Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Unsolved! The Kernel Code Injection in Vista?


  • This topic is locked This topic is locked

#1
xQ7LSH4Fg

xQ7LSH4Fg

    New Member

  • Member
  • Pip
  • 6 posts
I wonder if any of the gurus/admins can shed of their knowledge on GMER log, especially the "_PAGELK". (using Vista 32-bit). Thanx in advance.

---- Kernel code sections - GMER 1.0.14 ----

.text ntkrnlpa.exe!ZwQueryLicenseValue + D41 | 8186ABB9 1 Byte [ 06 ]
.text ntkrnlpa.exe!KeSetTimerEx + 350 | 818CB9A4 8 Bytes [ 08, 80, 3A, 87, 08, 01, 91, ... ]
.text ntkrnlpa.exe!KeSetTimerEx + 364 | 818CB9B8 4 Bytes [ C0, 0A, 91, 86 ]
.text ntkrnlpa.exe!KeSetTimerEx + 3F4 | 818CBA48 4 Bytes [ 68, 41, 90, 86 ]
.text ntkrnlpa.exe!KeSetTimerEx + 428 | 818CBA7C 4 Bytes [ B8, 8D, 3A, 87 ]
.text ntkrnlpa.exe!KeSetTimerEx + 454 | 818CBAA8 4 Bytes [ 58, D1, 3A, 87 ]
.text ... C:\Windows\system32\ntkrnlpa.exe entry point in "_PAGELK" section [0x818FF4B0]
  • 0

Advertisements


#2
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Please do not make multiple topics
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP