I assume many people know what deepfreeze is,
Now some guy bypassed it allowing the pc to boot unprotected.
It reads some data from the deepfreeze procces kernel32.readproccesmemory,
How can i figure out what data it reads i tryed to simply use a debuger and just watch step by step what happens but when u set a breakpoint and start it then olly will say status: terminated program will run but doesnt break also tryed with IDA.
Anyone have an idea?