1.13.1
This commit is contained in:
parent
1ea25e2bb7
commit
69dc9a18dd
|
@ -9,6 +9,7 @@ This project adheres to [Semantic Versioning](http://semver.org/).
|
||||||
|
|
||||||
### Fixed
|
### Fixed
|
||||||
- added missing checkbox for api tracing
|
- added missing checkbox for api tracing
|
||||||
|
- fixed incompatybility with windows ARM64 insider build 26052 and later
|
||||||
|
|
||||||
### Changed
|
### Changed
|
||||||
- changed DynData format to add flags
|
- changed DynData format to add flags
|
||||||
|
|
|
@ -96,13 +96,33 @@ _FX NTSTATUS Dyndata_InitDefault(PSBIE_DYNDATA* pDefault, ULONG* pDefaultSize)
|
||||||
|
|
||||||
#ifdef _M_ARM64
|
#ifdef _M_ARM64
|
||||||
|
|
||||||
#define DATA_COUNT 2
|
#define DATA_COUNT 3
|
||||||
|
|
||||||
INIT_DATA(IMAGE_FILE_MACHINE_ARM64, DATA_COUNT)
|
INIT_DATA(IMAGE_FILE_MACHINE_ARM64, DATA_COUNT)
|
||||||
|
|
||||||
BEGIN_DATA
|
BEGIN_DATA
|
||||||
|
|
||||||
// todo
|
// 22000+ - ... // W11 - ...
|
||||||
|
Data->OsBuild_max = WIN11_LATEST;
|
||||||
|
Data->OsBuild_min = SVR2025;
|
||||||
|
|
||||||
|
Data->Clipboard_offset = 0x80;
|
||||||
|
|
||||||
|
Data->ImpersonationData_offset = 0x518;
|
||||||
|
|
||||||
|
Data->RestrictedSidCount_offset = 0x80;
|
||||||
|
Data->RestrictedSids_offset = 0xA0;
|
||||||
|
Data->UserAndGroups_offset = 0x98;
|
||||||
|
Data->UserAndGroupCount_offset = 0x7c;
|
||||||
|
|
||||||
|
Data->Flags2_offset = 0x1E0;
|
||||||
|
Data->MitigationFlags_offset = 0xA90;
|
||||||
|
Data->SignatureLevel_offset = 0x938;
|
||||||
|
|
||||||
|
Data->ServiceTable_offset = -1;
|
||||||
|
//
|
||||||
|
|
||||||
|
NEXT_DATA
|
||||||
|
|
||||||
// 22000+ - ... // W11 - ...
|
// 22000+ - ... // W11 - ...
|
||||||
Data->OsBuild_max = 26020;
|
Data->OsBuild_max = 26020;
|
||||||
|
|
|
@ -810,7 +810,7 @@ _FX PROCESS *Process_Create(
|
||||||
// and isseu a security warning MSG_1207
|
// and isseu a security warning MSG_1207
|
||||||
//
|
//
|
||||||
|
|
||||||
if (!Dyndata_Active) {
|
if (!Dyndata_Active && !proc->bAppCompartment) {
|
||||||
|
|
||||||
proc->bAppCompartment = TRUE;
|
proc->bAppCompartment = TRUE;
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue