miketestz / ScyllaHide_VMPHeavensgateBypassLinks
Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide
☆23Updated 2 years ago
Alternatives and similar repositories for ScyllaHide_VMPHeavensgateBypass
Users that are interested in ScyllaHide_VMPHeavensgateBypass are comparing it to the libraries listed below
Sorting:
- VMProtect, VMP, Devirter, 3,5☆107Updated 2 years ago
- VMP Mutation API Fix☆44Updated 3 years ago
- Kernel ReClassEx☆65Updated 2 years ago
- PE Header (.rdata,.data,.text) obsfucation☆36Updated 3 years ago
- PoC code for IsValidImageCRC()☆20Updated 2 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆97Updated 3 years ago
- A simple ida python script to find .data ptr☆56Updated 2 years ago
- PoC over some VMP features☆24Updated 4 months ago
- ☆26Updated last year
- A debugger library using VEH.☆65Updated last year
- Library to manipulate drivers that expose a physical memory read/write primitive.☆33Updated 2 years ago
- PoC kernel to usermode injection☆93Updated last year
- ☆72Updated 3 years ago
- A devirtualization engine for Themida.☆103Updated last year
- POC Hook of nt!HvcallCodeVa☆53Updated 2 years ago
- Windows x64 DLL/Driver manual map injection on a non-present PML4E using physical memory read/writes, direct page table manipulation and …☆72Updated 2 months ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆46Updated 2 years ago
- ☆51Updated 2 years ago
- ☆47Updated 3 years ago
- Attempts to decrypt JM Xorstr in some x64 binaries☆57Updated 2 years ago
- ☆42Updated 3 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆77Updated 2 years ago
- ☆48Updated 3 years ago
- A library to assist with memory & code protection.☆65Updated last year
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆53Updated 3 years ago
- PAGE_GUARD based hooking library☆52Updated 3 years ago
- A wrapper class to hide the original calling address of a function☆55Updated 5 years ago
- A lightweight BattlEye emulator of the launcher☆60Updated 3 years ago
- modern c++ wrapper around the microsoft portable executable file format☆32Updated last month
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆48Updated 2 months ago