A forum for reverse engineering, OS internals and malware analysis 

Forum for announcements and questions about tools and software.
 #23244  by rnd.usr
 Sun Jun 29, 2014 3:18 pm
Antispy is really handy! Easy to find SSDT-hooks, but the dissasembler is no good so WinDBG takes over.

Anyway, I think ADS is fixed in 2.2? I had a malware that was using ADS and I tried to copy the file but it returned an error, this was in version 2.1 tho.
Can you also add more hooks, like vtable?
An option that redirects all newly created files to a specific folder?(BSA do this, but does not work in most cases)
A better disassembler?
Option to show dead process?

Thx!