gmh5225 / titan-1Links
Titan is a VMProtect devirtualizer
☆53Updated 2 years ago
Alternatives and similar repositories for titan-1
Users that are interested in titan-1 are comparing it to the libraries listed below
Sorting:
- VMProtect, VMP, Devirter, 3,5☆107Updated 2 years ago
- A devirtualization engine for Themida.☆101Updated last year
- bypass vmp virtual machine detect☆142Updated 3 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆63Updated last year
- 🪝 Various EPT hook detection approaches☆134Updated 3 months ago
- Kernel driver for detecting Intel VT-x hypervisors.☆190Updated 2 years ago
- VM devirtualization PoC based on AsmJit and llvm☆115Updated 4 years ago
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆93Updated last year
- Detects virtual machines and malware analysis environments☆139Updated 3 years ago
- A simple ida python script to find .data ptr☆51Updated 2 years ago
- IDA Pro plugin AntiXorstr☆146Updated 8 months ago
- Ghetto user mode emulation of Windows kernel drivers.☆148Updated last year
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆123Updated 3 weeks ago
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆152Updated 2 years ago
- Kernel ReClassEx☆64Updated last year
- Attempts to decrypt JM Xorstr in some x64 binaries☆55Updated 2 years ago
- An AI-powered assistant for IDA 9.0+ to accelerate reverse engineering of C++ games.☆193Updated 3 weeks ago
- A Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel)☆97Updated 2 years ago
- VMProtect2 Deobfuscation Tooling☆55Updated 3 weeks ago
- ☆217Updated 2 years ago
- VMP 3.X decrypt iat☆42Updated last year
- Runtime Hyper-V Hijacking with DDMA☆64Updated 2 months ago
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆176Updated 5 months ago
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆102Updated last month
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆103Updated 2 years ago
- ☆141Updated 2 years ago
- A x86_64 software emulator☆155Updated 2 months ago
- ☆62Updated 2 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆152Updated last year
- Disables virtualprotect checks/hooks so you can modify memory and change memory protection in binaries protected by VMProtect.☆128Updated 4 years ago