-
Enumerate processes.
-
Enumerate process's loaded modules.
-
Enumerate process's running threads.
-
Enumerate process's openning handles.
-
Enumerate process's openning windows.
-
Enumerate process's userspace memory.
-
Terminate a process (by force).
-
Enumerate current loaded drivers.
-
Unload target driver.
-
Enumerate system callbacks.
-
Enumerate filter drivers.
-
Enumerate timer object (IOTimer/ DpcTimer).
- Now, just support ssdthookcheck & sssdthook check, it will support inline hook check in the future.