Vicshann / GhostDbg
Noninvasive debugging plugin for X64Dbg
☆102Updated 4 months ago
Alternatives and similar repositories for GhostDbg:
Users that are interested in GhostDbg are comparing it to the libraries listed below
- fix vmprotect import function used unicorn-engine.☆92Updated last year
- This x64dbg plugin sets the page protection for memory mapped views in scenarios which cause NtProtectVirtualMemory to fail.☆115Updated 8 years ago
- ayy debuger☆89Updated last year
- VMP Mutation API Fix☆40Updated 3 years ago
- A general solution to simulate execution of virtualized instructions (vmprotect/themida, etc.).☆73Updated 3 years ago
- ☆95Updated 7 years ago
- StrongOD(anti anti-debug plugin) driver source code.☆116Updated 7 years ago
- Add More Features for x64dbg Script System,with some Functions which will help Plugin Coder☆123Updated 3 years ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆83Updated last year
- VMProtect, VMP, Devirter, 3,5☆106Updated 2 years ago
- An Ark tool project,run on Win7 x86/x64☆113Updated 7 years ago
- Windows Driver Kit Extesion Header (Undoc)☆133Updated 3 years ago
- Collect different versions of Crucial modules.☆130Updated 8 months ago
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆155Updated 2 years ago
- 🔎 Analysis of Oreans: Looking inside Themida, WinLicense, and CodeVirtualizer☆34Updated 4 years ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆41Updated 4 years ago
- ☆96Updated 2 years ago
- disable most common windowsx64 systems patchguard☆84Updated 6 years ago
- hook msr by amd svm☆119Updated 5 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆56Updated 3 years ago
- An x64dbg plugin that allows users to execute Cheat Engine auto assembler scripts within x64dbg.☆73Updated 7 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆85Updated last year
- ☆123Updated 4 years ago
- FuckXC3☆89Updated 7 years ago
- VM devirtualization PoC based on AsmJit and llvm☆113Updated 3 years ago
- ☆162Updated 3 years ago
- a monitoring windows driver calls kernel api tools☆103Updated 8 months ago
- x64 syscall caller in C++.☆87Updated 6 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆132Updated 5 months ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆107Updated 2 years ago