Posted January 22, 201114 yr Here are the slides to my talk "Hunting rootkits with Windbg" at the Ruhr University of Bochum yesterday. I'll introduce several ways to find well known rootkits like Rustock or TDL Versions 3+4 with Windbg and scripts. Enjoy!PaperThe Windbg script shown in the slides to grab Kernelcallbacks can be found here:Windbg Script Edited January 22, 201114 yr by frank_boldewin
Create an account or sign in to comment