Skip to content

helloobaby/HyperTool

Repository files navigation

Develop based on HyperPlatForm and Only x64.

Feature

Support log process' systemcalls and easy ept-hook (NtOpenProcess or NtCreateFile .etc)

Support hook win32kfull.sys funtions.

Add hide window (attack gpKernelHandleTable and hook FindWindow).

Pay attention:

header file "settings.h" ,hooked functions are implemented at service_hook.cpp about line 360

PDBSDK.h

Known bug:

1.failed to unhook NtDeviceIoControlFile(reference is not zero)

About

Intel learning hypervisor and some extend function

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages