Hi all,

How to hook one API function "system-wide" on Windows NT? Let's give me a real example written in MASM32!

Thanks a lot.
Posted on 2003-01-03 22:25:34 by vkdt
Invisibility.zip - masm source

http://sysinternals.com/
FileMon and RegMon - c source

But this way you can hook only native NT API.
Posted on 2003-01-04 04:15:14 by Four-F
Hi Four-F,

Is there other way to hook APIs without using kernel driver?
Posted on 2003-01-04 21:51:53 by vkdt
Is there other way to hook APIs without using kernel driver?


Yes, but not so elegant.

Hook question for advanced coders

I've posted there many useful links about the subject.

EDIT: fixed URL
Posted on 2003-01-05 03:05:10 by Four-F
the link is 404 :(
Posted on 2006-06-24 19:05:20 by comrade
The last post was made in 2003, several changes has occured since then, here is the thread that was being referenced.

http://www.asmcommunity.net/board/index.php?topic=7637;topicseen
Posted on 2006-06-24 20:30:51 by Synfire
thanks, that was useful
Posted on 2006-06-25 06:09:52 by comrade
http://www.apihooks.com/

and try some googling for "eliCZ" ;)
Posted on 2006-09-24 05:28:49 by vid