Description: Is mainly used for hook windows api, of course, you can hook other specified functions, the approach is: change the process of IAT table, simple and practical
To Search:
- [nthook] - IAT replacement library, ZW a direct rep
- [boot] - Boot sector, nasm compile, run in DOS, l
- [IAT_Rebuild] - Write your own to handle ollydbg the IAT
- [APIHOOK1] - API hooks, by modifying the IAT table to
File list (Check if you may need any files):
HookImportFunction.cpp
HookImportFunction.h