0xRick / PE-Parser
https://0xrick.github.io/win-internals/pe8/
☆48Updated 3 years ago
Alternatives and similar repositories for PE-Parser:
Users that are interested in PE-Parser are comparing it to the libraries listed below
- A ready-made template for a project based on libpeconv.☆48Updated 2 months ago
- Standalone Metasploit-like XOR encoder for shellcode☆48Updated 11 months ago
- Simple example for getting started with eBPF for Windows☆44Updated 2 months ago
- Youtube channel sample code☆49Updated last week
- ☆71Updated 2 years ago
- A post-processing script for TinyTracer☆38Updated 2 years ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆65Updated 2 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 2 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆35Updated last year
- Remote Thread Detection with a Kernel Driver☆30Updated 3 months ago
- Assembly block for hooking windows API functions.☆90Updated 5 years ago
- Demo from the Malware Analysis and Development Webinar☆20Updated last year
- Assembly API block that uses CRC32 for resolving Windows API function addresses☆18Updated last year
- Batch script to compile a binary shellcode blob into an exe file☆85Updated 5 years ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- TrashDBG the world's worse debugger☆23Updated 3 years ago
- ☆16Updated 2 years ago
- ☆61Updated last year
- Compile shellcode into an exe file from Windows or Linux.☆67Updated 4 years ago
- Listing UDP connections with remote address without sniffing.☆29Updated last year
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆72Updated last year
- Small visualizator for PE files☆69Updated last year
- API Logger for Windows Executables☆78Updated 4 years ago
- C# implementation to produce ROR-13 numeric hash for given function API name☆31Updated 5 years ago
- 2022 Updated Kernelmode-Code☆31Updated last year
- Enabled / Disable LSA Protection via BYOVD☆68Updated 3 years ago
- Malware AV evasion via disable Windows Defender (Registry). C++☆35Updated 2 years ago
- ☆38Updated 2 months ago
- Winbindex bot to pull in binaries for specific releases☆48Updated last year
- Get-PDInvokeImports is tool (PowerShell module) which is able to perform automatic detection of P/Invoke, Dynamic P/Invoke and D/Invoke u…☆54Updated 3 years ago