sunwm518 / VMProtect-3-5-DEvirt
VMProtect, VMP, Devirter, 3,5
☆106Updated 2 years ago
Alternatives and similar repositories for VMProtect-3-5-DEvirt:
Users that are interested in VMProtect-3-5-DEvirt are comparing it to the libraries listed below
- A devirtualization engine for Themida.☆97Updated last year
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆57Updated last year
- VMP Mutation API Fix☆40Updated 3 years ago
- VM devirtualization PoC based on AsmJit and llvm☆113Updated 3 years ago
- fix vmprotect import function used unicorn-engine.☆92Updated last year
- Ghetto user mode emulation of Windows kernel drivers.☆132Updated 5 months ago
- A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor …☆31Updated last year
- Kernel ReClassEx☆65Updated last year
- Some psuedo snippets from BattlEye's BEDaisy.sys loaded on Rainbow Six: Siege.☆123Updated 2 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆68Updated 2 years ago
- Attempts to decrypt JM Xorstr in some x64 binaries☆52Updated 2 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆85Updated last year
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆95Updated 2 years ago
- Titan is a VMProtect devirtualizer☆47Updated last year
- Obfuscate calls to imports by patching in stubs☆67Updated 3 years ago
- PE-Dump-Fixer☆105Updated 5 years ago
- Simple IDA Pro plugin to download Unity debug symbols from their symbol server☆60Updated 11 months ago
- Dump .net assembly from a native loader which uses ClrCreateinstance☆54Updated 2 years ago
- 🪝 Different aproaches to detecting EPT hooks☆102Updated 2 years ago
- Windows PDB parser for kernel-mode environment.☆95Updated 2 years ago
- A lightweight BattlEye emulator of the launcher☆60Updated 2 years ago
- Various IDA scripts I've created for Reverse engineering.☆83Updated 4 months ago
- Scans all modules in target process for jmp/int3 hooks dissassembles then and follows jmps to destination.☆75Updated last year
- A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.☆79Updated 4 years ago
- Kernel driver for detecting Intel VT-x hypervisors.☆178Updated last year
- Disables virtualprotect checks/hooks so you can modify memory and change memory protection in binaries protected by VMProtect.☆125Updated 3 years ago
- A simple ida python script to find .data ptr☆50Updated last year
- KDM Is a driver that will dumps every drivers that got manually mapped with kdmapper.☆53Updated 2 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆102Updated last year
- This tool Decrypt and Extract the files from the EAC☆63Updated last year