Build v1.4.0
This build updates the PH Library to 3.0.4365 and adds fixes various minor bugs.
Important Note:
The driver is now only test signed as the leaked certificate was blacklisted in the windows kernel, hence you need to enable test mode to use all of the features.
You can donate via paypal at https://xanasoft.com/ or patreon https://www.patreon.com/DavidXanatos
ChangeLog
Added
- added sandboxie tab with a lot of sandboxie related details
- added option to freeze and unfreeze entire jobs
- added "Original Impersonation Token" menu command to inspect the impersonation token of sandboxed thread
- added rpc view listing all rpc endpoints on the system
- added windows 11 detection
Changed
- replaced all icons
- updated PHlib to version 3.0.4365
Fixed
- fixed issue resolving kernel symbols introduced with 1.3