Wednesday, September 01, 2010

ARKit updates

Few updates on ARKit library! Following functionalities have been added to the library:
  • VAD tree traversal to find images loaded by a process
  • SSDT hook restoration
  • Kernel inline hook restoration
  • Process detection by scanning Handle Table
  • Process termination using NtTerminateProcess and NtTerminateThread
Get the source code here.

0 Comments:

Post a Comment

<< Home