Hello,
I've bsods my computer. Bsods came from ntoskrnl.exe file. There is a
little information ntoskrnl.exe in wiki: h++p://en.wikipedia.org/wiki/Windows_NT_kernel
I've seen an interesting situation and want to clarify if you have this situation or not.
Download the XueTr:
h++p://xuetr.com/download/XueTr.zip
h++p://imageshack.us/photo/my-images/811/54282407.png
At Kernel Module section, right click the ntoskrnl.exe file and click
dump memory section,when dumping of ntoskrnl.exe done.
h++p://technet.microsoft.com/en-us/sysinternals/bb897439
Download the strings program.
and lets execute this command at dmp file.
strings ntoskrnl.exe.dmp > ntoskrnl.exe.dmp.txt
At the end of ntoskrnl.exe.dmp.txt file we'll see some strings that
we entered search at google and web addresses that we entered the browser.
Is it normal to see these strings in ntoskrnl.exe dump?
or is it a malware that infects the ntoskrnl.exe?
Thanks in advance.
I've bsods my computer. Bsods came from ntoskrnl.exe file. There is a
little information ntoskrnl.exe in wiki: h++p://en.wikipedia.org/wiki/Windows_NT_kernel
I've seen an interesting situation and want to clarify if you have this situation or not.
Download the XueTr:
h++p://xuetr.com/download/XueTr.zip
h++p://imageshack.us/photo/my-images/811/54282407.png
At Kernel Module section, right click the ntoskrnl.exe file and click
dump memory section,when dumping of ntoskrnl.exe done.
h++p://technet.microsoft.com/en-us/sysinternals/bb897439
Download the strings program.
and lets execute this command at dmp file.
strings ntoskrnl.exe.dmp > ntoskrnl.exe.dmp.txt
At the end of ntoskrnl.exe.dmp.txt file we'll see some strings that
we entered search at google and web addresses that we entered the browser.
Is it normal to see these strings in ntoskrnl.exe dump?
or is it a malware that infects the ntoskrnl.exe?
Thanks in advance.