I've read https://github.com/xoreaxeaxeax/sinkhole/blob/master/sinkhole.asm and 
it depends on wrmsr being usable with ecx = MSR_IA32_APICBASE. It
looks like xen will reject this call even if made by the dom0. Is that correct?

Thanks, Sarah

