Skip to content

Instantly share code, notes, and snippets.

@adeii
Created June 22, 2025 20:36
Show Gist options
  • Select an option

  • Save adeii/f324f3b70842b3f6968e00759b25fe24 to your computer and use it in GitHub Desktop.

Select an option

Save adeii/f324f3b70842b3f6968e00759b25fe24 to your computer and use it in GitHub Desktop.
Chrome 137 x86 pn Win 7
THROME 137.0.7151.120 x86 (trom = sluggish)
-------------------------
chrome.exe
===========
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
55 89 E5 53 57 56 83 EC 18 89 D6 89 CF A1 40 B0 -- 55 89 E5 53 57 56 83 EC 78 89 D6 89 CF A1 40 B0
5D 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 E0 F3 0F -- 5D 00 31 E8 89 45 F0 66 0F 76 C0 8D 45 A0 F3 0F
7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 10 50 FF -- 7F 00 8D 5D DC C7 03 FF FF FF FF 53 6A 20 50 FF
..
83 3B 10 0F 94 C3 20 C3 80 FB 01 75 27 80 7D E0 -- 83 3B 20 0F 94 C3 20 C3 80 FB 01 75 27 80 7D A0
..
89 4D E1 29 D0 83 C0 13 89 47 18 F3 0F 6F 45 E0 -- 89 4D E1 29 D0 83 C0 13 89 47 18 E9 E0 87 07 00
..
83 C4 18 5E 5F 5B 5D C3 CC CC CC CC CC CC CC CC -- 83 C4 78 5E 5F 5B 5D C3 CC CC CC CC CC CC CC CC
E8 5B 26 00 00 8D 8D 44 FF FF FF 84 C0 75 19 E8 -- E8 5B 26 00 00 8D 8D 44 FF FF FF 90 90 EB 19 E8
A6 FC F4 FF 5A 59 FF E0 CC CC CC CC CC CC CC CC
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC --
A6 FC F4 FF 5A 59 FF E0 CC CC CC CC CC CC CC CC
F3 0F 6F 45 A0 F3 0F 7F 06 F3 0F 6F 45 B0 F3 0F
7F 46 10 E9 0C 78 F8 FF CC CC CC CC CC CC CC CC
CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78)
USERENV.dll -> USERENX.dll (hidden, optional)
KERNEL32.dll -> KERNEL64.dll (CFF explorer-Import directory)
-------------------------------------------------------------------------
chrome_proxy.exe
================
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00
(62->78) 620063007200790070
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
chrome_elf.dll
==============
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
62 00 63 00 72 00 79 00 70 00 74 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
chrome.dll
==========
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
FF 7C 93 8D 48 01 83 F9 04 73 04 6A FE EB 80 83 F8 0F 77 0A B9 60 80 00 00 0F A3 C1 72 ED CC 0F --
FF 7C 93 8D 48 01 90 90 90 90 90 6A FE EB 80 83 F8 0F 77 0A B9 60 80 00 00 0F A3 C1 72 ED CC 0F
FF E8 2A 09 87 00 89 85 20 FF FF FF 83 C0 F9 83 F8 06 73 11 83 85 20 FF FF FF FA 31 FF 8B 75 08 --
FF E8 2A 09 87 00 89 85 20 FF FF FF 83 C0 F9 90 90 90 90 90 83 85 20 FF FF FF FA 31 FF 8B 75 08
01 00 00 31 C0 40 50 57
68 0F 00 00 10 50 FF 75 D4 FF 15 D8 7A 52 1C 85 -- 68 0F 00 00 00 50 FF 75 D4 FF 15 D8 7A 52 1C 85
2D 1B 57 FF D1 31 FF 80 7E 18 00 0F 85 11 07 00 00 C7 46 44 00 00 00 00 F6 46 10 01 0F 85 75 08 --
2D 1B 57 FF D1 31 FF 80 7E 18 00 90 90 90 90 90 90 C7 46 44 00 00 00 00 F6 46 10 01 0F 85 75 08
E8 2B CF 01 00 8D 55 08 83 C4 04 84 C0 B8 02 08 00 00 B9 00 09 00 00 0F 45 C8 89 8E 28 01 00 00 --
E8 2B CF 01 00 8D 55 08 83 C4 04 84 C0 B8 02 08 00 00 B9 00 00 00 00 0F 45 C8 89 8E 28 01 00 00
1C 31 E8 89 45 F0 8B 07 F7 47 20 40 00 10 00 0F 85 30 01 00 00 8D 5D 3C 89 45 D4 C7 00 FF FF FF --
1C 31 E8 89 45 F0 8B 07 F7 47 20 40 00 10 00 90 90 90 90 90 90 8D 5D 3C 89 45 D4 C7 00 FF FF FF
0A DC 06 EB E3 83 7F 38 00 0F 85 C6 FE FF FF CC -- 0A DC 06 EB E3 83 7F 38 00 E9 C7 FE FF FF 90 CC
0F 0B FF 33
FF FF E8 09 6A C9 05 EB F1 CC CC CC CC CC CC CC 55 89 E5 53 57 56 50 6A 10 E8 88 F6 6B 02 83 C4 --
FF FF E8 09 6A C9 05 EB F1 CC CC CC CC CC CC CC 31 C0 C3 53 57 56 50 6A 10 E8 88 F6 6B 02 83 C4
0B 00 79 0B FF 75 E4 E8 F4 08 44 02 83 C4 04 83 FF 03 0F 85 8E 00 00 00 8B 4D F0 31 E9 E8 F6 48 --
0B 00 79 0B FF 75 E4 E8 F4 08 44 02 83 C4 04 BF 03 00 00 00 90 90 90 90 8B 4D F0 31 E9 E8 F6 48
85 FF 0F 94 C0 30 C1 BA 02 00 00 00 29 C2 31 C0 84 C9 0F 45 C2 89 44 24 20 53 E8 71 B8 82 FF 83 --
85 FF 0F 94 C0 30 C1 BA 02 00 00 00 29 C2 31 C0 90 90 90 90 90 89 44 24 20 53 E8 71 B8 82 FF 83
C4 04 83 7C 24 20 00 0F 85 94 02 00 00 89 64 24 -- C4 04 83 7C 24 20 00 90 90 90 90 90 90 89 64 24
08 8B 15 40 D0 41 1C 31 EA 89 55 F0 83 F8 01 0F 84 D7 02 00 00 8D 85 66 FF FF FF BE C2 61 56 1B --
08 8B 15 40 D0 41 1C 31 EA 89 55 F0 83 F8 01 E9 D8 02 00 00 90 8D 85 66 FF FF FF BE C2 61 56 1B
15 8B 00 80 78 64 01 74 04 31 C0 EB 07 83 78 60
01 0F 94 C0 5D C3 0F 0B CC CC CC CC CC CC CC CC 55 89 E5 53 57 56 83 E4 F0 81 EC 60 02 00 00 A1 --
01 0F 94 C0 5D C3 0F 0B CC CC CC CC CC CC CC CC 31 C0 C2 04 00 56 83 E4 F0 81 EC 60 02 00 00 A1
55 89 E5 53 57 56 83 E4 F0 81 EC 60 02 00 00 A1
C1 83 F9 04 76 09 8B 44 08 F8 8A 40 5C 5D C3 CC 0F 0B CC CC CC CC CC CC CC CC CC CC CC CC CC CC --
C1 83 F9 04 76 09 8B 44 08 F8 8A 40 5C 5D C3 B9 07 00 00 00 EB F0 CC CC CC CC CC CC CC CC CC CC
D0 41 1C 31 E8 89 44 24 28 E8 52 FD FF FF 83 F8 02 0F 85 29 01 00 00 8D 7C 24 24 C7 07 04 00 00 --
D0 41 1C 31 E8 89 44 24 28 E8 52 FD FF FF 90 90 90 90 90 90 90 90 90 8D 7C 24 24 C7 07 04 00 00
.. (x7)
83 F8 02 0F 85 AD 00 00 00 89 F1 BA FF FF 00 80 EB D1 E8 B9 FC FF FF 83 F8 02 0F 85 99 00 00 00 --
90 90 90 90 90 90 90 90 90 89 F1 BA FF FF 00 80 EB D1 E8 B9 FC FF FF 90 90 90 90 90 90 90 90 90
00 CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC 55 89 E5 53 57 56 83 E4 F8 81 EC C0 00 00 00 89 --
00 CC CC CC CC CC CC CC CC CC CC CC CC CC CC CC B8 01 00 00 00 C2 04 00 90 81 EC C0 00 00 00 89
CE A1 40 D0 41 1C 31 E8 89 84 24 B8 00 00 00 E8 1C FB FF FF 83 F8 02 0F 85 45 01 00 00 8B 7D 08 --
CE A1 40 D0 41 1C 31 E8 89 84 24 B8 00 00 00 E8 1C FB FF FF 83 F8 02 90 90 90 90 90 90 8B 7D 08
41 1C 31 E8 89 45 F0 E8 A4 F9 FF FF 83 F8 02 0F 85 2B 01 00 00 89 75 C8 8B 77 48 85 F6 74 15 C7 --
41 1C 31 E8 89 45 F0 E8 A4 F9 FF FF 90 90 90 90 90 90 90 90 90 89 75 C8 8B 77 48 85 F6 74 15 C7
01 00 00 E8 38 F8 FF FF 83 F8 02 0F 85 A3 03 00 00 31 C0 48 8D BC 24 30 01 00 00 89 47 04 89 07 --
01 00 00 E8 38 F8 FF FF 90 90 90 90 90 90 90 90 90 31 C0 48 8D BC 24 30 01 00 00 89 47 04 89 07
41 1C 31 E8 89 45 F0 E8 64 F4 FF FF 83 F8 02 0F 85 D3 00 00 00 89 D9 E8 F4 06 00 00 8D 55 EC C7 --
41 1C 31 E8 89 45 F0 E8 64 F4 FF FF 90 90 90 90 90 90 90 90 90 89 D9 E8 F4 06 00 00 8D 55 EC C7
.. (x13)
55 89 E5 56 89 CE E8 75 F3 FF FF 83 F8 02 75 12 89 F1 E8 A9 03 00 00 89 F1 89 C2 5E 5D E9 FE FA --
55 89 E5 56 89 CE E8 75 F3 FF FF 90 90 90 90 90 89 F1 E8 A9 03 00 00 89 F1 89 C2 5E 5D E9 FE FA
E8 89 45 F4 E8 37 F3 FF FF 83 F8 02 75 31 8D 4E 4C 8D 55 F0 E8 A7 04 00 00 89 C7 85 C0 78 07 8B --
E8 89 45 F4 E8 37 F3 FF FF 90 90 90 90 90 8D 4E 4C 8D 55 F0 E8 A7 04 00 00 89 C7 85 C0 78 07 8B
.. (x3) CC CC CC
55 89 E5 53 56 89 CE E8 E4 F2 FF FF 83 F8 02 75 21 89 F1 E8 F8 04 00 00 89 C3 84 C0 75 06 89 D8 --
55 89 E5 53 56 89 CE E8 E4 F2 FF FF 90 90 90 90 90 89 F1 E8 F8 04 00 00 89 C3 84 C0 75 06 89 D8
.. (x3)
E8 89 45 F4 E8 97 F2 FF FF 83 F8 02 75 63 8D 4E 4C 8D 55 F0 E8 07 04 00 00 31 DB 85 C0 78 34 8B --
E8 89 45 F4 E8 97 F2 FF FF 90 90 90 90 90 8D 4E 4C 8D 55 F0 E8 07 04 00 00 31 DB 85 C0 78 34 8B
D0 41 1C 31 E8 89 44 24 38 E8 02 F2 FF FF 83 F8 02 0F 85 1F 01 00 00 8B 0D A0 67 46 1C FF 15 B0 --
D0 41 1C 31 E8 89 44 24 38 E8 02 F2 FF FF 90 90 90 90 90 90 90 90 90 8B 0D A0 67 46 1C FF 15 B0
D0 41 1C 31 E8 89 44 24 48 E8 A2 EF FF FF 83 F8 02 0F 85 10 01 00 00 8B 7E 4C 8B 07 8B 48 24 FF --
D0 41 1C 31 E8 89 44 24 48 E8 A2 EF FF FF 90 90 90 90 90 90 90 90 90 8B 7E 4C 8B 07 8B 48 24 FF
D0 41 1C 31 E8 89 44 24 08 E8 C2 ED FF FF 83 F8 02 75 4D 8B 0D A0 67 46 1C FF 15 B0 F8 40 1C 89 --
D0 41 1C 31 E8 89 44 24 08 E8 C2 ED FF FF 90 90 90 90 90 8B 0D A0 67 46 1C FF 15 B0 F8 40 1C 89
.. (x6)
D0 41 1C 31 E8 89 44 24 20 E8 42 ED FF FF 83 F8 02 0F 85 AD 00 00 00 89 34 24 83 7E 48 00 0F 84 --
D0 41 1C 31 E8 89 44 24 20 E8 42 ED FF FF 90 90 90 90 90 90 90 90 90 89 34 24 83 7E 48 00 0F 84
41 1C 31 E8 89 45 F0 E8 64 EC FF FF 83 F8 02 0F 85 4C 01 00 00 89 75 C8 8B 77 48 85 F6 0F 84 41 01 00 00 31 --
41 1C 31 E8 89 45 F0 E8 64 EC FF FF 90 90 90 90 90 90 90 90 90 89 75 C8 8B 77 48 85 F6 0F 84 41 01 00 00 31
41 1C 31 E8 89 45 F0 E8 E4 EA FF FF 83 F8 02 0F 85 1D 01 00 00 31 DB 8D 45 D4 89 18 89 58 04 89 --
41 1C 31 E8 89 45 F0 E8 E4 EA FF FF 90 90 90 90 90 90 90 90 90 31 DB 8D 45 D4 89 18 89 58 04 89
04 EB 86 8D 55 E0 8B 4D 08 E8 B2 EF DA FB EB E0 55 89 E5 53 57 56 83 EC 40 89 55 B8 89 4D B4 A1 --
04 EB 86 8D 55 E0 8B 4D 08 E8 B2 EF DA FB EB E0 31 C0 C3 53 57 56 83 EC 40 89 55 B8 89 4D B4 A1
40 D0 41 1C 31 E8 89 45 F0 E8 32 E8 FF FF 83 F8 02 0F 85 CB 01 00 00 31 C0 48 8D 75 E4 89 06 89 --
40 D0 41 1C 31 E8 89 45 F0 E8 32 E8 FF FF 90 90 90 90 90 90 90 90 90 31 C0 48 8D 75 E4 89 06 89
C3 41 1B 9A BB D3 6A 46 87 FC FE 67 55 6A 3B 65 -> 5A EE 59 B8 38 D8 5B 4B A2 E8 1A DC 7D 93 DB 48
sec-ch-device-memory sec-ch-dpr sec-ch-prefers-color-scheme sec-ch-prefers-reduced-motion sec-ch-prefers-reduced-transparency sec-ch-ua sec-ch-ua-arch sec-ch-ua-bitness sec-ch-ua-form-factors sec-ch-ua-full-version sec-ch-ua-full-version-list sec-ch-ua-mobile sec-ch-ua-model sec-ch-ua-platform sec-ch-ua-platform-version sec-ch-ua-wow64 sec-session-registration -->
xec-ch-device-memory xec-ch-dpr xec-ch-prefers-color-scheme xec-ch-prefers-reduced-motion xec-ch-prefers-reduced-transparency xec-ch-ua xec-ch-ua-arch xec-ch-ua-bitness xec-ch-ua-form-factors xec-ch-ua-full-version xec-ch-ua-full-version-list xec-ch-ua-mobile xec-ch-ua-model xec-ch-ua-platform xec-ch-ua-platform-version�xec-ch-ua-wow64 xec-session-registration
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden) 62 00 63 00 72 00 79 00 70 00 74 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 (62->78)
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
X-Client-Data --> MRKPRCGUGLEE
bcryptprimitives.dll -> xcryptprimitives.dll (hidden)
user32.dll -> user64.dll (hidden)
mfplat.dll -> xfplat.dll (hidden)
netapi32.dll -> netapi64.dll (hidden)
kernel32.dll -> kernel64.dll
userenv.dll -> userenx.dll
winhttp.dll -> winxttp.dll
-------------------------------------------------------------------------
chrome_wer.exe
=======================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
-------------------------------------------------------------------------
chrome_pwa_launcher.exe
=======================
B8- Major Subsystem --> 06
C0- Major Subsystem --> 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78)
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
notification_helper.exe
=======================
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-------------------------------------------------------------------------
widevinecdm.dll
===============
b8: 06
C0: 06
110-Security Directory RVA / Size --> 00000000
b.c.r.y.p.t... -> x.c.r.y.p.t... (hidden)
62 00 63 00 72 00 79 00 70 00 74 00 70 00 -> 78 00 63 00 72 00 79 00 70 00 74 00 70 00 (62->78) x2
KERNEL32.dll -> KERNEL64.dll
-----------------------------------------------------------------
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment