Exetools  

Go Back   Exetools > General > General Discussion

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #5  
Old 09-20-2022, 20:43
binarylaw binarylaw is offline
Friend
 
Join Date: Jul 2019
Posts: 42
Rept. Given: 0
Rept. Rcvd 0 Times in 0 Posts
Thanks Given: 524
Thanks Rcvd at 10 Times in 7 Posts
binarylaw Reputation: 0
Quote:
Originally Posted by WhoCares View Post
hi,

I want to monitor some winsock API call of some EXEs to find why it behaves weirdly when my WFP driver is loaded.

I just tried "http://www.rohitab.com/apimonitor#Overview", it incorrectly displays all winsock API names as "ntohs()" on Windows 10.

Any other stable (winsock) api monitor there? Better open source.
My last resort is coding my own.

Thanks for your recommendations.
Rohitab's API Monitor was a really cool tool, I've long wondered why they abandoned it.
Reply With Quote
 


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Hades:Windows kernel driver lets reverse engineers monitor user and kernel mode code sh3dow Source Code 0 05-12-2016 03:15


All times are GMT +8. The time now is 18:18.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )