Author Topic: Worried about output in antirootkit section of RogueKiller  (Read 3740 times)

0 Members and 2 Guests are viewing this topic.

November 13, 2015, 05:21:00 PM

explorer1

  • Newbie

  • Offline
  • *

  • 1
  • Reputation:
    0
    • View Profile
Worried about output in antirootkit section of RogueKiller
« on: November 13, 2015, 05:21:00 PM »
Hi, RogueKiller flags the following two items in orange in the antirootkit section

shwSSDT:Addr (Hook.Shadow) 585 NtUserSetWindowsHookEx unknown unknown 0x89d288c6

shwSSDT:Addr (Hook.Shadow) 588 NtUserSetWinEventHook unknown unknown 0x89d288cb
 
what are these and should I be concerned or should I ignore them.  Also, where can I find more documentation on how to use and interpret RogueKiller...

Thanks!

Reply #1November 16, 2015, 06:16:57 PM

Curson

  • Global Moderator
  • Hero Member

  • Offline
  • *****

  • 2809
  • Reputation:
    100
    • View Profile
Re: Worried about output in antirootkit section of RogueKiller
« Reply #1 on: November 16, 2015, 06:16:57 PM »
Hi explorer1,

Welcome to Adlice.com Forum.
These are probably harmless.

Could you please copy/paste RogueKiller full report in you next reply ?
For more information about the program, please read RogueKiller official tutorial.

Regards.

Note : This thread has been moved to the "RogueKiller" section for clarity.