Description
ARKit - Rootkit Detection Library
ARKit is an open-source rootkit detection library developed by Swatkat Thinkdigit. It consists of two main components:
Key Features:
- ARKitLib.lib: A Win32/C++ static library with methods to scan and detect rootkits
- ARKitDrv.sys: A device driver implementing rootkit detection methods
Detection Methods:
- PID brute force: PsLookupProcessByProcessId
- TID brute force: PsLookupThreadByThreadId
- Handle table traversing: NtQuerySystemInformation
- DLL detection methods: InMemoryOrderModuleList traversal, VAD tree walking
- Process termination methods: NtTerminateProcess/ZwTerminateProcess, NtTerminateThread/ZwTerminateThread
- Driver detection methods: PsLoadedModuleList traversing, \Driver\ directory traversal, \Device\ directory traversal
Usage:
Using ARKit is straightforward:
- Include ARKitLib.h and ARKitDefines.h in your application source
- Link to ARKitLib.lib and Psapi.lib
- Instantiate an object of ARKitLib class for system data gathering
- Ensure ARKitDrv.sys driver is in the application directory during runtime
ARKit offers a reliable solution for detecting rootkits and ensuring system security. Download ARKit for free from SoftPas and enhance your system's security today.
Tags:
User Reviews for ARKit 7
-
ARKit provides powerful rootkit detection capabilities through its easy-to-use library and driver. A must-have for system security.
-
ARKit is an incredible tool for detecting rootkits! It's user-friendly and effective. Highly recommend!
-
I love how easy ARKit makes rootkit detection! The methods are robust, and it's open-source. Five stars!
-
ARKit has been a game changer for my system security! The documentation is clear, and it works flawlessly.
-
Fantastic app for rootkit detection! Simple to integrate and very effective at keeping my system safe.
-
ARKit is a must-have for anyone concerned about system security. It’s efficient and straightforward to use!
-
This app is amazing! ARKit provides powerful tools for rootkit detection, and the setup process is seamless.