REGISTERS EAX = 66DCE558 EBX = 00C8A330 ECX = 7FFD8000 EDX = 66DCE558 ESI = 66DCE558 EDI = 0203F890 EIP = 77F7E22A ESP = 0203F824 EBP = 00736790 EFL = 00000206 CS = 001B DS = 0023 ES = 0023 SS = 0023 FS = 0038 GS = 0000 OV=0 UP=0 EI=1 PL=0 ZR=0 AC=0 PE=1 CY=0 66DCE56C = ???????? ST0 = +0.00000000000000000e+0000 ST1 = +0.00000000000000000e+0000 ST2 = -0.03681359785622693e+2629 ST3 = +0.00000000000000000e+0000 ST4 = +0.00000000000000000e+0000 ST5 = +0.00000000000000000e+0000 ST6 = +0.05213458785285492e+3458 ST7 = +2.00000000000000000e+0001 CTRL = 027F STAT = 0120 TAGS = FFFF EIP = 00000000 CS = 0000 DS = 0000 EDO = 00000000 DISASSEMBLER 77F7E1E6 mov cl,dl 77F7E1E8 cmp dl,byte ptr [esi+1] 77F7E1EB jne 77F7AFDE 77F7E1F1 inc eax 77F7E1F2 inc eax 77F7E1F3 inc esi 77F7E1F4 inc esi 77F7E1F5 test cl,cl 77F7E1F7 jne 77F7E1D3 77F7E1F9 xor eax,eax 77F7E1FB xor edx,edx 77F7E1FD mov ecx,eax 77F7E1FF jmp 77F79756 77F7E204 movzx eax,cx 77F7E207 jmp 77F56B26 77F7E20C mov eax,dword ptr [ebp+8] 77F7E20F and word ptr [eax],0 77F7E213 jmp 77F56B4F 77F7E218 and eax,25000064h 77F7E21D add byte ptr fs:[ebx+ecx*4+0Dh],ah 77F7E222 sbb byte ptr [eax],al 77F7E224 add byte ptr [eax],al 77F7E226 mov edx,dword ptr [esp+4] => 77F7E22A cmp dword ptr [edx+14h],0 77F7E22E jne 77F7E27F 77F7E230 lock inc dword ptr [edx+4] 77F7E234 jne 77F7E24F 77F7E236 mov eax,dword ptr [ecx+24h] 77F7E239 mov dword ptr [edx+0Ch],eax 77F7E23C mov dword ptr [edx+8],1 77F7E243 xor eax,eax 77F7E245 ret 4 77F7E248 lea esp,[esp] 77F7E24F mov eax,dword ptr [ecx+24h] 77F7E252 cmp dword ptr [edx+0Ch],eax 77F7E255 jne 77F7E25F 77F7E257 inc dword ptr [edx+8] 77F7E25A xor eax,eax 77F7E25C ret 4 77F7E25F push edx CALLSTACK NTDLL! 77f7e22a() 00800000()