见simonzh2000兄弟文流程如下:1. 34EFA8 内存访问异常, regEIP = 34EFAA, dr0=34EFAB, 结束, F92. 34EFAB 单步异常(由于Dr0), regEIP = 34EFAB, drx=0, 结束, F93. 34EFAC INT3 regEIP = 34CDAD, dr0=34CDAE, 结束, F94. 34CDAE 单步异常(由于Dr0), regEIP = 34CDAE, drx=0, 结束, F95. 34CDB5 单步异常(由于34cdb0) regEIP = 34CABB, drx=0, 结束, F96. 34CABD DIV0 regEIP = 34BDB9, drx=0, 结束, F9 7. 34BDBC INT0 regEIP = 34BD43, drx=0, 结束, F9 8. 34BD43 数组超限 regEIP = 34A32B, drx=0, OK, 不能用 F9 了, SHIFT+F9 到 34A32B
003A1201 05 00 00 C0 29 EF 39 00 2A EF 39 00 00 00 00 00 ..??.*?.....003A1211 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 ..............003A1221 04 00 00 80 2A EF 39 00 00 00 00 00 00 00 00 00 ..??.........003A1231 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................003A1241 03 00 00 80 2C CD 39 00 2D CD 39 00 00 00 00 00 ..??.-?.....003A1251 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 ..............003A1261 04 00 00 80 2D CD 39 00 00 00 00 00 00 00 00 00 ..??.........003A1271 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................003A1281 04 00 00 80 3A CA 39 00 00 00 00 00 00 00 00 00 ..??.........003A1291 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................003A12A1 94 00 00 C0 38 BD 39 00 00 00 00 00 00 00 00 00 ?.??.........003A12B1 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................003A12C1 95 00 00 C0 C2 BC 39 00 00 00 00 00 00 00 00 00 ?.缆?.........003A12D1 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................003A12E1 8C 00 00 C0 AA A2 39 00 00 00 00 00 00 00 00 ?.廓?.........C0000005 80000004 80000003 80000004 80000004 C0000094 C0000095 C000008C
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课
最初由 pendan2001 发布第4个异常出口0039A2AA直接去出口下断即可。