dslee2022 / VMProtect-CRC-BypassLinks
PoC code for IsValidImageCRC()
☆18Updated 2 years ago
Alternatives and similar repositories for VMProtect-CRC-Bypass
Users that are interested in VMProtect-CRC-Bypass are comparing it to the libraries listed below
Sorting:
- VMP Mutation API Fix☆41Updated 3 years ago
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆21Updated last year
- ☆27Updated last year
- A PoC of Themida 3.xx Cyclic Redundancy Check Bypass☆14Updated last year
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆44Updated last year
- Example of making debugger using Hardware Breakpoint + VEH☆18Updated 4 years ago
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆27Updated 8 months ago
- This is just a x64dbg script system support.☆46Updated 2 years ago
- ☆46Updated 3 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- Kernel ReClassEx☆62Updated last year
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆36Updated last year
- ☆32Updated last year
- VMProtect, VMP, Devirter, 3,5☆107Updated 2 years ago
- ☆22Updated 3 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆29Updated 3 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆95Updated 2 years ago
- Symbolic Execution based on lifting amd64 to z3☆27Updated 11 months ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆60Updated last year
- ☆13Updated last year
- A Simple Example☆21Updated 6 years ago
- X86/X64 Hardware Breakpoint Manager☆41Updated 3 years ago
- Illustrates the concept of return address spoofing, and how it is used.☆13Updated 5 years ago
- ☆36Updated 2 years ago
- This is a POC Test project for INTEL CPUs on blocking NMI Entries through the IDT Handler.☆52Updated 7 months ago
- Load driver on boot before anti-cheats☆32Updated last year
- mouseclassservicecallback detection via hook☆50Updated 3 years ago
- Decrypt VMProtect (.NET) obfuscated strings. Made by Cabbo with love.☆25Updated 2 years ago
- ☆24Updated last year
- detect hypervisor with Nmi Callback☆34Updated 2 years ago