00 85 C0 74 15 FF 4D F0 --- 00 53 52 FF 15 7C 9C 5C 00 90 90 90 90 FF 4D F0 brave32 | |
2B500: 8B 3E 85 FF 75 3E B3 01 83 7D F0 00 0F 85 CB 00 -- 8B 3E 90 90 90 90 B3 01 90 90 90 90 90 90 90 90 brave32 |