Skip to content

Instantly share code, notes, and snippets.

@adeii
Created April 2, 2024 12:33
Show Gist options
  • Save adeii/145f1be758741850b8f15de4dc7b0f74 to your computer and use it in GitHub Desktop.
Save adeii/145f1be758741850b8f15de4dc7b0f74 to your computer and use it in GitHub Desktop.
Brave 1.64.109 x32 on Win 7
Brave 123.1.64.109 32bit original + Blaukovitch's DLLs.
brave.exe
=========
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
85C90:
FF FF 84 C0 74 0D 8A 59 05 E8 72 BD 00 00 E9 59 --> FF FF 90 90 90 90 8A 59 05 E8 72 BD 00 00 E9 59 (84 C0 74 0D -> 90 90 90 90)
12DCB0:
55 89 E5 53 57 56 83 EC 18 89 D6 89 CF A1 10 D0 --> 55 89 E5 53 57 56 83 EC 48 89 D6 89 CF A1 10 D0 (18 -> 48)
59 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 E0 F3 0F --> 59 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 B0 F3 0F (E0 -> B0)
7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 10 50 FF --> 7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 20 50 FF (10 -> 20)
..
83 3B 10 0F 94 C3 20 C3 80 FB 01 75 27 80 7D E0 --> 83 3B 20 0F 94 C3 20 C3 80 FB 01 75 27 80 7D B0 (10 -> 20, E0 ->B0)
E9 75 18 8B 45 08 8B 4D E1 8B 57 04 29 C1 01 D1 --> E9 75 18 8B 45 08 8B 4D B1 8B 57 04 29 C1 01 D1 (E1 -> B1, F3 -> E9)
89 4D E1 29 D0 83 C0 13 89 47 18 F3 0F 6F 45 E0 --> 89 4D B1 29 D0 83 C0 13 89 47 18 E9 AC F4 03 00
F3 0F 7F 06 8B 4D F0 31 E9 E8 F7 0C FD FF 89 D8 --> 90 90 90 90 8B 4D F0 31 E9 E8 F7 0C FD FF 89 D8
83 C4 18 5E 5F 5B 5D C3 CC CC CC CC CC CC CC CC --> 83 C4 48 5E 5F 5B 5D C3 CC CC CC CC CC CC CC CC
16D1C0:
E8 9D 10 F9 FF 5A 59 FF E0 CC CC CC CC CC CC CC --> E8 9D 10 F9 FF 5A 59 FF E0 CC CC CC F3 0F 6F 45
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC --> B0 F3 0F 7F 06 F3 0F 6F 45 C0 F3 0F 7F 46 10 E9
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC --> 40 0B FC FF CC CC CC CC CC CC CC CC CC CC CC CC
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78)
KERNEL32.dll -> KERNEL64.dll (CFF explorer-Import directory)
-------------------------------------------------------------------------
chrome_proxy.exe
================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) 620063007200790070
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
chrome_elf.dll
==============
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
chrome.dll
==========
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
1AC2f0:
C1 30 C1 0F 84 1D 01 00 00 89 64 24 0C 8B 43 10 --> C1 90 90 90 90 90 90 90 90 89 64 24 0C 8B 43 10
E44410:
89 4D DC 31 C0 40 50 53 68 0F 00 00 10 50 57 FF --> 89 4D DC 31 C0 40 50 53 68 0F 00 00 00 50 57 FF
55EE9C0:
0A 83 7F 34 00 0F 84 14 01 00 00 8D 75 38 89 45 --> 0A 90 90 90 90 90 90 90 90 90 90 8D 75 38 89 45
9B7DFC0:
FF 83 C4 04 84 C0 B8 02 08 00 00 B9 00 09 00 00 --> FF 83 C4 04 84 C0 B8 02 08 00 00 B9 00 00 00 00
0F 45 C8
BB3F4F4:
C3 41 1B 9A BB D3 6A 46 87 FC FE 67 55 6A 3B 65 -> 5A EE 59 B8 38 D8 5B 4B A2 E8 1A DC 7D 93 DB 48
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 (62->78) x2
user32 -> user64 (hidden)
mfplat -> xfplat (hidden)
netapi32 -> netapi64 (hidden)
kernel32 -> kernel64
userenv -> userenx
winhttp -> winxttp
-------------------------------------------------------------------------
notification_helper.exe
=======================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
chrome_wer.exe
=======================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
-------------------------------------------------------------------------
chrome_pwa_launcher.exe
=======================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78)
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
brave_vpn_helper.exe
====================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
brave_vpn_wireguard_service.exe
===============================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment