WriteProcessMemory MonitorMonitor all the running processes on your PC | |
Download |
WriteProcessMemory Monitor Ranking & Summary
Advertisement
- License:
- Free
- Price:
- Free
- Publisher Name:
- By NoVirusThanks
- Operating Systems:
- Windows 2003, Windows 2000, Windows Vista, Windows 98, Windows Me, Windows, Windows NT, Windows 7, Windows XP
- Additional Requirements:
- None
- File Size:
- 539.53K
- Total Downloads:
- 174
WriteProcessMemory Monitor Tags
WriteProcessMemory Monitor Description
WriteProcessMemory API Monitor is a Windows OS utility designed solely to monitor processes in the system that write to other process’ virtual address spaces. Malware often uses such techniques in order to write payload stubs to a foreign process to hook an API, load a malware DLL etc. ntdll!NtWriteVirtualMemory is hooked in order to achieve the desired logging functionality in usermode. WriteProcessMemory API Monitor displays the caller process and target process filenames as well as their respective process identifiers are shown along with the size of the buffer written to the process and the actual contents represented in hexadecimal of the buffer. The location of the written memory is also listed in hex for run-time reverse engineering convenience. This utility can be integrated into various malware or rootkit test environments that can assist security researchers reverse-analyze a piece of malware together with other powerful tools. Main features: Exclude System processes Monitor WriteProcessMemory Save logs to file on close Support unicode (DLL injection) Very user-friendly GUI
WriteProcessMemory Monitor Related Software