Win / KotakuInAction2
KotakuInAction2
Communities Topics Log In Sign Up
Sign In
Hot
All Posts
Settings
All
Profile
Saved
Upvoted
Hidden
Messages

Your Communities

General
AskWin
Funny
Technology
Animals
Sports
Gaming
DIY
Health
Positive
Privacy
News
Changelogs

More Communities

frenworld
OhTwitter
MillionDollarExtreme
NoNewNormal
Ladies
Conspiracies
GreatAwakening
IP2Always
GameDev
ParallelSociety
Privacy Policy
Terms of Service
Content Policy
DEFAULT COMMUNITIES • All General AskWin Funny Technology Animals Sports Gaming DIY Health Positive Privacy
KotakuInAction2 The Official Gamergate Forum
hot new rising top

Sign In or Create an Account

24
posted 2 years ago by Lethn 2 years ago by Lethn +24 / -0
28 comments share
28 comments share save hide report block hide replies
You're viewing a single comment thread. View all comments, or full comment thread.
Comments (28)
sorted by:
▲ 5 ▼
– NotCreativeName 5 points 2 years ago +5 / -0

I kept wondering if people were being hyperbolic

Well vgk.sys(the vanguard driver) according to the PE header does import(which means the code calls at some point) KeBugCheck which is the function Windows or a driver can call to cause the BSOD when shit is FUBAR(or the driver is misbehaving in case of Windows calling it), so the hyperbole is not entierly unbelievable.

Other suspicious(no I don't call it a spyware since there are legitimate uses for drivers to call these APIs such as logging, but crypto stuff is a bit more suspicious) stuff I can see is ZwReadFile and ZwWriteFile which are the file reading/writing APIs, and BCryptDestroyHash+BCryptCloseAlgorithmProvider which are used to free encrypted data from memory and close the handle to the encryption engine but those don't make much sense since the counterpart open functions are missing from the import table. But again Windows programs and drivers can load DLLs and import functions at runtime so maybe they're used(or functions for malicious stuff that I can't see through the PE import/export table) just not obviously.

Though to see when and how I would need to fully reverse engineer the driver which I totally won't do because of the layers of obfuscation. Maybe someone autistic enough will do the reverse engineering for us to see how much of a spyware it is(or isn't)

permalink parent save report block reply

Original 8chan Links to Gamer Gate:

.

The main GG discussion is on the videogames board: https://8chan.moe/v/

.

GamerGate archive is at https://8chan.moe/gamergatehq/

.

GamerGate Wiki:

https://ggwiki.deepfreeze.it/index.php/Main_Page

. . . . . .

. . . . . .

Rules:

.

ONE: Do not advocate for illegal violence or post other illegal activity. (Be aware of your local laws.)

.

TWO: Don't threaten, harass, or impersonate users. Also: don't be a psycho. New users will be held to a higher standard.

.

THREE: Do not post porn.

.

FOUR: NSFW/NSFL content must be flaired NSFW.

.

FIVE: No vote manipulation. Do not break communities.win's features.

.

SIX: No spam or reposts. Do not make more than 5 threads a day.

.

SEVEN: Do not post falsehoods and hoaxes that are obvious to an uncontroversial degree.

. . . . . .

. . . . . .

Moderation Logs:

.

(Two different versions, Scored has more features and is cleaner, but .win let's you see a few more details in certain instances.)

  • Scored
  • .win

Moderators

  • DomitiusOfMassilia
  • C
  • BandageBandolier
  • CarmenOfSandiego
  • The_Shadow_of_Intent
  • SocraticMethod1
  • Kienan
  • Smith1980
Message the Moderators

Terms of Service | Privacy Policy

2026.02.01 - whmbz (status)

Copyright © 2026.

Terms of Service | Privacy Policy