Netexpert FAQ 网络分析专家学习建议入口 @netexpert成员申请指南
网络分析时代 netexpert积分规则的说明 Netis招贤纳士(2008年11月22日更新)
发新话题
打印

skype 在windows 下反跟踪分析续2

本主题由 scz 于 2008-6-16 09:38 解除置顶

skype 在windows 下反跟踪分析续2

在softice可以看到这些你在windows里看不到的信息

(!) DisableFirewall: 没有注册类别ListControl.FocusChanged handler took 13 msPERF
NTICE: Load32 START=773D0000  SIZE=13000  KPEB=85BE2960  MOD=msacm32
NTICE: Load32 START=B8E0000  SIZE=13000  KPEB=85BE2960  MOD=IPHLPAPI
NTICE: Load32 START=77320000  SIZE=19000  KPEB=85BE2960  MOD=DHCPCSVC
(!) DisableFirewall: 没有注册类别ListControl.FocusChanged handler took 13 msPERF
NTICE: Load32 START=773D0000  SIZE=13000  KPEB=85BE2960  MOD=msacm32
NTICE: Load32 START=B8E0000  SIZE=13000  KPEB=85BE2960  MOD=IPHLPAPI
NTICE: Load32 START=77320000  SIZE=19000  KPEB=85BE2960  MOD=DHCPCSVC
NTICE: Load32 START=777A0000  SIZE=8000  KPEB=85BE2960  MOD=winrnr
NTICE: Load32 START=777B0000  SIZE=5000  KPEB=85BE2960  MOD=rasadhlp
_WARNING: Login took 1 s[08:46:20] Invoking CheckAPIClient[08:46:20] Client atta
ched, hwnd = 918102, name = E:\临时杂的目录\Phone\ContentFilter.exe[08:46:20] In
voking CheckAPIClient[08:46:20] Client attached, hwnd = 67726, name = E:\临时杂?
哪柯糪Phone\ContentFilter.exe[08:46:20] OUT>CONNSTATUS CONNECTING (0 ms)[08:46:2
0] OUT>CURRENTUSERHANDLE ridehm_tom (0 ms)[08:46:20] OUT>USERSTATUS OFFLINE (0 m
s)[08:46:20] IN>PROTOCOL 5[08:46:20] Invoking CheckAPIClient[08:46:20] Client at
tached, hwnd = 262996, name = E:\临时杂的目录\Phone\ContentFilter.exe[08:46:20]
OUT>USERSTATUS OFFLINE (0 ms)[08:46:20] IN>PROTOCOL 5[08:46:20] OUT>PROTOCOL 5 (
62 ms)[08:46:20] IN>FILTERING ON[08:46:20] OUT>FILTERING ON (16 ms)[08:46:20] IN
>PROTOCOL 5[08:46:20] OUT>PROTOCOL 5 (16 ms)[08:46:20] IN>FILTERING ON[08:46:20]
OUT>FILTERING ON (0 ms)[08:46:20] OUT>PROTOCOL 5 (0 ms)[08:46:20] IN>FILTERING
ON[08:46:20] OUT>FILTERING ON (0 ms)[08:46:20] IN>PROTOCOL 5[08:46:20] IN>PROTOC
OL 5[08:46:20] OUT>PROTOCOL 5 (0 ms)[08:46:20] IN>FILTERING ON[08:46:20] OUT>FIL
TERING ON (0 ms)[08:46:20] OUT>PROTOCOL 5 (0 ms)[08:46:20] IN>FILTERING ON[08:46
:20] OUT>FILTERING ON (0 ms)[08:46:20] IN>PROTOCOL 5[08:46:20] OUT>PROTOCOL 5 (0
NTICE: Load32 START=63580000  SIZE=29E000  KPEB=85BE2960  MOD=MSHTML
本帖最近评分记录
  • scz 威望 +10 发言有意义 2006-4-13 18:56

TOP

楼主辛苦了

要顶的啊,楼主辛苦了,谢谢

---------------
WOrld of warcraft Power Leveling bloom of true love associated with this time of year!
有个小子玩WoW Power Leveling,买WoW Power Leveling,卖WoW Power Leveling,拉朋友也玩WoW Power Leveling,玩WoW Power Leveling也真有点名堂!

TOP

发新话题
版块跳转