var count var cbase var boop var tmpbp var tmpseh var i gmi eip, CODEBASE mov cbase, $RESULT log cbase var csize gmi eip, CODESIZE mov csize, $RESULT log csize mov count, 0 eoe expt chk: run jmp chk expt: inc i log i cmp i, af jne asd ret asd: mov count, esp mov tmpseh, [count] cmp tmpseh, 12e000 jb nval cmp tmpseh, 12fffc ja nval add count, 4 sbp: mov tmpbp, [count] bp tmpbp esto find eip, #3d00000e00# go $RESULT sti mov !cf, 1 bc tmpbp jmp chk nval: add count, 24 jmp sbp jmp chk