archercreat / vmpfix
Universal x86/x64 VMProtect 2.0-3.X Import fixer
☆5Updated 3 years ago
Alternatives and similar repositories for vmpfix:
Users that are interested in vmpfix are comparing it to the libraries listed below
- A VMP to VTIL lifter.☆434Updated 3 years ago
- ☆405Updated 3 months ago
- Fix VMProtect Import Protection☆337Updated 3 years ago
- VMProtect 2.x-3.x x64 Import Deobfuscator☆291Updated last year
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆588Updated 2 months ago
- Fix VMProtect3 IAT☆276Updated last year
- Emulate Drivers in RING3 with self context mapping or unicorn☆335Updated 2 years ago
- IDA Pro plugin to make bitfield accesses easier to grep☆232Updated 2 months ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆273Updated 8 months ago
- Debugger Anti-Detection Benchmark☆328Updated last year
- Themida 3.x unpacking, unwrapping and devirtualization(future)☆169Updated 2 years ago
- Simple Intel VT-x hypervisor☆296Updated last year
- Analyze patches in a process☆251Updated 3 years ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆354Updated 5 months ago
- FindFunc is an IDA Pro plugin to find code functions that contain a certain assembly or byte pattern, reference a certain name or string,…☆321Updated 7 months ago
- An AVX Lifter for the Hex-Rays Decompiler☆303Updated last year
- IDA Class Informer plugin for IDA 8.x and 9.x☆279Updated 3 weeks ago
- SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.☆381Updated 4 years ago
- IDA Pro plugin to manage classes☆320Updated 7 months ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆286Updated 4 years ago
- x86 Binary Code Virtualization Tool☆213Updated 2 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆86Updated last year
- Strings plugin for x64dbg☆227Updated this week
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆559Updated 3 weeks ago
- COFF and Portable Executable format described using standard C++ with no dependencies.☆278Updated last month
- This program help you with unpacking vmprotect☆197Updated 4 years ago
- Windows inline hooking tool.☆259Updated 6 years ago
- System call hook for Windows 10 20H1☆483Updated 3 years ago
- VM devirtualization PoC based on AsmJit and llvm☆113Updated 3 years ago
- kernel-mode Anti-Anti-Debug plugin. based on intel vt-x && ept technology☆436Updated 4 years ago