Originally Posted by
experthack
You are using Messagebox or Load Dll? This is because the process was not found or because of their method
Code:
case DLL_PROCESS_ATTACH:
DisableThreadLibraryCalls(hModule);
MessageBoxA(0,(LPCSTR)"STOP",(LPCSTR)"STOP", MB_OK);
In my DLLMain
Also did with detouring the function that hides the process..
Still no luck.
They are allowing me to hook it, but not out-puting anything.
2nd way
Code:
DWORD dwLoadResource = ( DWORD ) GetProcAddress ( GetModuleHandle ( (LPCWSTR)"Kernel32.dll" ), (LPCSTR)"LoadResource" );
oLoadResource = ( tLoadResource ) DetourFunction(( PBYTE ) dwLoadResource, ( PBYTE ) &hLoadResource );