[<prev] [next>] [day] [month] [year] [list]
Message-ID: <42FF1EED.8020603@gmail.com>
Date: Sun, 14 Aug 2005 12:37:33 +0200
From: Piotr Bania <bania.piotr@...il.com>
To: SBUGTRAQ <bugtraq@...urityfocus.com>,
FULLDISC <full-disclosure@...ts.grok.org.uk>
Subject: (TOOL ANNOUNCEMENT) Efilter - automatic exception
reporting utility
Hi,
"...
Info
----
Efilter is an automatic exception reporting utility. It is very useful
and handy while doing vulnerability research on any software designed
to work under Windows NT platforms. Due to that it hooks
KiUserExceptionDispatcher function, it acts BEFORE any of program's
active SEH frames take over the exception. In short words it reports
programs exceptions even if they are handled by original program.
Here is some sample screenshot:
- http://pb.specialised.info/all/efilter/efilter.jpg
Since it uses debug messages it requires DebugView utility to show
output messages. (download from: http://www.sysinternals.com)
Usage
-----
Just attach efilter.dll library to target process.
You can obtain binary version of the library here:
- http://pb.specialised.info/all/efilter/efilter.dll
..."
Binary:
- http://pb.specialised.info/all/efilter/efilter.dll
Source:
- http://pb.specialised.info/all/efilter/efilter.c
best regards,
Piotr Bania
--
--------------------------------------------------------------------
Piotr Bania - <bania.piotr@...il.com> - 0xCD, 0x19
Fingerprint: 413E 51C7 912E 3D4E A62A BFA4 1FF6 689F BE43 AC33
http://pb.specialised.info - Key ID: 0xBE43AC33
--------------------------------------------------------------------
" Dinanzi a me non fuor cose create
se non etterne, e io etterno duro.
Lasciate ogne speranza, voi ch'intrate "
- Dante, Inferno Canto III
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists