notpidgey / EagleVM
Native code virtualizer for x64 binaries
☆403Updated this week
Related projects ⓘ
Alternatives and complementary repositories for EagleVM
- Debugger Anti-Detection Benchmark☆291Updated 11 months ago
- protector & obfuscator & code virtualizer☆409Updated this week
- Simple x86/x86_64 instruction level obfuscator based on a basic SBI engine☆253Updated 2 years ago
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!☆259Updated 3 weeks ago
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆404Updated this week
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆226Updated 3 months ago
- Collection of hypervisor detections☆189Updated last month
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆267Updated last year
- x86-64 code/pe virtualizer☆160Updated 3 months ago
- compile-time control flow obfuscation using mba☆175Updated last year
- VMProtect 2.x-3.x x64 Import Deobfuscator☆261Updated 10 months ago
- PE bin2bin obfuscator☆611Updated 4 months ago
- X86 Mutation Engine with Portable Executable compatibility.☆452Updated 2 years ago
- IDA Pro plugin to make bitfield accesses easier to grep☆229Updated 7 months ago
- Load your driver like win32k.sys☆246Updated 2 years ago
- x86 PE Mutator☆212Updated last year
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆548Updated last month
- [WIP] A forked version of LLVM-18 that prioritizes MSVC compatibility. This version is tailored for Windows users.☆221Updated last month
- System call hook for Windows 10 20H1☆481Updated 3 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆261Updated last month
- Memory hacking library powered by AMD SVM☆297Updated last year
- RISC-V Virtual Machine☆204Updated 3 weeks ago
- Single-header, minimalistic, cross-platform hook library written in pure C☆291Updated last month
- C++ 17 or higher control flow obfuscation library for windows binaries☆325Updated 2 months ago
- Analyze patches in a process☆247Updated 3 years ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆326Updated 3 weeks ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆512Updated 3 weeks ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆302Updated 2 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆226Updated 2 years ago