2016-01-06 00:01:17 +09:00
// hookman.cc
// 8/24/2013 jichi
// Branch IHF/HookManager.cpp, rev 133
// 8/24/2013 TODO: Clean up this file
# ifdef _MSC_VER
# pragma warning (disable:4100) // C4100: unreference formal parameter
# pragma warning (disable:4146) // C4146: unary minus operator applied to unsigned type
# endif // _MSC_VER
# include "hookman.h"
2018-07-20 16:26:27 -04:00
# include "../vnrhook/include/const.h"
# include "../vnrhook/include/defs.h"
# include "../vnrhook/include/types.h"
2018-07-20 17:21:35 -04:00
# include "winmutex.h"
2018-07-18 23:40:44 -04:00
# include <atlbase.h>
2016-01-06 00:01:17 +09:00
2018-07-19 01:44:44 -04:00
# define HM_LOCK CriticalSectionLocker hmLocker(hmCs) // Synchronized scope for accessing private data
2016-01-06 00:01:17 +09:00
HookManager : : HookManager ( ) :
2018-07-17 17:01:56 -04:00
create ( nullptr ) ,
remove ( nullptr ) ,
attach ( nullptr ) ,
detach ( nullptr ) ,
2018-07-19 00:46:52 -04:00
nextThreadNumber ( 0 ) ,
2018-07-19 23:22:55 -04:00
splitDelay ( 250 ) ,
2018-07-17 19:18:36 -04:00
textThreadsByParams ( ) ,
2018-07-17 17:01:56 -04:00
processRecordsByIds ( )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
InitializeCriticalSection ( & hmCs ) ;
2018-06-12 17:31:24 -04:00
2018-07-19 02:02:42 -04:00
// Console text thread
2018-07-21 14:16:26 -07:00
( textThreadsByParams [ { 0 , - 1UL , - 1UL , - 1UL } ] = new TextThread ( { 0 , - 1UL , - 1UL , - 1UL } , nextThreadNumber + + , splitDelay ) ) - > Status ( ) | = USING_UNICODE ;
2016-01-06 00:01:17 +09:00
}
HookManager : : ~ HookManager ( )
{
2018-07-22 18:10:00 -07:00
EnterCriticalSection ( & hmCs ) ;
RemoveThreads ( [ ] ( auto one , auto two ) { return true ; } , { } ) ;
for ( auto i : processRecordsByIds ) UnRegisterProcess ( i . first ) ;
LeaveCriticalSection ( & hmCs ) ;
2018-07-19 01:43:31 -04:00
DeleteCriticalSection ( & hmCs ) ;
2016-01-06 00:01:17 +09:00
}
2018-07-22 18:10:00 -07:00
TextThread * HookManager : : FindSingle ( DWORD number )
2018-07-19 01:43:31 -04:00
{
HM_LOCK ;
2018-07-17 19:18:36 -04:00
for ( auto i : textThreadsByParams )
2018-07-19 01:43:31 -04:00
if ( i . second - > Number ( ) = = number )
2018-05-31 05:40:00 -04:00
return i . second ;
return nullptr ;
}
2016-01-06 00:01:17 +09:00
2018-07-22 18:10:00 -07:00
void HookManager : : RemoveThreads ( bool ( * RemoveIf ) ( ThreadParameter , ThreadParameter ) , ThreadParameter cmp )
2016-01-06 00:01:17 +09:00
{
2018-06-02 14:29:32 -04:00
HM_LOCK ;
std : : vector < ThreadParameter > removedThreads ;
2018-07-17 19:18:36 -04:00
for ( auto i : textThreadsByParams )
2018-07-22 18:10:00 -07:00
if ( RemoveIf ( i . first , cmp ) )
2018-06-02 14:29:32 -04:00
{
2018-07-19 01:43:31 -04:00
if ( remove ) remove ( i . second ) ;
2018-06-02 14:29:32 -04:00
delete i . second ;
removedThreads . push_back ( i . first ) ;
}
2018-07-19 01:43:31 -04:00
for ( auto i : removedThreads ) textThreadsByParams . erase ( i ) ;
2016-01-06 00:01:17 +09:00
}
2018-06-01 02:36:51 -04:00
void HookManager : : RegisterProcess ( DWORD pid , HANDLE hostPipe )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-19 21:44:03 -04:00
ProcessRecord record ;
2018-07-19 20:51:49 -04:00
record . hostPipe = hostPipe ;
record . hookman_section = OpenFileMappingW ( FILE_MAP_READ , FALSE , ( ITH_SECTION_ + std : : to_wstring ( pid ) ) . c_str ( ) ) ;
record . hookman_map = MapViewOfFile ( record . hookman_section , FILE_MAP_READ , 0 , 0 , HOOK_SECTION_SIZE / 2 ) ; // jichi 1/16/2015: Changed to half to hook section size
record . process_handle = OpenProcess ( PROCESS_ALL_ACCESS , FALSE , pid ) ;
record . hookman_mutex = OpenMutexW ( MUTEX_ALL_ACCESS , FALSE , ( ITH_HOOKMAN_MUTEX_ + std : : to_wstring ( pid ) ) . c_str ( ) ) ;
2018-07-19 21:44:03 -04:00
processRecordsByIds [ pid ] = record ;
2018-07-19 01:43:31 -04:00
if ( attach ) attach ( pid ) ;
2016-01-06 00:01:17 +09:00
}
void HookManager : : UnRegisterProcess ( DWORD pid )
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-19 20:51:49 -04:00
ProcessRecord pr = processRecordsByIds [ pid ] ;
2018-07-19 01:43:31 -04:00
CloseHandle ( pr . hookman_mutex ) ;
UnmapViewOfFile ( pr . hookman_map ) ;
CloseHandle ( pr . process_handle ) ;
CloseHandle ( pr . hookman_section ) ;
processRecordsByIds . erase ( pid ) ;
2018-07-22 18:10:00 -07:00
RemoveThreads ( [ ] ( auto one , auto two ) { return one . pid = = two . pid ; } , { pid , 0 , 0 , 0 } ) ;
2018-07-19 01:43:31 -04:00
if ( detach ) detach ( pid ) ;
2016-01-06 00:01:17 +09:00
}
2018-07-19 00:46:52 -04:00
void HookManager : : DispatchText ( DWORD pid , DWORD hook , DWORD retn , DWORD spl , const BYTE * text , int len )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
// jichi 20/27/2013: When PID is zero, the text comes from console, which I don't need
if ( ! text | | ! pid | | len < = 0 )
return ;
HM_LOCK ;
ThreadParameter tp = { pid , hook , retn , spl } ;
TextThread * it ;
if ( ( it = textThreadsByParams [ tp ] ) = = nullptr )
{
it = textThreadsByParams [ tp ] = new TextThread ( tp , nextThreadNumber + + , splitDelay ) ;
2018-07-21 14:16:26 -07:00
if ( GetHookParam ( pid , hook ) . type & USING_UNICODE ) it - > Status ( ) | = USING_UNICODE ;
2018-07-19 01:43:31 -04:00
if ( create ) create ( it ) ;
}
it - > AddText ( text , len ) ;
2016-01-06 00:01:17 +09:00
}
2018-07-21 11:09:07 -07:00
void HookManager : : AddConsoleOutput ( std : : wstring text )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-19 13:34:26 -04:00
TextThread * console = textThreadsByParams [ { 0 , - 1UL , - 1UL , - 1UL } ] ;
console - > AddSentence ( std : : wstring ( text ) ) ;
2016-01-06 00:01:17 +09:00
}
2018-07-17 17:01:56 -04:00
HANDLE HookManager : : GetHostPipe ( DWORD pid )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-19 20:51:49 -04:00
return processRecordsByIds [ pid ] . hostPipe ;
2016-01-06 00:01:17 +09:00
}
2018-07-18 23:40:44 -04:00
HookParam HookManager : : GetHookParam ( DWORD pid , DWORD addr )
2018-07-17 19:18:36 -04:00
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-18 23:40:44 -04:00
HookParam ret = { } ;
2018-07-19 20:51:49 -04:00
ProcessRecord pr = processRecordsByIds [ pid ] ;
if ( pr . hookman_map = = nullptr ) return ret ;
MutexLocker locker ( pr . hookman_mutex ) ;
const Hook * hooks = ( const Hook * ) pr . hookman_map ;
2018-07-18 23:40:44 -04:00
for ( int i = 0 ; i < MAX_HOOK ; + + i )
if ( hooks [ i ] . Address ( ) = = addr )
ret = hooks [ i ] . hp ;
return ret ;
2016-01-06 00:01:17 +09:00
}
2018-07-18 23:40:44 -04:00
std : : wstring HookManager : : GetHookName ( DWORD pid , DWORD addr )
2016-01-06 00:01:17 +09:00
{
2018-07-19 01:43:31 -04:00
HM_LOCK ;
2018-07-22 18:10:00 -07:00
std : : string buffer = " " ;
2018-07-19 20:51:49 -04:00
ProcessRecord pr = processRecordsByIds [ pid ] ;
if ( pr . hookman_map = = nullptr ) return L " " ;
MutexLocker locker ( pr . hookman_mutex ) ;
2018-07-18 23:40:44 -04:00
USES_CONVERSION ;
2018-07-19 20:51:49 -04:00
const Hook * hooks = ( const Hook * ) pr . hookman_map ;
2018-07-18 23:40:44 -04:00
for ( int i = 0 ; i < MAX_HOOK ; + + i )
2016-01-06 00:01:17 +09:00
{
2018-07-18 23:40:44 -04:00
if ( hooks [ i ] . Address ( ) = = addr )
2016-01-06 00:01:17 +09:00
{
2018-07-18 23:40:44 -04:00
buffer . resize ( hooks [ i ] . NameLength ( ) ) ;
2018-07-19 20:51:49 -04:00
ReadProcessMemory ( pr . process_handle , hooks [ i ] . Name ( ) , & buffer [ 0 ] , hooks [ i ] . NameLength ( ) , nullptr ) ;
2016-01-06 00:01:17 +09:00
}
2018-07-19 01:43:31 -04:00
}
2018-07-18 23:40:44 -04:00
return std : : wstring ( A2W ( buffer . c_str ( ) ) ) ;
2016-01-06 00:01:17 +09:00
}
// EOF