momo5502 / hypervisor
๐งช Hypervisor with EPT hooking support.
โ224Updated last week
Alternatives and similar repositories for hypervisor
Users that are interested in hypervisor are comparing it to the libraries listed below
Sorting:
- Collection of hypervisor detectionsโ236Updated 7 months ago
- alternative smm driver for ryzen motherboardsโ147Updated 7 months ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.โ276Updated last year
- Minimalistic AMD-V/SVM hypervisor with memory introspection capabilitiesโ256Updated 2 months ago
- Emulate Drivers in RING3 with self context mapping or unicornโ337Updated 2 years ago
- Debugger Anti-Detection Benchmarkโ332Updated last year
- VAC3 (Valve Anti-Cheat 3) module emulatorโ98Updated 4 years ago
- ๐ช Different aproaches to detecting EPT hooksโ108Updated 3 years ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.โ279Updated 9 months ago
- โ189Updated last week
- 09/2021 reversal of EasyAntiCheat driverโ215Updated 3 years ago
- IDA Pro plugin to make bitfield accesses easier to grepโ236Updated 2 months ago
- โ141Updated 4 years ago
- Ghetto user mode emulation of Windows kernel drivers.โ137Updated 6 months ago
- Vectored Exception Handling Hooking Classโ158Updated 6 years ago
- Hooking kernel functions by abusing alignmentโ238Updated 4 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.โ595Updated 3 months ago
- Browse Page Tables on Windows (Page Table Viewer)โ198Updated 3 years ago
- Rusty Hypervisor - Windows UEFI Blue Pill Type-1 Hypervisor in Rust (Codename: Illusion)โ260Updated 8 months ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasksโ356Updated 6 months ago
- The most powerful and customizable binary pattern scannerโ222Updated 3 years ago
- Kernel driver for detecting Intel VT-x hypervisors.โ184Updated last year
- VMProtect 2.x-3.x x64 Import Deobfuscatorโ296Updated last year
- A customizable process dumper.โ142Updated 5 years ago
- Internally injected C++ DLL that dumps VFTables with RTTI data, Still In Developmentโ105Updated last year
- X86 Mutation Engine with Portable Executable compatibility.โ486Updated 2 years ago
- An AVX Lifter for the Hex-Rays Decompilerโ307Updated 2 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.โ290Updated 5 years ago
- a more stable & secure read/write virtual memory for kernel mode driversโ165Updated 5 years ago
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!โ336Updated 3 weeks ago