Repository navigation
#
libpeconv
- Website
- Wikipedia
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
C++
3405
3 个月前
A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl
C++
1267
3 个月前
Dynamic unpacker based on PE-sieve
C
750
3 个月前
A ready-made template for a project based on libpeconv.
C++
48
6 个月前
A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.
C
20
7 年前
A ready-made template for a new project based on libPeConv library
C++
7
7 年前