Shhoya / MutantKiller
VMP Mutation API Fix
☆41Updated 3 years ago
Alternatives and similar repositories for MutantKiller:
Users that are interested in MutantKiller are comparing it to the libraries listed below
- VMProtect, VMP, Devirter, 3,5☆106Updated 2 years ago
- fix vmprotect import function used unicorn-engine.☆92Updated 2 years ago
- Kernel ReClassEx☆61Updated last year
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆58Updated last year
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆70Updated 2 years ago
- VMProtectTest☆35Updated 2 years ago
- ☆69Updated 2 years ago
- ☆36Updated 2 years ago
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆21Updated last year
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆95Updated 2 years ago
- A devirtualization engine for Themida.☆100Updated last year
- A simple ida python script to find .data ptr☆51Updated 2 years ago
- ☆37Updated 2 years ago
- POC Hook of nt!HvcallCodeVa☆51Updated last year
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- ☆46Updated 3 years ago
- A general solution to simulate execution of virtualized instructions (vmprotect/themida, etc.).☆73Updated 3 years ago
- ☆97Updated 7 years ago
- ☆49Updated last year
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆43Updated last year
- A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor …☆32Updated last year
- ☆35Updated 4 years ago
- Obfuscate calls to imports by patching in stubs☆67Updated 3 years ago
- mouseclassservicecallback detection via hook☆50Updated 3 years ago
- ☆42Updated 3 years ago
- Global DLL injector☆67Updated 3 years ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆52Updated 3 years ago
- Discarded Section Manual Map☆67Updated 4 years ago
- page table manipulation to gain physical r/w☆40Updated last year