keowu / birosca
A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor vmexit(aka context exchange) from packer stub.
☆32Updated last year
Alternatives and similar repositories for birosca:
Users that are interested in birosca are comparing it to the libraries listed below
- Decrypt VMProtect (.NET) obfuscated strings. Made by Cabbo with love.☆25Updated 2 years ago
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆21Updated last year
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆43Updated last year
- VMProtect, VMP, Devirter, 3,5☆106Updated 2 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆67Updated last year
- VMP Mutation API Fix☆41Updated 3 years ago
- ☆51Updated 3 years ago
- PE-Dump-Fixer☆105Updated 5 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆58Updated last year
- A devirtualization engine for Themida.☆100Updated last year
- Hardware ID☆41Updated 3 years ago
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆52Updated 2 years ago
- PoC over some VMP features☆21Updated last year
- Attempts to decrypt JM Xorstr in some x64 binaries☆54Updated 2 years ago
- ☆41Updated 2 years ago
- ☆74Updated last year
- ☆49Updated last year
- Library to manipulate drivers that expose a physical memory read/write primitive.☆26Updated last year
- Modmap updated to work on Windows 11☆28Updated 3 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆71Updated 2 years ago
- ☆53Updated 2 years ago
- Handling C++ & __try exceptions without the need of built-in handlers.☆71Updated 3 years ago
- ☆54Updated 2 years ago
- ☆78Updated last year
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆70Updated 2 years ago
- This tool Decrypt and Extract the files from the EAC☆65Updated last year
- PoC kernel to usermode injection☆83Updated last year
- A lightweight BattlEye emulator of the launcher☆61Updated 2 years ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆52Updated 7 months ago
- PAGE_GUARD based hooking library☆43Updated 2 years ago