lukasbalazik / mantua
AntiDebug, AntiVM and AntiAV library
☆10Updated 2 years ago
Alternatives and similar repositories for mantua:
Users that are interested in mantua are comparing it to the libraries listed below
- Example of using Windows Platform Binary Table (WPBT)☆16Updated last year
- a lightweight library geared towards windows process hacking/manipulation, but with much more use case.☆31Updated 3 years ago
- open-source rust hack, based on medusa☆29Updated last year
- Crashes ida on static analyses.☆104Updated 7 months ago
- process dumper targeting CS:GO internal cheats☆24Updated 3 years ago
- A plugin for x64dbg that can copy RVA from unknown memory pages☆34Updated 2 years ago
- DLL Injector using manual map, written in C++☆43Updated 4 years ago
- Dump system call codes, names, and offsets from Ntdll.dll☆76Updated last year
- ☆42Updated 2 years ago
- A lightweight BattlEye emulator of the launcher☆61Updated 2 years ago
- PAGE_GUARD based hooking library☆42Updated 2 years ago
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆33Updated 3 years ago
- Kernel Level NMI Callback Blocker☆74Updated 7 months ago
- x64 Windows implementation of virtual-address to physical-address translation☆40Updated 3 years ago
- ntoskrnl .data hooks for UM-KM communication☆38Updated 10 months ago
- A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor …☆31Updated last year
- Discarded Section Manual Map☆66Updated 4 years ago
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆32Updated last year
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆41Updated last year
- Known ring3 memory protections that can be handled at a simple level.☆65Updated 2 years ago
- ☆10Updated last year
- Different examples of process hollowing.☆13Updated 4 years ago
- Makes IDA (most versions) to crash upon opening it.☆83Updated 7 months ago
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆77Updated 2 years ago
- A simple MmCopyMemory hook.☆37Updated 2 years ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆32Updated 5 months ago
- ☆34Updated 3 years ago
- Attempts to decrypt JM Xorstr in some x64 binaries☆52Updated 2 years ago
- Memory integrity check with CRC32 instruction, section-based☆43Updated 2 years ago
- A devirtualization engine for Themida.☆97Updated last year