Results 1 to 3 of 3

Thread: APIHooking and ConsoleMode applications

  1. #1
    foxthree
    Guest

    APIHooking and ConsoleMode applications

    Hello:

    I have a small console application that I'm trying to reverse. I wanted to spy on what APIs that is is making at some "critical" point in code. So, I run APISpy on it but alas, APISpy Log shows nothing . Somebody tells me that APISpy kind of programs (which use Windows Message based hooks) will not work with Console mode applications. I understand the reason why.

    But my question is is there any utility that can spy on Console mode applications' API calls also?

    Signed,
    -- FoxThree

    * Edited by FoxThree *
    Google search gave me a nice application called APIMonitor @ http://xxx.rohitab.com Wonder why this one didn't turn up before I posted
    Last edited by foxthree; June 27th, 2002 at 13:25.
    I promise that I have read the FAQ and tried to use the Search to answer my question.

  2. #2
    oyang2002
    Guest

    Wink

    Why not use Numega's SmartCheck?
    I promise that I have read the FAQ and tried to use the Search to answer my question.

  3. #3
    : Code Injector : nikolatesla20's Avatar
    Join Date
    Apr 2002
    Location
    :ether:
    Posts
    815

    Try this

    According to some documentation I was reading, some API hooks install their DLL by injecting it using a registry key - that only works with console apps if they import USER32.DLL

    So if the app isn't packed, maybe try just adding an import from USER32.dll (like messageboxa)- just throw it in the IAT table even tho it won't be used, this imports the DLL into your mem space - and then try running your APIspy again to see what happens?

    Just a thought.

    -nt20

Similar Threads

  1. Cracking old flexlm protected IRIX applications
    By bkd in forum Advanced Reversing and Programming
    Replies: 0
    Last Post: July 14th, 2010, 02:15
  2. Does Olly support Delphi applications?
    By JackTripper in forum OllyDbg Support Forums
    Replies: 17
    Last Post: July 5th, 2007, 06:26
  3. How can I debug MS VC++ applications?
    By Vortex in forum OllyDbg Support Forums
    Replies: 6
    Last Post: March 21st, 2003, 14:43
  4. Replies: 2
    Last Post: January 28th, 2003, 14:54
  5. Reversing win16 applications???
    By BobRock in forum Malware Analysis and Unpacking Forum
    Replies: 4
    Last Post: June 22nd, 2002, 05:19

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •