Description: VICE is a tool to find hooks.
Features include:
1. Looks for people hooking IAT s.
2. Looks for people hooking functions in-line aka detouring.
3. Looks for hooks in the System Call Table. Thanks to Tan perhaps it will fix the table in the future.
4. Looks for detour hooks in the System Call Table functions themselves.
5. Looks for people hooking IRP_MJ table in drivers. This is configurable by driver.ini.
- [APIHOOK_Sys] - classic APIHOOK procedures, all of the f
- [USBtoPort] - USB communications, can be realized with
- [KernelHook] - vc++ program, run under windows32 platfo
- [detourAPI] - Source attached to a tutorial! API inter
- [IATHOOK] - Easy to use generic language to load hoo
- [Klog1.0] - The use of kernel-driven way of a simple
- [SSDT-hook] - a good example of studying kernel progra
- [Kehook] - The hook, from ring3 there are many, rin
- [IATHOOK] - Iat table by modifying the input to hook
- [APIHook_Dll] - Technology HooKAPI hook! Intercepted mes
File list (Check if you may need any files):
EXE
...\driver.ini
...\README_VICE.txt
...\ViceConsole.exe
...\VICESYS.sys