Jump to content
Tuts 4 You

API EstimateFileRiskLevel Hooking


bin123485

Recommended Posts

Posted

I try to hook the api EstimateFileRiskLevel with python + pydbg, but failed to  get the api address. Is there any way I can hook the api?


 


 


Posted (edited)

Yes. You can start by reading MSDN documentation, especially the Remarks part.

 

I can hook LoadLibrary and GetProcAddress to get the address of EstimateFileRiskLevel,

but when I set a bp on EstimateFileRiskLevel and try to download file via IE, IE crash. why ?

Edited by bin123485

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...