Arvanaghi / PE-ParserLinks
A basic PE parser for 32-bit Windows executables.
☆13Updated 8 years ago
Alternatives and similar repositories for PE-Parser
Users that are interested in PE-Parser are comparing it to the libraries listed below
Sorting:
- Source code on the 1.44MB 3.5 floppy accompanying the Windows NT File System Internals book.☆16Updated 5 years ago
- Headers for linking your software with ntdll.dll☆15Updated 4 years ago
- A ready-made template for a project based on libpeconv.☆48Updated 3 months ago
- x64dbg plugin template for visual studio☆20Updated 6 years ago
- ☆20Updated 5 years ago
- executing JS from x86 code☆27Updated 6 years ago
- Dynamic COFF object loader☆23Updated 6 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆25Updated last year
- Practical Reverse Engineering book exercises☆9Updated 4 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- Shows different icons for 64 and 32-bit DLLs. Register with RegSvr32 to install☆34Updated 5 months ago
- C Header Only Library for Virii☆10Updated 4 years ago
- A template for projects using both libPeConv and MS Detours☆15Updated last year
- Simple library to handle PE files loading, relocating, get/set data, ..., in addition to process handling☆33Updated 5 years ago
- A set of small utilities, helpers for PIN tracers☆33Updated last year
- Small project to generate fake DLLs based on an executable's import table☆23Updated 5 years ago
- Windows x86 Hardware Breakpoint class for Windows >Vista☆22Updated 8 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆15Updated last year
- Code Integrity Violation Spotter☆16Updated 11 months ago
- Small memory leak PoC that is happening in IopGetDeviceInterfaces☆25Updated 4 years ago
- Slides from various conference talks☆37Updated 2 years ago
- A VBScript for detecting VirtualBox☆21Updated 9 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- ☆35Updated 2 years ago
- ☆25Updated 2 years ago
- Class implementation of PowerLoader injection technique☆31Updated 8 years ago
- ☆12Updated 4 years ago