0 Members and 1 Guest are viewing this topic.
Tuluka is a new powerful AntiRootkit, which has the following features:Detects hidden processes, drivers and devicesDetects IRP hooksIdentifies the substitution of certain fields in DRIVER_OBJECT structureChecks driver signaturesDetects and restores SSDT hooksDetects suspicious descriptors in GDTIDT hook detectionSYSENTER hook detectionDisplays list of system threads and allows you to suspend themIAT and Inline hook detectionShows the actual values of the debug registers, even if reading these registers is controlled by someoneAllows you to find the system module by the address within this moduleAllows you to display contents of kernel memory and save it to diskAllows you to dump kernel drivers and main modules of all processesAllows you to terminate any processIs able to dissasemble interrupt and IRP handlers, system services, start routines of system threads and many moreAllows to build the stack for selected deviceMuch more..