0xRick / PE-Parser
https://0xrick.github.io/win-internals/pe8/
☆45Updated 3 years ago
Alternatives and similar repositories for PE-Parser:
Users that are interested in PE-Parser are comparing it to the libraries listed below
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆65Updated last year
- Batch script to compile a binary shellcode blob into an exe file☆83Updated 5 years ago
- Standalone Metasploit-like XOR encoder for shellcode☆46Updated 8 months ago
- Add an empty section to a PE file☆52Updated 7 years ago
- Recon 2023 slides and code☆79Updated last year
- A ready-made template for a project based on libpeconv.☆43Updated 2 months ago
- ☆65Updated last year
- Youtube channel sample code☆36Updated last week
- Easy XOR string encryption for NET based binaries☆133Updated last year
- Compile shellcode into an exe file from Windows or Linux.☆60Updated 3 years ago
- Small visualizator for PE files☆67Updated last year
- Demo from the Malware Analysis and Development Webinar☆19Updated 9 months ago
- An Xdbg Plugin of the ERC Library.☆26Updated 11 months ago
- Remote Thread Detection with a Kernel Driver☆25Updated this week
- Samples from my book Windows Native API programming☆59Updated 5 months ago
- Native Powers Talk demos☆14Updated last year
- Example of building an application verifer DLL☆44Updated 7 months ago
- A post-processing script for TinyTracer☆38Updated last year
- Windows 11 Syscall table. Ready to use in direct syscall. Actively maintained.☆20Updated 3 years ago
- Various tools, PoCs and experiments related to my blog at https://www.forrest-orr.net/☆36Updated 3 years ago
- An initial proof of concept of a bootkit based on Cr4sh's DMABackdoorBoot☆61Updated last year
- Listing UDP connections with remote address without sniffing.☆30Updated last year
- A cross-platform Python toolkit for parsing/writing PE files.☆64Updated 7 months ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆9Updated last year
- Read Memory without ReadProcessMemory for Current Process☆75Updated 2 years ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆114Updated 6 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆26Updated 5 months ago
- ☆54Updated 3 years ago
- Assembly API block that uses CRC32 for resolving Windows API function addresses☆17Updated last year
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆25Updated 5 years ago