![]() |
|
|
|
#1
|
||||
|
||||
|
Here is an example of hooking Win32 API without a trampoline since they are not always needed:
(Error checking code omitted for ease of reading.) PHP Code:
|
| The Following 6 Users Say Thank You to atom0s For This Useful Post: | ||
chants (09-02-2018), NeWOT (08-12-2016), sh3dow (05-13-2016), xenocidewiki (05-13-2016) | ||
|
#2
|
||||
|
||||
|
so good.
I got detours 3 source code from the open source .net framework code, but there is a nasty typo bug...and finally microsoft removed the leaked code form their open source site.
__________________
AKA Solomon/blowfish. Last edited by WhoCares; 07-13-2016 at 11:43. |
|
#3
|
||||
|
||||
|
Is it the password? It is not working for me
Quote:
__________________
In memory of UnREal RCE... |
|
#4
|
||||
|
||||
|
use this online site to decode bin to text
http://www.roubaixinteractive.com/PlayGround/Binary_Conversion/Binary_To_Text.asp |
| The Following User Says Thank You to niculaita For This Useful Post: | ||
Newbie_Cracker (07-14-2016) | ||
|
#5
|
||||
|
||||
|
Quote:
Code:
r9+LM+PWhcRk>'Q"Kghe ![]() I don't understand why he made it complicated. It seems b30wulf likes puzzles so much !
__________________
In memory of UnREal RCE... |
|
#6
|
|||
|
|||
|
Quote:
|
|
#7
|
||||
|
||||
|
r9+LM+PWhcRk>'Q"Kghe is corect for me
use winrar v5.xx to desarchive from www.rarlab.com |
| The Following 2 Users Say Thank You to niculaita For This Useful Post: | ||
chants (07-19-2016), Newbie_Cracker (07-15-2016) | ||
|
#8
|
||||
|
||||
|
Quote:
Now the file was decompressed.
__________________
In memory of UnREal RCE... |
|
#9
|
|||
|
|||
|
Yeah that is the password, but rather a different form of the password.
Hint: A solid, liquid or gas are just different forms of a substance ![]() I am also pretty sure this is incomplete, going by what is in the express package. Thanks for the share anyway. |
|
#10
|
|||
|
|||
|
Here is a bit of a Frankenstein package. I combined the pro from here with bits out of the express package to get a "more complete" pro version (i.e including syelog).
Hopefully it will be useful, and is the 2nd best thing to a full pro package .Download: Code:
https://userscloud.com/ib0jgs2z7x1h https://1fichier.com/?94rxfs3b86 https://openload.co/f/zW4nT6tvWAg/Detours_Pro_v3.0.7z https://clicknupload.link/ttu6umlr8xkx |
|
#11
|
|||
|
|||
|
Hello
Any chance to download it without password? I have no permission to access to donwloads. Regards, |
|
#12
|
|||
|
|||
|
MinHook - The Minimalistic x86/x64 API Hooking Library for Windows
https://github.com/TsudaKageyu/minhook Might be useful for someone looking for something similar to detours. |
|
#13
|
|||
|
|||
|
Detours Version 3.0 Build 341
https://www.microsoft.com/en-us/down....aspx?id=52586 Date Published: 6/12/2017 |
| The Following User Says Thank You to mak For This Useful Post: | ||
niculaita (07-14-2017) | ||
|
#14
|
|||
|
|||
|
What happened to Detours? Now there is Detours Version 3.0 Build_343 which seems to include Pro features (and there is no mention of the Express version)
|
|
#15
|
|||
|
|||
|
Quote:
|
![]() |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| SignatureToDetour: Converts IDA Pro signatures to C++ Detours | sh3dow | Source Code | 2 | 01-23-2017 21:14 |
| microsoft ddk | kP^ | General Discussion | 3 | 10-20-2003 20:39 |