Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - explorer1

Pages: [1]
1
RogueKiller / Worried about output in antirootkit section of RogueKiller
« on: November 13, 2015, 05:21:00 PM »
Hi, RogueKiller flags the following two items in orange in the antirootkit section

shwSSDT:Addr (Hook.Shadow) 585 NtUserSetWindowsHookEx unknown unknown 0x89d288c6

shwSSDT:Addr (Hook.Shadow) 588 NtUserSetWinEventHook unknown unknown 0x89d288cb
 
what are these and should I be concerned or should I ignore them.  Also, where can I find more documentation on how to use and interpret RogueKiller...

Thanks!

Pages: [1]