mirror of
https://github.com/wavestone-cdt/EDRSandblast.git
synced 2026-06-08 16:37:12 +00:00
48a75a7029
Co-authored-by: Maxime Meignan <maxime.meignan@wavestone.com>
8 lines
232 B
C
8 lines
232 B
C
#pragma once
|
|
#include <Windows.h>
|
|
|
|
DWORD64 FindNtoskrnlBaseAddress(void);
|
|
TCHAR* FindDriverName(DWORD64 address, _Out_opt_ PDWORD64 offset);
|
|
TCHAR* FindDriverPath(DWORD64 address);
|
|
DWORD64 GetKernelFunctionAddress(LPCSTR function);
|