if you have please share. I interested in
NDIS pdb's for
Windows 8 (9200)
Windows 10 TH1 (10240) - found
Windows 10 TH2 (10586) - found
Windows 10 RS2 (15063) - found
Windows 10 RS3 (16299) - found
Windows 10 RS4 (17134) - found
v1.7.4 added software licensing cache view (extras) resolve apisets while viewing shadow table in Windows 10 20H1 >= 18890 builds fix displaying sid user/domain information for private namespaces added refresh (f5) for private namespace dialog v1.7.3 threads list in processes dialog view file proper...
Author didn't updated it for a few years as well as didn't visited this place. You can guess that answer is - nowhere.
Try this viewtopic.php?f=11&t=5316 relatively fresh.
I don't have any script. If this API fails then look on GetLastError result value after failed call.
If VirtualAlloc params is what you supplied then it is invalid call due to Protect flag you set to 0. If you want to execute something it should be at least PAGE_EXECUTE_READWRITE assuming you will do Read/Write to that region next.
Read http://www.kernelmode.info/forum/viewto ... =20&t=1950 next time and use search viewtopic.php?f=16&t=4389&p=28676&hilit=W97M#p28676.