holycall / UnSafengine64Links
☆16Updated last year
Alternatives and similar repositories for UnSafengine64
Users that are interested in UnSafengine64 are comparing it to the libraries listed below
Sorting:
- Titan is a VMProtect devirtualizer☆51Updated last year
- VMP 3.X decrypt iat☆27Updated 10 months ago
- ☆88Updated 2 weeks ago
- VMProtect, VMP, Devirter, 3,5☆107Updated 2 years ago
- Detects virtual machines and malware analysis environments☆128Updated 2 years ago
- ☆103Updated 2 years ago
- IDA Pro plugin AntiXorstr☆134Updated 3 months ago
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆100Updated 2 months ago
- an ida plugin used to decompile vmp☆330Updated 11 months ago
- Fix VMProtect3 IAT☆280Updated last year
- A POC to detect the exist of VMProtect 3 protection by search feature watermark.☆80Updated last year
- vmp .net devirtualizer☆50Updated last year
- Research on code virtualization in .NET [WIP]☆186Updated last year
- VMP 3.5 - VMP 3.7.2 Full Protect Anti Debugger Fuxker☆73Updated 2 years ago
- bypass vmp virtual machine detect☆132Updated 2 years ago
- A tool for automatically reconstructing IL code from an assembly virtualized with Eazfuscator.NET☆161Updated 2 months ago
- VMP Mutation API Fix☆41Updated 3 years ago
- An x86-64 code virtualizer for VM based obfuscation☆120Updated 5 months ago
- IDA ClassInformer PlugIn☆48Updated last month
- A devirtualization engine for Themida.☆100Updated last year
- After IDA Pro: Things to do after installing IDA Pro☆93Updated 7 months ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆29Updated 5 months ago
- 一个用来做windows内核hook的框架☆152Updated last month
- ZMQ and Messagepack Powered Remote Automation Plugin for x64dbg☆25Updated last month
- WinLicense key extraction via Intel PIN☆101Updated last year
- Themida 3.x unpacking, unwrapping and devirtualization(future)☆174Updated 2 years ago
- Example of reading process memory through kernel special APC☆106Updated 2 years ago
- r/w virtual memory without attach☆175Updated last year
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆108Updated 2 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆144Updated last year