kernelwernel / VMAware
VM detection library and tool
☆496Updated this week
Alternatives and similar repositories for VMAware:
Users that are interested in VMAware are comparing it to the libraries listed below
- protector & obfuscator & code virtualizer☆511Updated this week
- PE bin2bin obfuscator☆655Updated last month
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆535Updated 2 months ago
- Compile-time, Usermode + Kernelmode, safe and lightweight string crypter library for C++11+☆735Updated 3 years ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆233Updated this week
- C++ 17 or higher control flow obfuscation library for windows binaries☆348Updated 7 months ago
- kernel mode anti cheat☆520Updated 7 months ago
- Collection of undocumented Windows API declarations.☆306Updated last week
- x64 Dynamic Reverse Engineering Toolkit☆633Updated last year
- Fumo Loader - All in one kernel-based DLL injector☆292Updated 2 months ago
- Hiding the window from screenshots using the function win32kfull::GreProtectSpriteContent☆545Updated 3 months ago
- anti debugging library in c++.☆541Updated last year
- Obfusheader.h is a portable header file for C++14 compile-time obfuscation.☆661Updated 7 months ago
- Native code virtualizer for x64 binaries☆476Updated 3 months ago
- Single-header, minimalistic, cross-platform hook library written in pure C☆321Updated 6 months ago
- Titan is a VMProtect devirtualizer☆19Updated last year
- Anti-cheat library for Windows C++☆438Updated 2 years ago
- VMProtect 2.x-3.x x64 Import Deobfuscator☆291Updated last year
- windows syscalls with a single line and a high level of abstraction. has modern cpp20 wrappers and utilities, range-based DLL and export …☆172Updated last week
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,159Updated 11 months ago
- A bunch of Windows anti-debugging tricks for x86 and x64.☆779Updated 3 years ago
- Manual mapping without creating any threads, with rw only access☆736Updated 5 years ago
- System call hook for Windows 10 20H1☆484Updated 3 years ago
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆544Updated this week
- A somewhat wide collection of various kernelmode-usermode communication methods in one repository (mainly just for learning purposes).☆313Updated 5 years ago
- [WIP] A forked version of LLVM-18 that prioritizes MSVC compatibility. This version is tailored for Windows users.☆272Updated last week
- obfuscated any constant encryption in compile time on any platform☆443Updated last year
- This tool will allow you to spoof the return addresses of your functions as well as system functions.☆442Updated 2 years ago
- Inline syscalls made easy for windows on clang☆698Updated 9 months ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆372Updated last year