Debugging with VMWare

I normally use Windows Virtual PC for demos of Kernel debug scenarios. For a special occasion I needed to use VMWare. There are plenty of articles how to set it up and it is almost identical to Virtual PC. You basically connect over COM1 through a named pipe. But after hours of struggling I could…

0

ProcExp and XPerf tracing

I was trying to run some XPerf traces to prepare for a training, when it all of a sudden stopped working. The error I got was this: xperf: error: NT Kernel Logger: Cannot create a file when that file already exists. (0xb7). Weird because I ran the same command successfully multiple times before. Trying to…

6

NX dependency on PAE

Hardware supported NX is dependent on PAE (Windows Internals chapter 9. Memory). But why would that be? The AMD64 Architecture Programmer’s Manual (Volume 2: System Programming) mentions this: No Execute (NX) Bit. Bit 63. This bit is present in the translation-table entries defined for PAE paging, with the exception that the legacy-mode PDPE does not…

0