This article briefly introduced the principle of Microsoft Detours Library and technology, including its system intercepted and systems technology into the area. Detours is a function of a large library of high complexity. To enable the Detours library are not familiar with the user to quickly use the Detours library to develop monitoring procedures for defense category. We designed and implemented a library-based development framework Detours. The framework is the rapid development of procedures to monitor the platform category, the Detours technology to focus the full functionality of the system has done a number of module-oriented control, the types of procedures related to monitoring the development of simple and quick.
And the design of a framework based on the example of the procedure ApispyDemo, the example of the design process include the interface design and data transmission mechanism design. At the same time, the procedure tests whether the technology can be used this development framework to complete the injection of specific procedures, and process control system call. The results show that the design of the development of the framework of this article can be a very good support for rapid development of monitor-type procedures and requirements to achieve appropriate.
Keywords: Development framework,interface interception,Detours
目录