This is your work, valued

Moscow

Pavel

Elite
@archercreat

titan. Titan is a VMProtect devirtualizer

144

vm_jit. VM devirtualization PoC based on AsmJit and llvm

126

packman-deobfuscator. Python

67

ida_names. IDA-names automatically renames pseudocode windows with the current function name.

62

vdk. vdk is a set of utilities used to help with exploitation of a vulnerable driver.

48

hypereye. My research WIP bluepill hypervisor

41

vmpfix. Universal x86/x64 VMProtect 2.0-3.X Import fixer

31

CTF-Writeups. reverse engninering & pwn writeup

26

srvhide. Simple tool to dump/hide services in services.exe process.

22

llvm_stuff. LLVM based devirtualization PoC’s.

20

api-tracer. api-tracer is a tiny (useless) tracer

17

Panda. Panda - is a set of utilities used to research how PsExec encrypts its traffic.

13

libx86. Simple library-wrapper around triton for emulation/disassembly

12

driver_template. Windows driver template with cmake that I use

6

remill-helloworld. Simple hello world with remill

5

windbg_scripts. JavaScript

5

drakvuf. DRAKVUF Black-box Binary Analysis

3

custom-GetProcAddress. C++

3

Challenge-VM. Practice VM

2

archercreat.github.io. SCSS

2

nix-channel. Personal Nix channel

2

PinkyVM. Python

1

spacezVM. Python

1

dta-vs-osc. Dynamic Taint Analysis versus Obfuscated Self-Checking

1

Triton. Triton is a dynamic binary analysis framework. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.

1

krabsetw. KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.

1

remill. Library for lifting machine code to LLVM bitcode

1

VMProtectTest. VMProtectTest

1

llvm-project. The LLVM Project is a collection of modular and reusable compiler and toolchain technologies. Note: the repository does not accept github pull requests at this moment. Please submit your patches at http://reviews.llvm.org.

1

python_tor_proxy. Python

1