Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Future steps - Pointers Functions to Windows Native Api #19

Open
vicboma1 opened this issue Nov 12, 2019 · 1 comment
Open

Future steps - Pointers Functions to Windows Native Api #19

vicboma1 opened this issue Nov 12, 2019 · 1 comment
Assignees
Labels
Craziness Crazy thoughts

Comments

@vicboma1
Copy link
Owner

https://social.technet.microsoft.com/wiki/contents/articles/11831.the-windows-native-api.aspx

@vicboma1 vicboma1 added the Craziness Crazy thoughts label Nov 12, 2019
@vicboma1
Copy link
Owner Author

Yeah! I am hooking some functions with the API Native
If I hook NTxxx routine, sometimes returns the STATUS_ACCESS_VIOLATION, but with ZWXXX access its works!!

I Recommend this paper about PreviousMode ->https://docs.microsoft.com/en-us/windows-hardware/drivers/kernel/previousmode?redirectedfrom=MSDN

@vicboma1 vicboma1 self-assigned this Nov 21, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Craziness Crazy thoughts
Projects
None yet
Development

No branches or pull requests

1 participant