Shhoya / MutantKiller
VMP Mutation API Fix
☆41Updated 3 years ago
Alternatives and similar repositories for MutantKiller:
Users that are interested in MutantKiller are comparing it to the libraries listed below
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆58Updated last year
- fix vmprotect import function used unicorn-engine.☆92Updated 2 years ago
- VMProtect, VMP, Devirter, 3,5☆106Updated 2 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- Kernel ReClassEx☆61Updated last year
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆70Updated 2 years ago
- A simple ida python script to find .data ptr☆50Updated last year
- ☆68Updated 2 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆49Updated 4 years ago
- Modmap updated to work on Windows 11☆28Updated 3 years ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆42Updated last year
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- A wrapper class to hide the original calling address of a function☆57Updated 4 years ago
- ☆49Updated last year
- Global DLL injector☆66Updated 3 years ago
- ☆34Updated 2 years ago
- UM-KM Communication using registry callbacks☆39Updated 4 years ago
- ☆96Updated 7 years ago
- A devirtualization engine for Themida.☆100Updated last year
- x64 manual mapper using inline syscalls☆9Updated 3 years ago
- Obfuscate calls to imports by patching in stubs☆67Updated 3 years ago
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆52Updated 2 years ago
- A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor …☆31Updated last year
- Simple IDA Pro plugin to download Unity debug symbols from their symbol server☆61Updated last year
- ☆68Updated 3 years ago
- Mapping your code on a 0x1000 size page☆72Updated 2 years ago
- PoC code for IsValidImageCRC()☆16Updated last year
- ☆36Updated 2 years ago
- A poc that abuses Enclave☆38Updated 2 years ago
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆20Updated last year