vtil-project / VTIL-Python
Python bindings for the VTIL API. (WIP)
☆29Updated 4 years ago
Alternatives and similar repositories for VTIL-Python
Users that are interested in VTIL-Python are comparing it to the libraries listed below
Sorting:
- VMProtect analysis script☆54Updated 5 years ago
- Lifting from native architecture to VTIL. (WIP)☆75Updated 3 years ago
- Documentation of the VTIL API.☆31Updated 4 years ago
- ☆91Updated 4 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 10 months ago
- Analyze PatchGuard☆58Updated 6 years ago
- VTIL command line utility☆27Updated 3 years ago
- Binary Ninja plugin for automating VMProtect analysis☆60Updated 2 years ago
- Using Zydis and LLVM to lift unsupported instructions to LLVM-IR☆29Updated 3 years ago
- A number of samples to get you started with VTILs API.☆38Updated 3 years ago
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆32Updated 4 years ago
- A research project about Windows notify routines.☆35Updated 4 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆49Updated 4 years ago
- Symbolic expression simplifier used across VTIL toolchain. Moved into -->☆24Updated 5 years ago
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆53Updated 8 years ago
- POC of sysenter x64 LSTAR MSR hook☆39Updated 10 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- ☆27Updated 6 years ago
- unicorn emulator for x64dbg☆33Updated 7 years ago
- A modern c++ implementation of windows heavens gate☆8Updated 4 years ago
- UNIPE - A small framwork to execute PE files with UniCorn☆46Updated 7 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- paste string formatted byte data block into x64dbg easy.☆39Updated 4 years ago
- clone of armadillo patched for windows☆47Updated 6 months ago
- Windows sandbox PoC☆31Updated 4 years ago
- IDA script for vmprotect Windows Api address decoder☆51Updated 3 years ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆39Updated 2 years ago
- fix vmprotect import function used unicorn-engine.☆92Updated 2 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- ☆76Updated 3 years ago