Category : api-hook

I have written a simple test code that injects my hooking dll to some of Windows applications(explorer.exe, notepad.exe etc.) and in the target processes, I hooked Win32 API functions like CopyFileEx, CreateFile using EasyHook library. In my hooking function for instance Hooked_CopyFileExW, I need to send an event message (contains source file path, pid of ..

Read more

Windows API hooking using Detours Can someone please provide me a C++ code that uses MS Detours to hook a CreateProcess() function only when it is called with a CREATE_SUSPENDED flag. CreateProcess(NULL, // No module name (use command line) argv[1], // Command line NULL, // Process handle not inheritable NULL, // Thread handle not inheritable ..

Read more