Exemplo n.º 1
0
def walkEThreads(db, trace, listva):
    for va, obj in vt_winkern.walkListEntryHead(trace, listva, 'nt.ETHREAD',
                                                'ThreadListEntry'):
        yield va, obj
Exemplo n.º 2
0
def walkEThreads(db,trace,listva):
    for va,obj in vt_winkern.walkListEntryHead(trace,listva,'nt.ETHREAD','ThreadListEntry'):
        yield va,obj
Exemplo n.º 3
0
def walkEprocesses(db, trace):
    dbgdata64 = db.getRunCacheVar('KDDEBUGGER_DATA64')
    phead = dbgdata64.PsActiveProcessHead
    for va, obj in vt_winkern.walkListEntryHead(trace, phead, 'nt.EPROCESS',
                                                'ActiveProcessLinks'):
        yield va, obj
Exemplo n.º 4
0
def walkEprocesses(db,trace):
    dbgdata64 = db.getRunCacheVar('KDDEBUGGER_DATA64')
    phead = dbgdata64.PsActiveProcessHead
    for va,obj in vt_winkern.walkListEntryHead(trace,phead,'nt.EPROCESS','ActiveProcessLinks'):
        yield va,obj