ImageSelfPatchRange

final class ntoseye.ImageSelfPatchRange

Subclass of BaseRecord.

A contiguous RVA range that ntoseye identifies as one kind of kernel self-patch.

property end: int

The end, exclusive.

property function: str | None

The function that contains the patch, if a symbol covers it.

property kind: str

import optimization, retpoline, KiPatchSelf/JMP thunk, or kernel VA region rebase.

property size: int

The size in bytes.

property start: int