backengineering / vmp2Links
VMProtect2 Deobfuscation Tooling
☆55Updated 3 weeks ago
Alternatives and similar repositories for vmp2
Users that are interested in vmp2 are comparing it to the libraries listed below
Sorting:
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆102Updated last month
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆63Updated last year
- x86-64 user mode emulation using Zydis☆69Updated last month
- Kernel ReClassEx☆64Updated last year
- ☆62Updated 2 years ago
- A devirtualization engine for Themida.☆101Updated last year
- A x86_64 software emulator☆155Updated 2 months ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆46Updated 2 years ago
- Symbolic Execution based on lifting amd64 to z3☆28Updated last year
- C++ macro for x64 programs that breaks ida hex-rays decompiler tool.☆129Updated last year
- Themida 3.x research☆33Updated 8 months ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆71Updated 3 years ago
- Runtime Hyper-V Hijacking with DDMA☆64Updated 2 months ago
- Binary rewriter for 64-bit PE files.☆87Updated last year
- 🎨 Seamlessly convert your favorite Visual Studio Code themes to IDA Pro themes.☆117Updated last year
- Load dll with undocumented functions and debug symbols☆47Updated last year
- Native opaque predicate cleaner plugin for Binary Ninja☆44Updated this week
- A Windows PE packer for executables (x64) with LZMA compression and with full TLS (Thread Local Storage) support.☆88Updated last week
- ☆84Updated 2 weeks ago
- A debugger library using VEH.☆64Updated last year
- An AI-powered assistant for IDA 9.0+ to accelerate reverse engineering of C++ games.☆193Updated 3 weeks ago
- Me fockin' pe protector☆45Updated 2 years ago
- Windows PDB parser for kernel-mode environment.☆102Updated 5 months ago
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆93Updated last year
- Decrypting and intercepting encrypted imports of Vanguards Kernel Driver☆35Updated last year
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆84Updated last year
- 🔬 IDA plugin to find patched memory☆68Updated last week
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆71Updated 2 weeks ago
- A fast Windows emulator + debugger for reverse engineering. Runs any executable in debug mode, disassembles with Zydis, emulates instruct…☆157Updated last month
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆59Updated last year