Skip to content

H4Security/SSDTFinder

Repository files navigation

SSDTFinder

During the course of windows internal, I wonder how we can do a live response on the kernel level. I start with a small trick to print the SSDT functions, the code have been modified and collected from different resources. I don't remember them, but thanks for all open source communities :) the code based on MemProcFS ; https://github.com/ufrisk/MemProcFS

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published