Repository navigation

#

pe-format

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++
3405
3 个月前
C++
3225
4 个月前

A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl

C++
1267
3 个月前
horsicq/XPEViewer
QMake
1127
1 天前

Principled, lightweight C/C++ PE parser

C++
860
8 天前

A ⚡ lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries. Designed for malware analysis tasks and robust against PE malformations.

Go
363
2 个月前

Vox language compiler. AOT / JIT / Linker. Zero dependencies

D
355
3 个月前

Persistent IAT hooking application - based on bearparser

C++
260
3 年前

Library for parsing internal structures of PE32/PE32+ binary files.

C++
167
9 个月前

PE32 (x86) and PE32+ (x64) binaries analysis tool, resources viewer/extractor.

C++
166
3 个月前

Python implementation of the Packed Executable iDentifier (PEiD)

Python
139
1 年前

SDA is a rich cross-platform tool for reverse engineering that focused firstly on analysis of computer games. I'm trying to create a mix of the Ghidra, Cheat Engine and x64dbg. My tool will combine static and dynamic analysis of programs. Now SDA is being developed.

C++
133
2 年前

A neural approach to malware detection in portable executables

Python
78
2 年前

A Windows executable (PE) packer (x64) with LZMA compression and with full TLS (Thread Local Storage) support

C
75
2 个月前
Python
69
2 年前