API Hooking

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Anyone has already manage to do a system wide API Hooking.
I would like to intercept every call to CreateFile ....
I have found some clue (see http://www.phrack.org/show.php?p=63&a=6 and
http://www.codeproject.com/system/soviet_protector.asp) but it seems very difficult.



Thanks
.



Relevant Pages

  • Re: Avoiding Booleans & Danny Thorpe
    ... John Herbster wrote: ... With the latter one I don't have any clue what's the parameter for. ... CreateFile({CreateNew}true); ... the benefit of using a boolean parameter and additionally adding it's purpose as comment compared to adding it to the variable name itself? ...
    (borland.public.delphi.non-technical)
  • Re: Outlook custom forms
    ... custom form is: ... Under column 'Operation' it says 'CreateFile' and the 'Result' column ... says 'NAME COLLISION' ... clue if those lines are relevant. ...
    (microsoft.public.outlook.program_forms)
  • Re: Avoiding Booleans & Danny Thorpe
    ... > With the latter one I don't have any clue what's the parameter for. ... CreateFile({CreateNew}true); ... where comment CreateNew will give the reader a hint as ... Prev by Date: ...
    (borland.public.delphi.non-technical)