Skip to content

Instantly share code, notes, and snippets.

@adeii
Created May 15, 2024 21:37
Show Gist options
  • Save adeii/5f056fb1db88dfec73d50cc509457a2a to your computer and use it in GitHub Desktop.
Save adeii/5f056fb1db88dfec73d50cc509457a2a to your computer and use it in GitHub Desktop.
Chrome 124.0.6367.202 64bit Win7
Blaukovitch's DLLs files to root and 124.0.6367.202 x64:
--------------------------------------------------------
API-MS-WIN-CORE-HANDLE-L1-1-0.dll
API-MS-WIN-CORE-REALTIME-L1-1-1.dll
API-MS-WIN-CORE-WINRT-ERROR-L1-1-0.dll
API-MS-WIN-CORE-WINRT-L1-1-0.dll
API-MS-WIN-CORE-WINRT-STRING-L1-1-0.dll
API-MS-WIN-POWER-BASE-L1-1-0.dll
API-MS-WIN-SHCORE-SCALING-L1-1-1.dll
kernel64.dll
netapi64.dll
user64.dll
userenx.dll
WinXttp.dll
wldp.dll
xcryptprimitives.dll
Xfplat.dll
* HxD-modds *
chrome.exe
----------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
1967F0:
01 00 48 8D 4C 24 30 84 C0 75 1B E8 20 A7 01 00 -> 01 00 48 8D 4C 24 30 84 C0 EB 1B E8 20 A7 01 00 (75->EB)
b?c?r?y?p?t?p?r -> x?c?r?y?p?t?p?r
USERENV.dll -> USERENX.dll
KERNEL32.dll -> KERNEL64.dll
chrome_proxy.exe
----------------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
b?c?r?y?p?t?p?r -> x?c?r?y?p?t?p?r (62 00 63 00 72 00 79 00 70 00 74 -> 78 00 63 00 72 00 79 00 70 00 74)
KERNEL32.dll -> KERNEL64.dll
chrome.dll
----------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
2E0D50:
0F 84 2F 02 00 00 4C 8B 27 48 C7 07 00 00 00 00 -> 90 90 90 90 90 90 4C 8B 27 48 C7 07 00 00 00 00 (0F 84 2F 02 00 00->NOP)
1660380:
00 00 00 4C 89 F9 BA 01 00 00 00 41 B8 0F 00 00 ->
10 4D 89 E1 FF 15 8E 1A 98 0B 85 C0 0F 85 5F 01 -> 00 4D 89 E1 FF 15 8E 1A 98 0B 85 C0 0F 85 5F 01 (10->00)
1B55AD0:
48 83 BC 24 60 01 00 00 00 0F 84 4E 01 00 00 4C -> 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 4C (48...->NOP)
43B2CA0:
89 8C 24 C0 00 00 00 49 89 4F 28 48 85 C0 74 40 -> 89 8C 24 C0 00 00 00 49 89 4F 28 48 85 C0 74 4A (40->4A)
43B2CF0:
CC 0F 0B CC 0F 0B CC 0F 0B CC CC CC CC CC CC CC -> CC 0F 0B CC 0F 0B CC 0F 0B CC E9 D2 FD FF FF CC (CC...->E9D2FDFFFF)
7AE0190:
AD 00 48 8D 4C 24 30 84 C0 75 1B E8 C0 0B 5E FF -> AD 00 48 8D 4C 24 30 84 C0 EB 1B E8 C0 0B 5E FF (75->EB)
841A660:
00 00 B9 00 09 00 00 0F 45 C8 89 8C 24 54 02 00 -> 00 00 B9 00 00 00 00 0F 45 C8 89 8C 24 54 02 00 (09->00)
AB2A650:
02 48 31 E0 48 89 44 24 68 E8 D2 6F 5A 00 83 F8 -> 02 48 31 E0 48 89 44 24 68 E8 D2 6F 5A 00 90 90 (83 F8->NOP)
02 0F 85 50 01 00 00 -48 8D 54 24 64 C7 02 04 00 -> 90 90 90 90 90 90 90 -48 8D 54 24 64 C7 02 04 00 (02...->NOP)
AB2A6F0:
5B 5F 5E C3 E8 37 6F 5A 00 83 F8 02 0F 85 BB 00 -> 5B 5F 5E C3 E8 37 6F 5A 00 90 90 90 90 90 90 90 (83...->NOP)
00 00 48 89 F1 BA FF FF 00 80 EB CD E8 1F 6F 5A -> 90 90 48 89 F1 BA FF FF 00 80 EB CD E8 1F 6F 5A (00 00->NOP)
00 83 F8 02 74 EC E9 A5 00 00 00 48 89 F1 E8 7D -> 00 83 F8 02 EB EC E9 A5 00 00 00 48 89 F1 E8 7D (74->EB)
AB2A8B0:
C3 CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC ->
41 56 56 57 53 48 81 EC 88 01 00 00 48 89 D7 48 -> B8 01 00 00 00 C3 90 90 90 90 90 90 48 89 D7 48 (41....->B8..NOP)
..
80 01 00 00 E8 47 6D 5A 00 83 F8 02 0F 85 61 01 -> 80 01 00 00 E8 47 6D 5A 00 90 90 90 90 90 90 90 (83....->NOP)
00 00 48 8D 5C 24 48 48 89 D9 E8 C1 BA EF F8 48 -> 90 90 48 8D 5C 24 48 48 89 D9 E8 C1 BA EF F8 48 (0000->NOP)
00 83 F8 02 0F 85 69 01 00 00 48 -> 00 90 90 90 90 90 90 90 90 90 48
00 83 F8 02 0F 85 A3 03 00 00 48 -> 00 90 90 90 90 90 90 90 90 90 48
00 83 F8 02 0F 85 F1 00 00 00 4C -> 00 90 90 90 90 90 90 90 90 90 4C
00 83 F8 02 75 17 48 -> 00 90 90 90 90 90 48
00 83 F8 02 75 42 48 -> 00 90 90 90 90 90 48
00 83 F8 02 75 26 48 -> 00 90 90 90 90 90 48
00 83 F8 02 75 71 48 -> 00 90 90 90 90 90 48
00 83 F8 02 0F 85 24 01 00 00 48 8D 7C 24 20 48 -> 00 90 90 90 90 90 90 90 90 90 48 8D 7C 24 20 48
00 83 F8 02 0F 85 DC 01 00 00 48 -> 00 90 90 90 90 90 90 90 90 90 48
00 83 F8 02 75 44 48 -> 00 90 90 90 90 90 48
00 83 F8 02 0F 85 93 03 00 00 48 -> 00 90 90 90 90 90 90 90 90 90 48
00 83 F8 02 0F 85 57 02 00 00 48 -> 00 90 90 90 90 90 90 90 90 90 48
00 83 F8 02 0F 85 05 06 00 00 0F -> 00 90 90 90 90 90 90 90 90 90 0F
00 83 F8 02 0F 85 E9 02 00 00 49 -> 00 90 90 90 90 90 90 90 90 90 49
C3 41 1B 9A BB D3 6A 46 87 FC FE 67 55 6A 3B 65 -> 5A EE 59 B8 38 D8 5B 4B A2 E8 1A DC 7D 93 DB 48
b?c?r?y?p?t?p?r -> x?c?r?y?p?t?p?r (62 00 63 00 72 00 79 00 70 00 74 -> 78 00 63 00 72 00 79 00 70 00 74) X2
USER32.dll -> USER64.dll
MFPlat.DLL -> XFPlat.DLL
NETAPI32.dll -> NETAPI64.dll
KERNEL32.dll -> KERNEL64.dll
USERENV.dll -> USERENX.dll
WINHTTP.dll -> WINXTTP.dll
chrome_elf.dll
--------------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
b?c?r?y?p?t?p?r -> x?c?r?y?p?t?p?r (62 00 63 00 72 00 79 00 70 00 74 -> 78 00 63 00 72 00 79 00 70 00 74) X2
KERNEL32.dll -> KERNEL64.dll
notification_helper.exe
-----------------------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
b?c?r?y?p?t?p?r -> x?c?r?y?p?t?p?r (62 00 63 00 72 00 79 00 70 00 74 -> 78 00 63 00 72 00 79 00 70 00 74) X2
KERNEL32.dll -> KERNEL64.dll
elevation_service.exe
---------------------
B8: 0A -> 06
C0: 0A -> 06
120: 00 00 00 00 00 00 00 00 00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment