Static devirtualizer for VMProtect 3.0-3.5. Lifts virtualized code to LLVM using Remill and strips the VM layer through optimization.
☆313Jul 30, 2026Updated last month
Alternatives and similar repositories for MogVMP
Users that are interested in MogVMP are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- LLVM based devirtualizer for the binaryshield software protector.☆91May 7, 2026Updated 4 months ago
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆900May 8, 2026Updated 4 months ago
- Themida 3.x research☆109Feb 28, 2025Updated last year
- LLVM based static binary analysis framework☆380Aug 15, 2026Updated last month
- out-of-tree LLVM 21+ pass plugin for policy-driven IR obfuscation.☆107Aug 22, 2026Updated 3 weeks ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation☆341Aug 13, 2026Updated last month
- An analysis and static deobfuscation of codedefender.io protected samples.☆96Apr 18, 2026Updated 5 months ago
- x64 PE bin2bin obfuscator which doesn't add a section to the binary☆335Aug 18, 2026Updated last month
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆50Mar 3, 2026Updated 6 months ago
- chernobog is a Hex-Rays decompiler plugin that defeats Hikari LLVM obfuscation.☆277Sep 8, 2026Updated last week
- An educational anti-cheat system for learning Windows kernel programming, process monitoring, and cheat detection techniques☆42Jul 24, 2026Updated last month
- Striga is an experimental lifter from x86_64 to LLVM IR written in Python.☆112Jun 22, 2026Updated 2 months ago
- Themida Devirt Results☆120May 10, 2026Updated 4 months ago
- Efficient general mixed boolean-arithmetic (MBA) simplifier☆136Jul 25, 2026Updated last month
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- rax is a CPU emulator that checks its own work.☆218Updated this week
- IDA Pro plugin that speeds up the initial binary auto analysis through a caching technique☆250Sep 2, 2026Updated 2 weeks ago
- ☆106Oct 25, 2025Updated 10 months ago
- Stealth-focused Intel VT-x hypervisor (EAC/BE/ACs/AVs).☆413Mar 20, 2026Updated 5 months ago
- Virtual Trust Level (VTL 1) secure call tracing☆105Jul 19, 2026Updated 2 months ago
- Automated multi-engine framework for unpacking, analyzing, and devirtualizing binaries protected by commercial and custom Virtual Machine…☆435Jun 3, 2026Updated 3 months ago
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆101Oct 26, 2025Updated 10 months ago
- An x86-64 code virtualizer for VM based obfuscation☆260Dec 21, 2024Updated last year
- An x86-64 Code Virtualizer☆327Sep 26, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- VTIL2 is a ground-up reimagination of the VTIL Project, completely rewritten in modern C# with enterprise-grade architecture, performance…☆74Oct 29, 2025Updated 10 months ago
- A static VMProtect unpacker for PE files, supports VMProtect 1.x–3.x and rebuilding unpacked PE images☆130Sep 5, 2026Updated last week
- VMProtect2 Deobfuscation Tooling☆131Nov 12, 2025Updated 10 months ago
- Native code virtualizer for x64 binaries☆545Dec 20, 2024Updated last year
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆346Nov 20, 2025Updated 9 months ago
- Cracking MBAs☆75Updated this week
- Automatic vtable detection, inheritance analysis, and function override tracking for reverse engineering compiled C++ binaries. Supports …☆148Mar 13, 2026Updated 6 months ago
- Using Windows' own bootloader as a shim to bypass Secure Boot☆251Jul 17, 2024Updated 2 years ago
- Simple template for using Remill on Windows/Linux/macos.☆37May 22, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Binary lifter and deobfuscator using remill for x86_64 Windows binaries☆100Apr 20, 2026Updated 4 months ago
- vm_str.hpp is a header only string obfuscator.☆117Aug 24, 2025Updated last year
- Rewrite and obfuscate code in compiled binaries☆276Dec 13, 2025Updated 9 months ago
- tests to catch some sloppy hv impls☆34Mar 16, 2026Updated 6 months ago
- Hooking Windows' exception dispatcher to protect process's PML4☆271Jan 24, 2025Updated last year
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆161Mar 6, 2026Updated 6 months ago
- A C++ REPL for IDA Pro / IDA C++ SDK☆95Mar 26, 2026Updated 5 months ago