HypercallFilter

final class ntoseye.HypercallFilter

Subclass of BaseRecord.

What a hypercall breakpoint (!hvbp) stops on: one call code, from any caller or from one partition or VP of the Windows hypervisor.

property code: int

The call code: the low 16 bits of the caller’s RCX.

property name: str | None

The TLFS name, or None for a code that the TLFS does not list.

property partition: int | None

The caller’s partition ID. None for any caller.

property vp: int | None

The caller’s VP index in partition. None for any VP.