25077667 / VMPilot
VMPilot: A Modern C++ Virtual Machine SDK
☆219Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for VMPilot
- Source of VMProtect (NOT OFFICIALLY)☆185Updated last year
- IDA Pro plugin AntiXorstr☆103Updated last year
- This project migrated to https://github.com/backengineering/llvm-msvc☆140Updated last year
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆141Updated 2 years ago
- IDA Class Informer plugin for IDA 8.x and 9.x☆182Updated this week
- obfuscated any constant encryption in compile time on any platform☆411Updated last year
- VM devirtualization PoC based on AsmJit and llvm☆103Updated 3 years ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆61Updated 2 weeks ago
- compile-time control flow obfuscation using mba☆174Updated last year
- IDA Plugin that fills in missing indirect CALL & JMP target information☆115Updated last year
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆91Updated 2 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆232Updated 7 months ago
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆140Updated last month
- [WIP] A forked version of LLVM-18 that prioritizes MSVC compatibility. This version is tailored for Windows users.☆217Updated last month
- An x86-64 Code Virtualizer☆108Updated last month
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆110Updated 7 months ago
- VMProtect source code leak (incomplete, some important files are still missing, but you can still see it as a reference on how to virtual…☆159Updated 4 months ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆104Updated 2 years ago
- r/w virtual memory without attach☆149Updated last year
- Single-header, minimalistic, cross-platform hook library written in pure C☆289Updated last month
- C++ library for parsing and manipulating PE files statically and dynamically.☆85Updated last year
- Windows inline hooking tool.☆219Updated 6 years ago
- ☆159Updated 2 years ago
- fix vmprotect import function used unicorn-engine.☆91Updated last year
- a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.☆141Updated 2 months ago
- Easy Anti PatchGuard☆214Updated 3 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆245Updated 4 years ago
- Simple Intel VT-x hypervisor☆263Updated 11 months ago
- Obfuscator-LLVM for LLVM 16.x branch☆185Updated last year