omgkaka / vmp_runnerLinks
A general solution to simulate execution of virtualized instructions (vmprotect/themida, etc.).
☆73Updated 3 years ago
Alternatives and similar repositories for vmp_runner
Users that are interested in vmp_runner are comparing it to the libraries listed below
Sorting:
- VMProtectTest☆36Updated 2 years ago
- VMP Mutation API Fix☆41Updated 3 years ago
- fix vmprotect import function used unicorn-engine.☆92Updated 2 years ago
- ☆97Updated 7 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆75Updated 3 years ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆42Updated 4 years ago
- vmp2.x devirtualization☆74Updated 7 months ago
- ☆36Updated 2 years ago
- ☆21Updated 5 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆95Updated 2 years ago
- VMProtect analysis script☆55Updated 5 years ago
- ☆99Updated 3 years ago
- 使用vt进行无痕hook,支持r3☆54Updated 6 years ago
- a frame of amd-v svm nest☆53Updated 5 years ago
- Noninvasive debugging plugin for X64Dbg☆103Updated 6 months ago
- Global DLL injector☆67Updated 4 years ago
- ☆80Updated 3 years ago
- intel vt-x hypervisor ept☆25Updated 5 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆108Updated 2 years ago
- Another method to anti ThreadHideFromDebugger☆36Updated 6 years ago
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆52Updated 5 years ago
- A static devirtualizer for VMProtect x64 3.x. powered by VTIL.☆22Updated 2 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆65Updated last year
- ☆22Updated 3 years ago
- Hook system calls, context switches, page faults and more.☆35Updated 5 years ago
- the basic version of the ring0 physical memory read/write tool☆89Updated 5 years ago
- first commit☆61Updated 4 years ago
- Some garbage drivers written for getting started☆65Updated 5 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆50Updated 4 years ago
- Win7内核私有符号结构转储☆67Updated 3 years ago