> For the complete documentation index, see [llms.txt](https://ppn.snovvcra.sh/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ppn.snovvcra.sh/red-team/dev/winapi.md).

# Windows API

* <https://yuval0x92.wordpress.com/2020/03/09/native-api-win32-api/>
* <https://github.com/EspressoCake/NativeFunctionStaticMap/blob/main/Native_API_Resolve.pdf>
* <https://github.com/LloydLabs/Windows-API-Hashing>
* <https://github.com/MohitDabas/malwinx>
* <https://fourcore.io/blogs/how-a-windows-process-is-created-part-1>
* <https://fourcore.io/blogs/how-a-windows-process-is-created-part-2>

## Tools

* <https://github.com/MalwareApiLib/MalwareApiLibrary>
* <https://www.leeholmes.com/managing-ini-files-with-powershell/>
