SSDT rootkits


Hi guys,
I am doing some R&D on SSDT rootkits. Can you plz help me in finding such rootkits?
Tell me any site or provide me some samples.


Common rootkits

You should check out the examples from the Rootkits book. From there check out fuzen by Jamie Butler. I believe that one has lots of SSDT examples.

Fuzen (fu & futo) don't have SSDT hooks, they do DKOM (direct kernel object manipulation). Look at rootkits such as Hacker Defender