WriteProcessMemory Monitor

Monitor all the running processes on your PC
Download

WriteProcessMemory Monitor Ranking & Summary

Advertisement

  • Rating:
  • License:
  • Free
  • Price:
  • Free
  • Publisher Name:
  • By NoVirusThanks
  • Operating Systems:
  • Windows 2003, Windows 2000, Windows Vista, Windows 98, Windows Me, Windows, Windows NT, Windows 7, Windows XP
  • Additional Requirements:
  • None
  • File Size:
  • 539.53K
  • Total Downloads:
  • 174

WriteProcessMemory Monitor Tags


WriteProcessMemory Monitor Description

WriteProcessMemory API Monitor is a Windows OS utility designed solely to monitor processes in the system that write to other process’ virtual address spaces. Malware often uses such techniques in order to write payload stubs to a foreign process to hook an API, load a malware DLL etc. ntdll!NtWriteVirtualMemory is hooked in order to achieve the desired logging functionality in usermode. WriteProcessMemory API Monitor displays the caller process and target process filenames as well as their respective process identifiers are shown along with the size of the buffer written to the process and the actual contents represented in hexadecimal of the buffer. The location of the written memory is also listed in hex for run-time reverse engineering convenience. This utility can be integrated into various malware or rootkit test environments that can assist security researchers reverse-analyze a piece of malware together with other powerful tools. Main features: Exclude System processes Monitor WriteProcessMemory Save logs to file on close Support unicode (DLL injection) Very user-friendly GUI


WriteProcessMemory Monitor Related Software