keowu / birosca
A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor vmexit(aka context exchange) from packer stub.
☆31Updated last year
Alternatives and similar repositories for birosca:
Users that are interested in birosca are comparing it to the libraries listed below
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆42Updated last year
- ☆41Updated 2 years ago
- Attempts to decrypt JM Xorstr in some x64 binaries☆53Updated 2 years ago
- VMProtect, VMP, Devirter, 3,5☆106Updated 2 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆67Updated last year
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆20Updated last year
- Decrypt VMProtect (.NET) obfuscated strings. Made by Cabbo with love.☆25Updated last year
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆32Updated last year
- ☆52Updated 2 years ago
- ☆73Updated 11 months ago
- PE-Dump-Fixer☆105Updated 5 years ago
- VMP Mutation API Fix☆41Updated 3 years ago
- ☆51Updated 3 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆58Updated last year
- PoC over some VMP features☆20Updated last year
- PAGE_GUARD based hooking library☆42Updated 2 years ago
- Hardware ID☆39Updated 2 years ago
- ☆42Updated 3 years ago
- ☆75Updated last year
- Library to manipulate drivers that expose a physical memory read/write primitive.☆24Updated last year
- Obfuscate calls to imports by patching in stubs☆67Updated 3 years ago
- A lightweight BattlEye emulator of the launcher☆61Updated 2 years ago
- Kernel<->Usermode shared memory communcation using manually mapped driver☆15Updated 3 years ago
- ☆46Updated 3 years ago
- ☆30Updated 2 years ago
- A plugin for x64dbg that can copy RVA from unknown memory pages☆34Updated 2 years ago
- ☆49Updated last year
- Kernel Injector pasted from various different Github repositories.☆19Updated 5 years ago
- Modmap updated to work on Windows 11☆28Updated 3 years ago
- A simple MmCopyMemory hook.☆37Updated 2 years ago