Files
volatility3/volatility3/framework/constants/windows/__init__.py
T
Donghyun KimandGitHub 7c238f93a0 Update __init__.py
Correcting typos for Windows Constants
2022-01-31 20:15:39 +09:00

11 lines
433 B
Python

# This file is Copyright 2019 Volatility Foundation and licensed under the Volatility Software License 1.0
# which is available at https://www.volatilityfoundation.org/license/vsl-v1.0
#
"""Volatility 3 Windows Constants.
Windows-specific values that aren't found in debug symbols
"""
KERNEL_MODULE_NAMES = ["ntkrnlmp", "ntkrnlpa", "ntkrpamp", "ntoskrnl"]
"""The list of names that kernel modules can have within the windows OS"""