JeffJoe
Contributor
Contributor

Hi Wjwj,

you find the Simple Visor binary here:

File-Upload.net - shv.sys

To reproduce the issue / bug:

* Install Windows 10 x64 on VMware Workstation Pro 15 or latest ESXi

* Enable nested virtualization:

hypervisor.cpuid.v0 = "FALSE"

mce.enable = "TRUE"

vhu.enable = "TRUE"

* Enable test signing. Execute from an evaluated cmd prompt and reboot:

bcdedit.exe -set TESTSIGNING ON

bcdedit.exe -set nointegritychecks ON

* Store shv.sys to C:\

* Download Kernel-Mode Driver Loader v1.2 from https://www.novirusthanks.org/products/kernel-mode-driver-loader/

* In the Driver File input field, type: C:\shv.sys then Load

* VMware crashes

To reproduce the issue / bug with Kaspersky:

* Install Windows 7 or Windows 10 x64 on VMware Workstation Pro 15 or latest ESXi

* Enable nested virtualization:

hypervisor.cpuid.v0 = "FALSE"

mce.enable = "TRUE"

vhu.enable = "TRUE"

* Install latest Kasperksy Internet Security trial

* Open the Safe Money Tool

* VMware crashes