nt_major_version = 4 nt_minor_version = 0 nt_build_number = 1381 arch = 'X86' [offsets] list_blink = 4 eproc_link = 0x98 kproc_dtb = 0x18 eproc_pid = 0x94 eproc_name = 0x1dc eproc_peb = 0x18c eproc_section_base = 0x190 eproc_exit_status = 0 #5.1+ eproc_thread_list = 0 #5.1+ eproc_wow64 = 0 #5.0+ kthread_teb = 0 #6.2+ ethread_list_entry = 0x0 #5.0+ teb_peb = 0 #? teb_peb_x86 = 0 #?