kernel-mode Anti-Anti-Debug plugin. based on intel vt-x && ept technology
☆444Oct 30, 2020Updated 5 years ago
Alternatives and similar repositories for Mirage
Users that are interested in Mirage are comparing it to the libraries listed below
Sorting:
- 轻量级自动分析病毒程序调用上下文、游戏反调试实现技术平台☆100Jun 21, 2020Updated 5 years ago
- Kernel Anit Anit Debug Plugins 内核反反调试插件☆480Aug 31, 2021Updated 4 years ago
- Hypervisor based anti anti debug plugin for x64dbg☆1,564Jul 8, 2024Updated last year
- VivienneVMM is a stealthy debugging framework implemented via an Intel VT-x hypervisor.☆821Sep 7, 2020Updated 5 years ago
- Monitoring and controlling kernel API calls with stealth hook using EPT☆1,358Jan 22, 2022Updated 4 years ago
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆443Nov 29, 2021Updated 4 years ago
- Turn off PatchGuard in real time for win7 (7600) ~ later☆1,037Apr 21, 2022Updated 3 years ago
- ☆116Oct 1, 2019Updated 6 years ago
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 4 years ago
- Hiding kernel-driver for x86/x64.☆2,619Sep 2, 2025Updated 6 months ago
- open-source x86/x64 usermode anti-anti-debug plugin☆231Mar 17, 2020Updated 5 years ago
- ayy debuger☆89Mar 3, 2024Updated 2 years ago
- Simple Intel VT-x hypervisor☆360Dec 10, 2023Updated 2 years ago
- Page fault hook use ept (Intel Virtualization Technology)☆200Oct 19, 2016Updated 9 years ago
- Unicorn PE is an unicorn based instrumentation project designed to emulate code execution for windows PE files.☆915Dec 29, 2025Updated 2 months ago
- A hypervisor hiding user-mode memory using EPT☆107Jan 28, 2018Updated 8 years ago
- Noninvasive debugging plugin for X64Dbg☆110Nov 21, 2024Updated last year
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆902Nov 21, 2019Updated 6 years ago
- a debugger use vt technology☆356Jun 30, 2022Updated 3 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Apr 4, 2020Updated 5 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,281Feb 14, 2026Updated 2 weeks ago
- ☆99Oct 6, 2017Updated 8 years ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆632Mar 19, 2019Updated 6 years ago
- A static devirtualizer for VMProtect x64 3.x. powered by VTIL.☆2,083Aug 8, 2021Updated 4 years ago
- Intel VT-x based hypervisor aiming to provide a thin VM-exit filtering platform on Windows.☆1,728Nov 24, 2023Updated 2 years ago
- State-of-the-art native debugging tools☆3,654Feb 24, 2026Updated last week
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,802Nov 12, 2023Updated 2 years ago
- VT-based PCI device monitor (SPI)☆158Oct 29, 2020Updated 5 years ago
- Global DLL injector☆71May 16, 2021Updated 4 years ago
- VMProtect 3.x Anti-debug Method Improved☆652May 11, 2019Updated 6 years ago
- win10 pgContext dynamic dump (btc version)☆110Jan 15, 2020Updated 6 years ago
- ☆125May 23, 2020Updated 5 years ago
- System call hook for Windows 10 20H1☆497Jun 26, 2021Updated 4 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆345Apr 27, 2020Updated 5 years ago
- A VMP to VTIL lifter.☆445May 20, 2021Updated 4 years ago
- Hook system calls, context switches, page faults and more.☆2,637May 9, 2023Updated 2 years ago
- Simple x86-64 VT-x Hypervisor with EPT Hooking☆951Apr 24, 2023Updated 2 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆284Jan 27, 2025Updated last year
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆183Nov 30, 2017Updated 8 years ago